---
title: "Iran Hits Infrastructure, EY Data Leak, CRPx0 Breaches Hyundai – Cybersecurity News [July 27, 2026] | DuoCircle"
description: "Stay updated on the latest cybersecurity threats, ransomware attacks, AI-powered hacking, critical vulnerabilities, and email security best practices."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/cybersecurity-news-update-week-31-of-2026/"
---

Quick Answer

Stay informed on the latest cybersecurity threats, including ransomware, AI-powered attacks, critical vulnerabilities, and data breaches. Learn why implementing SPF, DKIM, DMARC, and email security best practices is essential to prevent phishing, spoofing, and unauthorized email activity.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fcybersecurity-news-update-week-31-of-2026%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Iran%20Hits%20Infrastructure%2C%20EY%20Data%20Leak%2C%20CRPx0%20Breaches%20Hyundai%20%E2%80%93%20Cybersecurity%20News%20%5BJuly%2027%2C%202026%5D&url=undefined%2Fblog%2Fcybersecurity-news-update-week-31-of-2026%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fcybersecurity-news-update-week-31-of-2026%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fcybersecurity-news-update-week-31-of-2026%2F&title=Iran%20Hits%20Infrastructure%2C%20EY%20Data%20Leak%2C%20CRPx0%20Breaches%20Hyundai%20%E2%80%93%20Cybersecurity%20News%20%5BJuly%2027%2C%202026%5D "Share on Reddit") [ ](mailto:?subject=Iran%20Hits%20Infrastructure%2C%20EY%20Data%20Leak%2C%20CRPx0%20Breaches%20Hyundai%20%E2%80%93%20Cybersecurity%20News%20%5BJuly%2027%2C%202026%5D&body=Check out this article: undefined%2Fblog%2Fcybersecurity-news-update-week-31-of-2026%2F "Share via Email") 

![cybersecurity update](https://media.mailhop.org/duocircle/spf-validator-7866-1785751551864.jpg) 

## Iranian hackers hit U.S. critical infrastructure PLCs

Iran-linked crews are actively exploiting internet-exposed Rockwell, Schneider Electric, and Siemens PLCs across **U.S. critical infrastructure**, putting water, energy, and manufacturing systems at risk of espionage or disruption.

## ShinyHunters claims EY breach, threatens to leak tax data

The [extortion group ShinyHunters](https://www.foxnews.com/tech/fake-shinyhunters-sextortion-email-uses-carnival-breach-data) says it stole client tax data from Big Four accounting firm EY and is threatening to leak it a high-profile hit on a major professional-services network.

## CRPx0 ransomware claims Hyundai Turkey breach

Double-extortion group **CRPx0 listed Hyundai’s Turkish** operations on its leak site, claiming 1.5GB of exfiltrated assessment data, making Hyundai the latest automaker caught up in [ransomware extortion](https://www.cybersecuritydive.com/news/hackers-microsoft-teams-ransomware-it-support/826591/).

## Chinese-speaking hacker automates attacks with DeepSeek

A [threat actor](https://www.duocircle.com/blog/email-security/what-threat-actor-can-do-with-your-emails-without-password/) wired a DeepSeek AI agent into an autonomous attack pipeline, another sign that commercial AI models are being repurposed as always-on offensive tools.

![Anti Phishing Software 1253](https://media.mailhop.org/duocircle/anti-phishing-software-1253-1785751721870.jpg)

## Fake Claude AI installation guides spread “MacSync” stealer

A new macOS campaign is weaponizing [fake Claude AI installation](https://www.malwarebytes.com/blog/scams/2026/04/fake-claude-site-installs-malware-that-gives-attackers-access-to-your-computer) guides to deploy a six-stage stealer and remote access trojan that steals passwords and crypto wallets proof that AI’s popularity is now a reliable phishing lure.

## Google patches 1,072 Chrome flaws with AI assistance

_Google used AI to identify and fix 1,072 Chrome security vulnerabilities, illustrating how machine-scale remediation is changing the patch pipeline for one of the world’s most-used browsers_.

## Google indexed private Claude AI shared chats

## [Google’s search engine](https://medium.com/@bennisondevadoss/how-google-search-engine-works-5ea8917088d8) indexed shared Claude AI chat links, exposing sensitive user conversations in search results a reminder that “share” features can quietly turn into public archives.

## Critical JetBrains TeamCity flaw allows unauthenticated RCE

JetBrains disclosed a critical TeamCity On-Premises flaw allowing unauthenticated remote code execution, a serious risk since [CI/CD servers](https://aws.amazon.com/what-is/ci-cd/) are a direct pivot point to source code and build pipelines.

![Phishing Protection 1252](https://media.mailhop.org/duocircle/phishing-protection-1252-1785751993564.jpg)

## VMware vCenter flaws let attackers bypass authentication

Newly disclosed vCenter flaws let remote attackers [bypass authentication](https://www.infosecurity-magazine.com/news/check-point-critical-auth-bypass/) and execute code, effectively handing over control of an organization’s entire virtualized infrastructure.

## Apple’s iOS 26.6 patches kernel-level exploit chain

**Apple’s iOS 26.6 update** fixes flaws that allowed kernel-level code execution and root access on iPhones a must-install update for anyone carrying sensitive data on their phone.

## BlueNoroff’s fake meeting kit hijacks webcams and drains crypto

North Korea’s BlueNoroff group is using a fake meeting kit that hijacks webcams, disables Windows Defender, and [steals cryptocurrency credentials](https://www.bbc.com/news/articles/c93w30gl5jno), wrapped inside what looks like an ordinary video-call invite.

## Bank of Baroda confirms breach via compromised employee email

The [Indian bank confirmed a data breach](https://www.scworld.com/brief/indian-bank-domain-registrar-allegedly-leaks-sensitive-data) stemming from a single compromised employee email account a reminder of how much damage one [hijacked mailbox](https://thehackernews.com/2026/07/russian-hackers-exploit-microsoft-owa.html) can cause at a major financial institution.

## Analog Devices confirms cyberattack and data exfiltration

Semiconductor giant [Analog Devices confirmed a cyberattack](https://www.securityweek.com/semiconductor-firm-analog-devices-discloses-data-breach/) in which hackers exfiltrated files from company systems, adding another critical chip supplier to the growing list of victims.

![Spf Record 4673](https://media.mailhop.org/duocircle/spf-record-4673-1785752030656.jpg)

## 700,000 Vatican prayer app accounts left exposed

_A security flaw meant anyone with a browser could access roughly 700,000 Vatican prayer-app user accounts, a stark example of a single access-control gap exposing an entire user base_.

## CISA urges water utilities to pull exposed PLCs offline

[Amid active targeting](https://www.cnbc.com/2026/08/01/tankers-near-oman-come-under-fire.html) of **industrial control systems**, CISA is urging water utilities to remove publicly exposed programmable logic controllers from the internet.

## Russian hackers target Signal backup recovery keys

State-linked Russian hackers are going after Signal’s backup recovery keys to hijack user accounts, showing that even [end-to-end encrypted](https://www.cloudflare.com/learning/privacy/what-is-end-to-end-encryption/) apps are only as secure as their **account-recovery process**.

As cyber threats continue to **evolve, organizations** should strengthen their defenses by implementing SPF, DKIM, [DMARC](https://www.duocircle.com/email/dmarc/), and [email security](https://www.duocircle.com/) best practices to prevent [phishing, spoofing](https://www.msspalert.com/brief/novel-usps-spoofing-phishing-attack-relies-on-malicious-pdfs), and unauthorized email activity.

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-31-of-2026%2F) [ ](https://twitter.com/intent/tweet?text=Iran%20Hits%20Infrastructure%2C%20EY%20Data%20Leak%2C%20CRPx0%20Breaches%20Hyundai%20%E2%80%93%20Cybersecurity%20News%20%5BJuly%2027%2C%202026%5D&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-31-of-2026%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fcybersecurity-news-update-week-31-of-2026%2F) Copy 

Related Articles

- [ ![Cybersecurity News](https://media.mailhop.org/duocircle/spf-permerror-5610-1779093389633.jpg)  Cisco SD-WAN Flaw, Critical NGINX Exploit, Foxconn Ransomware Attack – Cybersecurity News \[May 11, 2026\] Blog ](/blog/cybersecurity-news-update-week-20-of-2026/)
- [ ![Cybersecurity news](https://media.mailhop.org/duocircle/spf-permerror-5667-1779700511937.jpg)  GitHub Code Leak, 7-Eleven Breached, NYC Patient Exposure – Cybersecurity News \[May 18, 2026\] Blog ](/blog/cybersecurity-news-update-week-21-of-2026/)
- [ ![Cybersecurity news](https://media.mailhop.org/duocircle/spf-permerror-5686-1780301891080.jpg)  FBI Warns Firms, Carnival Breach, GlobalProtect Flaw – Cyber News Blog ](/blog/cybersecurity-news-update-week-22-of-2026/)
- [ ![cybersecurity news](https://media.mailhop.org/duocircle/spf-record-4590-1780921768387.jpg)  DentaQuest Leak, Cisco Patch Pending, Instagram Bug – Cyber News Blog ](/blog/cybersecurity-news-update-week-23-of-2026/)

## Related Articles

[  news  Cisco SD-WAN Flaw, Critical NGINX Exploit, Foxconn Ransomware Attack – Cybersecurity News \[May 11, 2026\]  May 18, 2026 ](/blog/cybersecurity-news-update-week-20-of-2026/)[  news  GitHub Code Leak, 7-Eleven Breached, NYC Patient Exposure – Cybersecurity News \[May 18, 2026\]  May 25, 2026 ](/blog/cybersecurity-news-update-week-21-of-2026/)[  news  FBI Warns Firms, Carnival Breach, GlobalProtect Flaw – Cyber News  Jun 1, 2026 ](/blog/cybersecurity-news-update-week-22-of-2026/)[  news  DentaQuest Leak, Cisco Patch Pending, Instagram Bug – Cyber News  Jun 8, 2026 ](/blog/cybersecurity-news-update-week-23-of-2026/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Iran Hits Infrastructure, EY Data Leak, CRPx0 Breaches Hyundai – Cybersecurity News [July 27, 2026]","description":"Stay updated on the latest cybersecurity threats, ransomware attacks, AI-powered hacking, critical vulnerabilities, and email security best practices.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-31-of-2026/","datePublished":"2026-08-03T00:00:00.000Z","dateModified":"2026-08-03T00:00:00.000Z","dateCreated":"2026-08-03T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-31-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-validator-7866-1785751551864.jpg","caption":"cybersecurity update"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"news"},{"@type":"ListItem","position":3,"name":"Iran Hits Infrastructure, EY Data Leak, CRPx0 Breaches Hyundai – Cybersecurity News [July 27, 2026]","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-31-of-2026/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"news","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Iran Hits Infrastructure, EY Data Leak, CRPx0 Breaches Hyundai – Cybersecurity News [July 27, 2026]","item":"https://www.duocircle.com/blog/cybersecurity-news-update-week-31-of-2026/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Iran Hits Infrastructure, EY Data Leak, CRPx0 Breaches Hyundai – Cybersecurity News [July 27, 2026]","description":"Stay updated on the latest cybersecurity threats, ransomware attacks, AI-powered hacking, critical vulnerabilities, and email security best practices.","url":"https://www.duocircle.com/blog/cybersecurity-news-update-week-31-of-2026/","datePublished":"2026-08-03T00:00:00.000Z","dateModified":"2026-08-03T00:00:00.000Z","dateCreated":"2026-08-03T00:00:00.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/cybersecurity-news-update-week-31-of-2026/"},"articleSection":"news","keywords":"","image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/spf-validator-7866-1785751551864.jpg","caption":"cybersecurity update"},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
