Dutch police bust investment fraud ring stealing over €100 million
2026-07-16T07:23:30Z•226a192045eaf0aab575b49dace78617b2032883d72a19afcfafdb5f5faae1ec
actively-exploitedai-abuseasyncapibotnetbulletproof-hostingcve:CVE-2026-15409cve:CVE-2026-15410fraudgithub-typosquatinfostealerlaw-enforcementmalwaremicrosoftnpmpatch-tuesdaysharepointsonicwallsupply-chainvulnerability-managementzero-dayzoom
What happened
A BleepingComputer roundup covering multiple high-impact security events: Microsoft’s July 2026 Patch Tuesday addresses a record 570 flaws (including three zero-days and two already-exploited vulnerabilities), CISA warns of active exploitation of on-premises SharePoint flaws, and SonicWall reports two SMA1000 zero-days (CVE-2026-15409, CVE-2026-15410) being used in live attacks. Other notable items include a critical Zoom account-takeover bug, a supply-chain compromise of AsyncAPI npm packages delivering an info-stealing RAT, abuse of Google’s Gemini CLI as a hacking agent/botnet controller, ~
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 226a192045eaf0aab575b49dace78617b2032883d72a19afcfafdb5f5faae1ec
- Enrichment time
- 2026-07-16T07:23:30Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.