Japan's largest taxi operator shuts systems after cyberattack

2026-07-14T07:23:29Z1ffabe7b9fc81e2e6077b5f9ed710649faf9fd2d583afcdd728053b35eb35552
ACSCAndroidBalbooa FormsCISACMS exploitationCrashStealerGhostcommit','prompt injection','AI-agents','data breach','LidlJoomlaRedHookU-BootWireless ADBarbitrary file uploadcrypto-wallet-theftcyberattackfirmware vulnerabilitiesiCagendainfostealerjscramblerkeychain-theftmacOSnpmpersistenceransomware-riskremote code executionsupply-chain

What happened

Collection of security news (13–14 Jul 2026) covering multiple active threats and high-impact disclosures: Japan's largest taxi operator Nihon Kotsu shut parts of its infrastructure after a cyberattack; Jscrambler's npm package was backdoored and downloaded ~1,500 times with an infostealer payload; a new macOS info-stealer named CrashStealer impersonates Apple's crash reporter to harvest credentials, keychain items and crypto wallets; CISA warns of active exploitation of remote-code-execution vulnerabilities in Joomla extensions (iCagenda and Balbooa Forms) via arbitrary file upload; Lidl disl

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
1ffabe7b9fc81e2e6077b5f9ed710649faf9fd2d583afcdd728053b35eb35552
Enrichment time
2026-07-14T07:23:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.