Upbound says hack caused $13 million in fraudulent Acima leases

2026-07-23T07:23:33Zcdfcc88f6f3fedc3493f34b8ce556373430382f09c8227f467ea7aef1c2634a3
chrome-extension-vulncisa-guidancecredential-stuffingdata-breachdiplomatic-dataexchange-eolgenai-riskincident-responselangflowmalware-distributionphishingphishing-as-a-serviceransomwaresharepoint-rcesmartloaderstealcsupply-chainvulnerability

What happened

Collection of security news: active exploitation of a critical Microsoft SharePoint RCE (CVE-2026-50522) used to steal machine keys; CISA ordered urgent patching for an actively exploited Langflow RCE; Upbound data theft used to create $13M in fraudulent Acima leases; South Korea’s National Diplomatic Academy breach exposing diplomats’ data; Stadler Rail rejected a ~$12.3M ransom demand after a supply-chain/data-exchange breach; FakeGit campaign distributing SmartLoader/StealC via thousands of malicious GitHub repos; Kratos phishing‑as‑a‑service infrastructure dismantled; Adobe Acrobat Chrome‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
cdfcc88f6f3fedc3493f34b8ce556373430382f09c8227f467ea7aef1c2634a3
Enrichment time
2026-07-23T07:23:33Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Upbound says hack caused $13 million in fraudulent Acima leases · Baitaphish