This month in security with Tony Anscombe – July 2026 edition
2026-08-01T20:51:31Z•60436d68f7cf949ef2f00d2577535f24c2f71300aa9dec8a44f3bf28a3e4ada4
AI-securityAPTAndroidEDR-evasionESETOT-securitySecure-BootUEFIWindowsbotnetcredential-theftcyber-espionageinfostealermalwarephishingransomwarescamssupply-chain-attackthreat-intelligence
What happened
ESET WeLiveSecurity feed covering July 2026 through April 2026 threat research and cybersecurity guidance. Key topics include Secure Boot bypass via vulnerable Microsoft-signed UEFI shims, ransomware and EDR-killer frameworks, APT activity by Gamaredon, OceanLotus, ScarCruft, Webworm, FrostyNeighbor, and GopherWhisper, Android RATs and payment malware, phishing and account compromise, supply-chain attacks, infostealers, botnets, OT security, and AI-enabled threats.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- eset_welivesecurity
- Record identifier
- 60436d68f7cf949ef2f00d2577535f24c2f71300aa9dec8a44f3bf28a3e4ada4
- Enrichment time
- 2026-08-01T20:51:31Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.