What has marked cybersecurity this week?

Like every Friday, since Apollo Cybersecurity we collect the main news and cyberattacks that have impacted the business and technological world. This week stands out for the increase of ransomware attacks, massive data breaches and phishing campaigns taking advantage of global events.

1. Scattered Spider behind cyber attacks on airlines in the US and Canada

The group Scattered Spider, known for its advanced social engineering tactics, has attacked North American airlines, causing operational interruptions and potential passenger data breaches. Its modus operandi includes:

  • Phishing aimed at personnel with critical access
  • Impersonating employees in IT helpdesks
  • Deployment of ransomware with double extortion

2. Ingram Micro suffers from ransomware affecting thousands of MSPs and resellers

The global distributor Ingram Micro confirmed a ransomware attack that paralyzed its key systems since July 3, affecting platforms such as Xvantage and Impulse. The group SafePay is claimed to be the author and threatened to leak stolen data if the ransom is not paid.

  • More than 220 organizations globally affected by SafePay in 2025
  • Critical risk in the IT supply chain and business continuity

3. Massive leak at McDonald's due to a failure in its hiring chatbot

The chatbot “Olivia”, developed by Paradox.ai, presented information from up to 64 million candidates after being hacked with the password “123456”. Filtered data:

  • Names, emails and phone numbers
  • Chat history with the AI assistant

This incident reinforces the urgency of securing systems based on AI and HR Automation.

4. Prime Day: 87% of new Amazon-related domains are malicious

According to Check Point Research, more than were detected 1,230 new domains during Prime Day, of which 87% were phishing or malware. Common tactics:

  • Domains with errors (amazom.com) or unusual terminations
  • Phishing emails with urgent issues (“Refund Failed”)
  • Fake offers on social networks redirecting to fraudulent websites

Is your company prepared for these risks?

In Apolo Cybersecurity we help you to:

  • Fake offers on social networks redirecting to fraudulent websites
  • Assess your level of maturity in the face of advanced threats
  • Design action plans and policies adapted to your sector
  • Perform Threat Led Penetration Testing to check your real resilience
  • Implement 24/7 SOC and Threat Intelligence to detect attacks before they occur

Request your free audit and personalized plan here

Prev Post
Next Post

Any questions?
We're happy to help!