The B2B Podcast Index
Index
All categories
MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
MethodologySubmit
Best of:MarketingSalesSaaSFinanceHROpsLeadershipCustomer SuccessAI & DataProductStartups & FoundersRevOpsEngineering & DevTools
An independent project byFame
SearchBest episodesGuestsInsightsMethodologySubmit a podcast
Index/Engineering & DevTools/Cybercrime Magazine Podcast
Cybercrime Magazine Podcast artwork

Cybercrime News For Jul. 2, 2026. 19-Year-Old Alleged Hacker Extradited. WCYB Digital Radio.

Cybercrime Magazine Podcast · 2026-07-02 · 3 min

0:00--:--

Key moments - from our scoring

Substance score

23 / 100

Five dimensions, 20 points each

Insight Density5 / 20
Originality3 / 20
Guest Caliber2 / 20
Specificity & Evidence11 / 20
Conversational Craft2 / 20

The episode presents seven significant cybersecurity incidents from early July 2026. Peter Stokes, a dual U.S.-Estonian citizen using the handle Bouquet, was extradited from Finland to face charges as an alleged Scattered Spider member connected to a May 2025 luxury jewelry retailer breach that netted an $8 million ransom demand. Kubota North America disclosed a month-long intrusion (March 16 - April 20) exposing employee SSNs, bank details, and health benefits data. Medtronic revealed that Shiny Hunters accessed corporate IT systems in April, stealing 9 million records affecting residents across Texas, Massachusetts, and Vermont with health and financial exposure. The FBI issued warnings about traffic distribution system exploitation via phishing and vulnerable websites leading to credential theft and ransomware deployment. DC Housing Authority shut down operations after attackers claimed data theft, while Sapporo Holdings (parent of Poka Singapore and Sleeman Breweries Canada) discovered unauthorized access following the prior year's Asahi ransomware attack that exposed 1.5 million customer records.

Key takeaways

  • →Scattered Spider remains an active threat, with members like Peter Stokes conducting high-value extortion attacks demanding multi-million dollar ransomware payments.
  • →Multi-month dwell times (30+ days) in corporate networks like Kubota allow attackers to exfiltrate large volumes of PII including SSNs, financial records, and health data before detection.
  • →Traffic distribution systems are being weaponized at scale to redirect users through phishing and search manipulation to fake login pages that compromise credentials and deploy ransomware.
  • →Critical infrastructure and manufacturing sectors (DCHA housing, Kubota, Medtronic) are facing coordinated breaches exposing hundreds of thousands of employee and customer records.
  • →Japanese beverage and manufacturing companies face elevated risk after the Asahi ransomware attack, with Sapporo's overseas subsidiaries now compromised in the same industry.

Topics in this episode

MedtronicScattered SpiderPeter StokesKubota North AmericaShiny HuntersTraffic distribution systemsDC Housing AuthoritySapporo HoldingsPoka SingaporeSleeman Breweries

Questions this episode answers

Who is Peter Stokes and what are the charges against him?

Peter Stokes is a 19-year-old dual U.S.-Estonian citizen extradited from Finland to the U.S. to face cybercrime charges as an alleged member of the Scattered Spider hacking group, using the online handle Bouquet, and is connected to at least four network intrusions including a May 2025 luxury jewelry retailer breach involving an $8 million ransom demand.

What data did attackers steal in the Kubota North America breach?

Attackers accessed files containing social security numbers, bank account information, driver's licenses, and health benefits enrollment details for employees and their dependents during an unauthorized access period from March 16 to April 20, 2026.

How are traffic distribution systems being exploited by cybercriminals?

Attackers are using traffic distribution systems to redirect users to malicious websites through phishing emails, search engine manipulation, and exploitation of website vulnerabilities, then directing them to fake login pages that steal credentials, sensitive data, or deploy ransomware.

Which group claimed responsibility for the Medtronic breach?

The cybercriminal group Shiny Hunters claimed responsibility for accessing Medtronic's corporate IT systems in April 2026, alleging they stole 9 million records affecting hundreds of thousands of residents across Texas, Massachusetts, and Vermont.

What happened to Sapporo Holdings after the Asahi ransomware attack?

Following a major ransomware attack on rival brewer Asahi the prior year that exposed 1.5 million customer records, Sapporo Holdings disclosed suspected unauthorized network access affecting its overseas subsidiaries Poka in Singapore and Sleeman Breweries in Canada.

What our scoring noted

Our reviewer’s read on each dimension, with quotes from the episode.

Insight Density

5 / 20

This is a 3-minute news bulletin aggregating six cybercrime stories with no analysis, commentary, or operational takeaways - pure headlines with thin sourcing attribution. A B2B operator learns nothing beyond what they'd get skimming security news feeds.

The FBI has issued a warning regarding cybercriminals who are exploiting traffic distribution systems to redirect internet users to malicious websites

Originality

3 / 20

Zero original thinking - this is a straight news aggregation read with no frameworks, contrarian angles, or synthesis across stories. Every item is just a restatement of another outlet's reporting.

According to Washington City Paper attackers left a warning on agency computers claiming they stolen sensitive information and demanding action from the organization

Guest Caliber

2 / 20

There is no guest at all - a single news anchor reads pre-written copy. No practitioner, operator, or expert contributes any perspective.

Reporting for Cybercrime Radio, I'm David Browey. For more information on the latest news in cybercrime and cybersecurity, visit cybercrimewire.com.

Specificity & Evidence

11 / 20

Despite the shallow format, the episode does cite specific companies, dollar figures, dates, and data categories - $8M ransom demand, March 16 - April 20 access window, 9 million records, 1.5 million customers - which is the one dimension where it earns partial credit.

an internal investigation revealed that the threat actor accessed files containing sensitive personal and financial information belonging to employees and their dependents between March 16th and April 20th
Shiny Hunters claimed responsibility for the attack on their leak site, alleging they stole 9 million records

Conversational Craft

2 / 20

This is a scripted monologue with no host, no guest, no questions, and no follow-up - conversational craft is structurally inapplicable, and the format earns minimal credit only for clear delivery.

The Daily News is brought to you by Evolution Equity Partners, an international venture capital investor partnering with exceptional entrepreneurs to develop market-leading cybersecurity and enterprise software companies.

Conversation analysis

Computed from the transcript - who did the talking, and the words that came up most.

Most-used words

data7information5cybercrime4news4network4systems4reports4cybersecurity4stokes3breach3million3unauthorized3security3sensitive3radio2according2

Episode notes

The Cybercrime Magazine Podcast brings you daily cybercrime news on WCYB Digital Radio, the first and only 7x24x365 internet radio station devoted to cybersecurity. Stay updated on the latest cyberattacks, hacks, data breaches, and more with our host. Don't miss an episode, airing every half-hour on WCYB Digital Radio and daily on our podcast. Listen to today's news at

Full transcript

3 min

Transcribed and scored by The B2B Podcast Index.

For WCYB Digital Radio, this is today's cybercrime news. A 19-year-old dual U.S. and Estonian citizen, Peter Stokes, has been extradited from Finland to the United States to face multiple cybercrime charges.

According to the Hacker News, prosecutors allege Stokes is a member of the Scattered Spider hacking group and used the online handle Bouquet to execute at least four network intrusions. Among the allegations is a May 2025 breach of a luxury jewelry retailer, during which Stokes and his co-conspirators reportedly stole data and demanded an $8 million cryptocurrency ransom. Meanwhile, Kubota North America Corporation recently disclosed that hackers maintained unauthorized access to some of its network systems for over a month earlier this year.

Security Boulevard reports that an internal investigation revealed that the threat actor accessed files containing sensitive personal and financial information belonging to employees and their dependents between March 16th and April 20th. The compromised data included social security numbers, bank account information, driver's licenses, and health benefits enrollment details. The FBI has issued a warning regarding cybercriminals who are exploiting traffic distribution systems to redirect internet users to malicious websites.

MLive reports that attackers are driving traffic to these malicious pages through phishing emails, search engine manipulation, and by exploiting vulnerabilities in legitimate websites. Once redirected, users are guided to fake login pages that allow criminals to compromise networks, steal sensitive data, or deploy ransomware. To Washington D now where the D Housing Authority has shut down its network environment as a precaution following the discovery of a recent cybersecurity incident According to Washington City Paper attackers left a warning on agency computers claiming they stolen sensitive information and demanding action from the organization DCHA, which administers public housing programs, is currently working with cybersecurity experts and law enforcement to assess the data breach and safely restore its operations.

Medical device giant Medtronic is notifying patients of a data breach after an unauthorized party accessed certain corporate IT systems in April. Tech Target reports that the cybercriminal group Shiny Hunters claimed responsibility for the attack on their leak site, alleging they stole 9 million records before removing the listing. State filings indicate that hundreds of thousands of residents across Texas, Massachusetts, and Vermont had their names, social security numbers, and health-related information exposed.

And finally to Japan, where Sapporo Holdings has disclosed suspected unauthorized network access affecting its overseas subsidiaries, Poka in Singapore and Sleeman Breweries in Canada. The record reports that the Japanese beverage giant immediately shut down the impacted systems to conduct an investigation and determine if any data was stolen. This incident follows a major ransomware attack last year on rival brewer Asahi, which disrupted production and exposed the data of 1.5 million customers.

Reporting for Cybercrime Radio, I'm David Browey. For more information on the latest news in cybercrime and cybersecurity, visit cybercrimewire.com. The Daily News is brought to you by Evolution Equity Partners, an international venture capital investor partnering with exceptional entrepreneurs to develop market-leading cybersecurity and enterprise software companies.

Learn more at evolutionequity.com.

Related episodes across the Index

Other episodes covering the same guests and topics, from across The B2B Podcast Index.

  • Decoding the Cybercriminal Mindset, with Ryan ChapmanThe Cyber Insider · on Scattered Spider85 / 100
  • Episode: 201 - Stacy Enxing Seng on Why People and Culture Determine MedtechMedtech Talk · on Medtronic84 / 100
  • #451: A new biomarker for depression?The Healthtech Podcast · on Medtronic70 / 100
  • Incident Response 101: What to Do When You’re Under AttackSecure AF · on Shiny Hunters66 / 100
  • How to close the growth gap: turning customer insights into business results with Robyn BoltonInsights Unlocked · on Medtronic62 / 100
  • What Defenders Are Still Getting Wrong About Identity - #208Reimagining Cyber · on Scattered Spider58 / 100

More from Cybercrime Magazine Podcast

All episodes →
  • Public Sector Cyber Brief. Canvas Breach. Michael Centrella, SecurityScorecard & Theresa Payton.
  • Inside(r) Scoop. Redefining The Insider Threat. James Rutt, The Dana Foundation & Aviv Nahum, Above.
  • Mastering Cyber. Scammers Targeting Gamers. Alissa “Dr Jay” Abdullah, Deputy CSO, Mastercard.
  • Mitiga Mic. Beyond Standard Data Lakes. Amir Gabrieli & Yosi Navaro, Mitiga.
  • Cybercrime News For Jun. 30, 2026. $10M US Reward for Signal, WhatsApp Hacking. WCYB Digital Radio.
Explore the best B2B Engineering & DevTools podcasts →
All Cybercrime Magazine Podcast episodes →