Daily Recap, Fraud and phishing activity included the FBI disrupting an AI-powered phishing service using 1 million URLs and reporting crypto scams that relied on couriers, while MENA users faced Sniper Dz lures through fake Facebook offers and browser alerts. Across cloud and breach headlines, attackers turned Microsoft 365 Copilot into a 1-click data-theft mechanism, exploited a PAN-OS GlobalProtect VPN flaw, and hit platforms including REDCap, Infinite Campus, and Novo Nordisk, with ransomware cases and supply-chain intrusions also continuing. #FBI #Microsoft365Copilot #GlobalProtect #REDCap #InfiniteCampus #NovoNordisk #Ozempic #Conti #SniperDz #Misere #ShaiHulud #MiniShaiHulud #Miasma #Hades #UNKDeadDrop #GoFlateLoader
Fraud & Phishing
- FBI says fraudsters are using couriers to steal cash in crypto scams, while a separate AI-powered phishing service using 1 million URLs was disrupted by the FBI β Crypto Scams, Phishing Service
- MENA users were targeted by Sniper Dz scams via fake Facebook offers and browser alerts, highlighting ongoing social-engineering abuse β Sniper Dz
Cloud & Identity
- A new attack turned Microsoft 365 Copilot into a 1-click data-theft tool, exposing risks in AI-assisted productivity platforms β Copilot Attack
- Palo Alto warned that attackers are actively exploiting a PAN-OS GlobalProtect VPN flaw, underscoring urgent patching needs for perimeter defenses β PAN-OS Flaw
- The weekly threat recap highlighted Entra identity abuse, Azure DNS takeover, and Duo Auth Proxy exposure among broader cloud compromise trends β Weekly Recap
Breaches & Data Theft
- Chinese hackers breached REDCap servers and stole medical research data, showing continued targeting of healthcare-adjacent platforms β REDCap Breach
- Infinite Campus disclosed a data breach affecting 137,000 school staff accounts, adding to the wave of education-sector incidents β Campus Breach
- Novo Nordisk, maker of Ozempic, said hackers breached its IT systems, while a mysterious Misere hacker also hit a French government messaging platform β Novo Breach, Misere Attack
Ransomware & Crime
- A Ukrainian man pleaded guilty in the US to Conti ransomware charges, marking another legal step against the groupβs ecosystem β Conti Case
- The weekly recap also noted ransomware and extortion activity tied to Tengu, Shisa, and ShinyHunters, alongside other data-theft operations β Threat Recap
Supply Chain & Developer Risk
- The weekly threat recap tracked supply-chain and developer-focused intrusions including Shai-Hulud, Mini Shai-Hulud, Miasma, Hades, UNK_DeadDrop, and GoFlateLoader β Supply-Chain Recap
- CISOs are also grappling with rising code sprawl as vibe coding accelerates software development and expands security oversight challenges β Code Sprawl