Flipper Zero firmware development continues with community help
2026-07-05T19:23:27Z•ccf2462a539107fa45d6df68d3068d5a5450678012ed662e64b75e7b43d8feee
Cisco Unified CMFlipper ZeroFortiBleedLLM-agentLynx ransomwareMFA-bypassMicrosoft 365OAuthScattered SpiderSharePoint RCEShinyHuntersactive-exploitationantitrustartificial-intelligencebotnetcredential-theftdata-breachfirmwarephishing-as-a-serviceprivacyproxy-networkransomwareresidential-proxysoftware-update
What happened
Collection of security news: researchers documented JadePuffer — the first observed ransomware operation fully automated by an LLM agent; law enforcement and industry disrupted the NetNut residential-proxy botnet cutting access to ~2 million compromised Android devices; ARToken PhaaS revealed an EvilTokens Microsoft 365 phishing toolkit and highlighted ongoing OAuth/MFA bypass techniques (ConsentFix/ClickFix). CISA warned of active exploitation of a high-severity Microsoft SharePoint RCE patched in May, and Cisco confirmed attacks exploiting a recently patched Unified Communications Manager (U
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- ccf2462a539107fa45d6df68d3068d5a5450678012ed662e64b75e7b43d8feee
- Enrichment time
- 2026-07-05T19:23:27Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.