Analysis

Cybersecurity News Roundup

July 11, 2026 08:11 · 12 min read
Cybersecurity News Roundup

Cybersecurity News Roundup

SecurityWeek’s weekly cybersecurity news roundup offers a concise overview of important developments that may not receive full standalone coverage but remain relevant to the broader threat landscape.

Armenian Man Pleads Guilty to Ransomware Attacks

Karen Serobovich Vardanyan, a 34-year-old Armenian national, has pleaded guilty to conspiracy and computer fraud for his role in Ruyk ransomware attacks. Vardanyan and his accomplices received over $15 million in ransom payments, and he has agreed to pay $1.1 million in restitution.

QuimaRAT Targets Windows, macOS, Linux

A subscription-based remote access trojan (RAT) platform named QuimaRAT v2.0 is actively being advertised on dark web forums with multi-architecture binaries targeting Windows, macOS, and Linux. The modular malware implements virtualization checks and native library loading to execute fileless payloads and run dozens of embedded commands.

Canadian Intelligence Service Disrupts Ransomware Operations

Canada’s Communications Security Establishment (CSE) disclosed that it actively hacked into the infrastructure of ransomware operations, drug traffickers, and extremist organizations over the past year. The agency disrupted the command-and-control operations of these threat networks to mitigate global criminal campaigns.

Enterprise Security Firm Rejects Trademark Infringement Claims

Abnormal AI publicly refuted a lawsuit brought by Anthropic that alleges trademark infringement, unfair competition, and intentional brand duplication designed to mislead enterprise customers. The security firm clarified that its slash-based wordmark was independently designed prior to the commercialization of Claude AI.

Fraudsters Unmasked Behind Deceptive Offensive Security Firm

A clandestine exploit brokering startup operating under the moniker IRIS C2 was exposed as a front managed by fraudsters and convicted felons. The company claims to sell phone-hacking services to the government but does not appear to have any government contracts.

Writer AI Vulnerability Exposed Data

A security researcher uncovered a critical vulnerability dubbed WriteOut in Writer AI that allows a threat actor to completely bypass sandbox restrictions. The cross-tenant flaw allowed unauthorized users to break structural isolation controls, read proprietary workspace data, and systematically access information belonging to other corporate tenants.

AssuranceAmerica Data Breach Affects 7 Million People

Hackers targeted US insurance company AssuranceAmerica and stole information belonging to nearly 7 million people, including names, contact information, and driver’s license numbers. The breach was discovered in March, and the company’s investigation was completed in June.

NSA Brings Back TAO

The NSA has officially revived its iconic Tailored Access Operations (TAO) nomenclature for its premier network exploitation unit, effectively reversing the changes of the 2016 NSA21 initiative. The specialized unit is slated to occupy a dedicated campus facility next month.

FBI Issues TeamPCP Alert

The FBI published an alert outlining malicious operations orchestrated by a cybercrime syndicate known as TeamPCP. The threat group successfully trojanized critical development dependencies and DevOps security tools to drop credential-harvesting implants like CanisterWorm and SandClock.

DHS Database Hacked

An unidentified threat actor breached the Homeland Security Information Network (HSIN), a sensitive but unclassified database used by federal, state, and private partners for interagency communication. A damage assessment by the DHS Office of Intelligence and Analysis revealed that the hackers targeted servers and SharePoint infrastructure.

Adobe Transitions to Accelerated Security Update Cadence

Adobe announced that it will begin publishing security bulletins and critical patch disclosures twice a month, on the second and fourth Tuesdays. The shift is a direct response to adversaries leveraging AI to rapidly discover vulnerabilities.

These are just a few of the key stories from this week’s cybersecurity news roundup. For more information and analysis, subscribe to the SecurityWeek Email Briefing.


Source: SecurityWeek

Source: SecurityWeek

Powered by ZeroBot

Protect your website from bots, scrapers, and automated threats.

Try ZeroBot Free