LIVE · cybersecurity feed
Live wire
CVE-2026-15409 · Edge infrastructure under siege: what two independent datasets reveal about who's exploiting your perimeterAnonyMousKIT phishing-as-a-service uses AI voice calls to steal iPhone passcodesCVE-2026-60004 · Hackers now exploit critical Gitea flaw in code injection attacksEmployee benefits platform Paylogix says hackers stole financial and health dataU.S. Sanctions Iran-Linked Hackers Behind Critical Infrastructure BreachesCVE-2026-61979 · Two CVSS 9.8 Auth Bypasses in miniOrange SAML WordPress Plugin Were Exploited Before Any Database Even Listed the Paid Editions as VulnerableCVE-2024-28224 · A Malicious Webpage Could Poison Your Local AI Model Behind NVIDIA NemoClawAustralia Warns of Active Exploitation of Critical TeamCity Server FlawCVE-2026-21962 · Actively Exploited Oracle WebLogic Flaw Lets Unauthenticated Attackers Access Critical DataUS sanctions Iranian cyber actors as UK discloses power plant attack
security

Interpol Operation Jackal IV Identifies 263 Cybercrime Suspects

Interpol operation leads to 58 arrests and identifies 263 suspects across 22 countries

zeroday.news ·

Interpol’s Operation Jackal IV, an eight-month international law enforcement effort, has identified 263 cybercrime suspects and resulted in 58 arrests across 22 countries. The operation, which ran from November 2025 to June 2026, primarily targeted West African organized crime groups engaged in cyber-enabled financial fraud and money laundering.

The initiative aimed to disrupt illicit financial flows, identify high-value targets, seize criminal assets, and support prosecutions. This operation builds upon previous Interpol-led efforts, including Operation Jackal III in 2024, which led to 300 arrests.

Significant actions were taken in several countries. In South Africa, authorities raided seven locations linked to a syndicate running romance and investment scams that targeted retirees in English-speaking countries. This led to 39 arrests, the blocking of 257 bank accounts, and the seizure of approximately $2.67 million.

Romanian authorities dismantled a group operating an investment scam through a call center that promoted fraudulent high returns from stocks and cryptocurrencies. This network is estimated to have been responsible for stealing and laundering €143 million. Police arrested 11 individuals and seized about €330,000 ($385,000) in cash and cryptocurrency, along with six properties and luxury watches.

In Argentina, the operation identified a 196-person Crime-as-a-Service (CaaS) network. This group allegedly provided website domains and money laundering support to West African organized crime groups, resulting in 17 arrests.

Tomonobu Kaya, Director of the Interpol Financial Crime and Anti-Corruption Centre, emphasized that the operation’s success stemmed from tracking illicit financial flows across international borders, which he described as the "lifeblood" of organized crime.

Beyond financial fraud, investigators also noted an increase in sextortion cases targeting minors, with victims as young as 14 years old. Some criminal networks were found to be utilizing CaaS capabilities from external providers to outsource activities such as money laundering.

ShareXLinkedInWhatsAppFacebook

More News

view all →
security

Election official says Tina Peters would be consultant, won’t have access to election systems

Shasta County registrar Clint Curtis told CyberScoop he needs Peters to help manage the county’s 2026 elections and he’s not concerned about her past conviction. The post Election official says Tina Peters would be consultant, won’t have access to election systems appeared first on CyberScoop.

vulnerability

Ubiquiti patches three max severity security vulnerabilities

Ubiquiti has released security patches for three new maximum-severity vulnerabilities that threat actors can exploit remotely without privileges. [...]

vulnerability

Four in Five AI Tools Run with No IT Oversight, New Research Finds

Reco report reveals growing shadow AI problem and surge in vulnerability disclosures

CVE-2026-15409critical

Edge infrastructure under siege: what two independent datasets reveal about who's exploiting your perimeter

A joint Tenable-SentinelOne analysis of 93 CVE-actor attribution pairs reveals that both state-sponsored actors and cybercriminals independently converge on the same edge infrastructure. Special thanks to SentinelOne® Incident Readiness & Response for their contributions to this publication. It is the shared attack surface where state-sponsored threat actors and financially motivated criminal grou

phishingcritical

AnonyMousKIT phishing-as-a-service uses AI voice calls to steal iPhone passcodes

A phishing-as-a-service (PhaaS) platform called AnonyMousKIT is automating the theft of Apple ID credentials needed to remove Activation Lock from stolen iPhones, SOCRadar found. “By leveraging a critical flaw – the use of bare relative paths – the investigation unraveled a reseller supply chain of 506 domains and 168 storefront brands active since early 2024. Despite leveraging advanced AI to mim

breach

CISA: Over 100 Internet-Exposed Water Systems Targeted in July Cyberattacks

The agency has released guidance on reducing internet exposure in the wake of the recent Iran-linked hacker attacks. The post CISA: Over 100 Internet-Exposed Water Systems Targeted in July Cyberattacks appeared first on SecurityWeek.