Threats & incidents
-
ClickFix Mac stealer targets credentials and crypto
Huntress has documented a ClickFix-delivered macOS stealer that harvests identity data and contains code capable of draining a configurable portion of cryptocurrency balances.
-
Help-desk impersonation targets financial identities
A large social-engineering campaign has targeted financial and corporate organisations using phone calls, fake support processes, and real-time theft of authentication credentials.
-
Oracle database becomes attacker execution layer
Huntress found attackers using SQL injection to place a post-exploitation toolkit inside an Oracle database and reach operating-system command execution on the underlying Windows server.
-
Snowflake hacking case reaches guilty plea
Connor Moucka has pleaded guilty over a campaign that compromised more than 165 organisations, giving the Snowflake customer-account attacks a new accountability chapter.
-
N-able orders second N-central hotfix
N-able has issued a second mandatory N-central hotfix as it responds to evolving attacker techniques after exploitation reached systems inside managed customer environments.
-
PNLD breach reaches central government bodies
Contact details exposed through the Police National Legal Database include police, defence, central-government, criminal-justice, and public users.
-
Beacon breach exposes charity data backups
Beacon says compromised credentials were used to copy customer database backups, which investigators believe were probably downloaded.
-
Intermarché breach exposes 287,605 customer records
Unauthorised access to Intermarché’s Drive service exposed identity, contact, loyalty, and order information belonging to 287,605 customers.
-
Ransomware claims rise as confirmations lag
Comparitech recorded 799 ransomware incidents and criminal claims in July, but only 51 had been confirmed by affected organisations when its analysis was published.
-
Supplier account opens route into Żabka systems
Attackers used an external provider’s account to access Żabka resources supporting its franchise network, although payments, shops, consumer services, and Żappka data remained unaffected.



