ZeroHour

Search: “cyberattack”

10,821 stories

Detect and disrupt AI-themed attacks with Microsoft Defender

Microsoft Threat Intelligence reports criminal campaigns impersonating ChatGPT, Copilot, Claude, and DeepSeek in phishing, AiTM, and malvertising attacks reaching 100,000 emails daily.

Microsoft Threat Intelligence observed a growing set of campaigns that abuse trust in popular AI brands: a ChatGPT-themed phishing campaign sent up to 100,000 emails in one day to steal payment card data, and a Claude-themed campaign used adversary-in-the-middle techniques to harvest credentials and access tokens. Other campaigns included malvertising for a fake AI Windows plugin delivering the Vidar stealer and fraudulent DeepSeek installers distributed via GitHub. Initial access broker Storm-3075 used AI-themed malvertising to distribute payloads for multiple downstream actors, and Microsoft notes the AI services themselves were not compromised. Microsoft also details Defender protections such as Safe Links, Safe Attachments, and attack disruption against these multi-stage lures.

Microsoft Security Blog · 5d agoPhishing & fraud in the wild1

Ukraine says cyberattack hit Russian e-commerce giant Wildberries amid drone strikes

Ukraine's HUR intelligence, with the Cyber Corps group, cyberattacked Russian e-commerce giant Wildberries, disrupting payments and customer service to amplify drone strikes.

Ukraine's Main Intelligence Directorate (HUR) claimed a cyberattack, carried out with the Cyber Corps hacker group, disrupted Russia's largest online marketplace, Wildberries, affecting customer service, contact centers, and payment infrastructure. The operation was designed to amplify kinetic drone strikes; Ukraine says seven of the company's 10 largest logistics centers have been knocked out of operation and more than 1.2 million square meters of warehouse space lost. The claims could not be independently verified and Wildberries has not commented. HUR cited the company's role in Russia's logistics network and in financing the war.

The Record · Aug 17, 2026Threat actor

Cyberattack on logistics giant Ceva hits retailers and Steam customers across Europe

Cyberattack on Ceva Logistics disrupted eight European warehouses, delaying shipments for Bol, De Bijenkorf, Ajax and exposing Steam hardware buyers' data.

A cyberattack on Ceva Logistics disrupted operations at eight European warehouses, delaying shipments for Bol, De Bijenkorf, Ace & Tate, Ajax and Steam hardware customers. Attackers accessed two Ceva systems processing Bol orders, potentially exposing names, addresses, phone numbers, email addresses and order details. Valve began notifying European Steam customers whose hardware shipping data may have been compromised and is contacting data protection authorities. Ceva, with about 110,000 employees and over 1,700 facilities, has not disclosed the attackers or whether ransomware was involved.

The Record · Aug 11, 2026Data breach in the wild