Major Cyber Attacks in July 2026: US and EU Organizations Hit by Phishing, RATs, and Stealers
ID: 0d329a60-c6a7-5c32-978e-b2cd5467b1dd
STIX ID: report--0d329a60-c6a7-5c32-978e-b2cd5467b1dd
Feed Name: ANY.RUN's Cybersecurity Blog
July 2026 saw a series of active, multi-region campaigns that leveraged trusted platforms and legitimate authentication flows to deliver phishing, RATs, and infostealers—impacting Microsoft 365 accounts, financial workflows, and public-sector systems across the US, Europe, and Brazil. Notable operations include Kratos (document and service-based phishing), Kali365 (device-code/OAuth abuse), PhantomEnigma (delivery via compromised government infrastructure), Banana RAT (banking-focused remote access), DestinyStealer and DARTHVADER (credential and cookie theft), and live C2-delivered OVERLORD; the report emphasizes business exposure, evolving infrastructure, and recommended SOC mitigations like session revocation, behavioral analysis, and integrated threat intelligence.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
