Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack

2026-07-16T19:24:08Z5265c41140198f3e86fb5bb0135e7ca687c478ba1e6cd911f2e39b7208abb0d6
active-exploitationai-red-teamingbotnetclicklockcredential-theftdaxininfostealeriotlinuxllm-assistedmacosmalwarenpm-compromiseokobotpatchingprompt-injectionransomwaresonicwall-sma1000ssrfstupigsupply-chaintelepuzvulnerabilitywindowszero-day

What happened

A heavy batch of security developments: two members of Scattered Spider were sentenced for the 2024 TfL hack, while multiple high‑severity software flaws and active exploit campaigns surfaced. Vendors published urgent patches — notably Zoom (CVE-2026-53412) and Mozilla (CVE-2026-15718, CVE-2026-15719) — and Microsoft shipped a record Patch Tuesday covering 622 flaws including two actively exploited zero‑days. SonicWall SMA 1000 zero‑days (CVE-2026-15409) are under active exploitation, and SAP fixed a critical NetWeaver ABAP bug (CVE-2026-44747). Researchers also disclosed numerous malware and攻

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
5265c41140198f3e86fb5bb0135e7ca687c478ba1e6cd911f2e39b7208abb0d6
Enrichment time
2026-07-16T19:24:08Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.