Flipper Zero firmware development continues with community help
2026-07-06T01:23:27Z•82feb6b036958c8d02fd3b30f2c0fe95a909814cfbbb82aa5bd00a5687363584
AI-agentARTokenAndroidCISACiscoClickFixConsentFixEvilTokensJadePufferLLM-agentMFA-bypassMicrosoft-365NetNutOAuthOperaPasteProtectSharePoint-RCEUnified-CM-exploit-behavioralbotnetphishingphishing-as-a-serviceproxy-networkransomwareresidential-proxysmart-tv
What happened
Multiple high-impact security events reported: researchers say the JadePuffer ransomware operation appears to be the first documented ransomware campaign fully automated by a large language model (LLM) agent; Google-assisted takedown disrupted the NetNut residential proxy network, cutting off ~2 million compromised Android devices and streaming boxes; a new ARToken phishing‑as‑a‑service (PhaaS) tied to EvilTokens exposes an extensive Microsoft 365 phishing toolkit. CISA and vendors warn of active exploitation of a recent Microsoft SharePoint RCE patched in May and Cisco confirmed exploitation*
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 82feb6b036958c8d02fd3b30f2c0fe95a909814cfbbb82aa5bd00a5687363584
- Enrichment time
- 2026-07-06T01:23:27Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.