Two Scattered Spider Members Sentenced to 5.6 Years Over TfL Cyberattack
2026-07-16T20:51:41Z•d981f32e4d22e0e5b7b26b91536738c5b3fedaf8917cf28231fa9d185cc3b621
ad-fsai-securityasyncapibitlockerbrowser-extensionclaudecrypto-theftdomain-serverholdlegal-sentencingmalwaremicrosoftnpmokobotpatch-tuesdayphishingprompt-injectionscattered-spidersharepointsupply-chainsupply-chain-compromisetelegramticket-scamszero-day
What happened
Collection of July 14–16, 2026 security news: Microsoft’s July Patch Tuesday addresses 622 CVEs including exploited Active Directory Federation Services and SharePoint flaws and a disclosed BitLocker bypass; Kaspersky reports OkoBot malware targeting crypto users via fake software and hidden browser extensions to steal wallet files, seed phrases and credentials; a one‑click “PromptFiction” flaw in Claude Desktop enabled auto-submitted hidden prompts exposing chats and enabling code execution on some systems; Upwind documents a coordinated supply‑chain compromise of multiple AsyncAPI npm packs;
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- hackread
- Record identifier
- d981f32e4d22e0e5b7b26b91536738c5b3fedaf8917cf28231fa9d185cc3b621
- Enrichment time
- 2026-07-16T20:51:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.