Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack
2026-07-16T19:24:08Z•5265c41140198f3e86fb5bb0135e7ca687c478ba1e6cd911f2e39b7208abb0d6
active-exploitationai-red-teamingbotnetclicklockcredential-theftdaxininfostealeriotlinuxllm-assistedmacosmalwarenpm-compromiseokobotpatchingprompt-injectionransomwaresonicwall-sma1000ssrfstupigsupply-chaintelepuzvulnerabilitywindowszero-day
What happened
A heavy batch of security developments: two members of Scattered Spider were sentenced for the 2024 TfL hack, while multiple high‑severity software flaws and active exploit campaigns surfaced. Vendors published urgent patches — notably Zoom (CVE-2026-53412) and Mozilla (CVE-2026-15718, CVE-2026-15719) — and Microsoft shipped a record Patch Tuesday covering 622 flaws including two actively exploited zero‑days. SonicWall SMA 1000 zero‑days (CVE-2026-15409) are under active exploitation, and SAP fixed a critical NetWeaver ABAP bug (CVE-2026-44747). Researchers also disclosed numerous malware and攻
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 5265c41140198f3e86fb5bb0135e7ca687c478ba1e6cd911f2e39b7208abb0d6
- Enrichment time
- 2026-07-16T19:24:08Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.