www.securityweek.com 7/24/2026, 2:31:55 PM · external

Police shut down Kratos phishing group behind credential theft

Police shut down Kratos phishing group behind credential theft
Developing story campaign 6 articles tracked
Russian state-backed group exploits Zimbra zero‑click flaw (CVE-2025-66376)
CyberSIXT Evidence Panel
Primary Source cisa.gov
Threat Actor
Everest gang

THIS week's cybersecurity news highlights key developments including:

1. **Dolphin X Malware**: An AI-driven infostealer that targets over 300 applications to exfiltrate sensitive data.

2. **Abbott's Cybersecurity Incident**: Unauthorized access in their Cancer Diagnostics business, with no major operational impact reported.

3. **Cyberattack in Maine**: An incident that disrupted internet services across 23 towns.

4. **Siemens Vulnerabilities**: Three zero-day vulnerabilities in Siemens ROX II OT switches enabling root-level access.

5. **Ransomware Attack on Stadler**: The Everest gang demanded $12 million after a data breach, which the company refused to pay.

6. **Dismantling of Kratos Phishing Group**: The German law enforcement shut down a organized credential theft group.

7. **Linux Kernel Vulnerabilities**: A significant release of 432 CVEs was published, necessitating swift security responses.

8. **Google's CodeMender**: A new service for developers to fix software vulnerabilities efficiently.

9. **Laundry Bear's Espionage Campaign**: A Russian group exploiting a Zimbra vulnerability, targeting Western entities for intelligence.

10. **Vehicles Vulnerable to Bluetooth Attacks**: Over 2 million vehicles equipped with insecure anti-theft systems facing Bluetooth hijacking risks.

View Primary Source Via www.securityweek.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline