Daily Recap, global cybersecurity incidents disrupted services from banking and postal providers to critical infrastructure, with law enforcement actions and incident responses spanning multiple regions. Highlights include the La Poste DDoS disruption, a guilty plea in the Nefilim ransomware case, BitLocker ransomware affecting Romaniaβs water agency, and BRICKSTORM backdoor guidance from CISA. #LaPoste #Nefilim
News:
Cybersecurity News Recap
Major Outages & Attacks
- A suspected DDoS attack disrupted online and branch services at Franceβs postal and banking provider La Poste, causing delays ahead of Christmas while customer data was reportedly not compromised β France Outage, La Poste DDoS
Ransomware & Law Enforcement
- An Interpol-led operation dismantled infrastructure, arrested 574 suspects and recovered $3 million tied to ransomware, BEC and extortion globally β Interpol Operation
- A former affiliate pleaded guilty in connection with the Nefilim ransomware campaign as prosecutions continue against operators and affiliates β Nefilim Guilty
- A Romanian national water agency was hit by BitLocker ransomware affecting around 1,000 systems across 10 regions, forcing outages and incident response actions β Romania Ransomware, Water Agency Hit, Romania BitLocker
- 54 suspects were charged in the US over ATM attacks leveraging the Ploutus malware family in a crackdown on cash-out schemes β Ploutus Charges
Malware & Malicious Packages
- The MacSync macOS malware dropper bypasses Gatekeeper and has been distributed via a signed Swift application, raising concerns about macOS supply-chain bypasses β MacSync Malware, MacSync Signed App
- Malicious npm packages masquerading as WhatsApp APIs have been found stealing messages, contacts and login tokens, exposing developer-supply-chain risks β WhatsApp npm, Fake WhatsApp API
- An Iranian-linked APT dubbed the βPrince of Persiaβ resurfaced with a Telegram-controlled stealth malware campaign targeting strategic victims β Iran APT
- CISA and partners released an update analyzing the BRICKSTORM backdoor, providing indicators and mitigation guidance for defenders β BRICKSTORM Update
Data Breaches & Exposures
- Automaker Nissan reported thousands of customer records exposed following a third-party Red Hat breach impacting its systems and prompting notifications β Nissan Exposure
- The University of Phoenix disclosed a data breach affecting nearly 3.5 million individuals, raising identity and credential risk for students and staff β Phoenix Breach
- Retailer Coupang suffered a breach impacting about 33.7 million users, prompting scrutiny over data protection practices β Coupang Breach
- Spotify disabled accounts after an open-source group scraped roughly 86 million songs from the platform, leading to takedowns and content-access controls β Spotify Scrape
Espionage & Phishing
- Threat actors used fake New Year concert invites as a phishing lure to target the Russian military, illustrating tailored social-engineering against defense targets β Russian Phishing
Policy, Regulation & Privacy
- Italy fined Apple $116 million over App Store tracking and privacy practice violations, emphasizing stronger enforcement of privacy rules β Apple Fine
- South Korea will require facial recognition verification for issuing new mobile numbers, raising privacy and surveillance debates β South Korea ID Rule
Alerts & Advisories
- The Internet Crime Complaint Center (IC3) issued a public service announcement covering current threats and reporting guidance for victims β IC3 PSA
- Security researchers noted that not every CISA-linked alert demands immediate patching, highlighting the example of the ASUS Live Update CVE-2025-59374 advisory and prioritization guidance β ASUS Update
Industry, Funding & Research
- Cybersecurity startup Gambit Cyber closed a seed round of $3.4 million to advance threat-detection capabilities for enterprises β Gambit Funding
- A profile on an OSINT investigator explored how open-source intelligence makes cybersecurity personal and operationally impactful β OSINT Profile
- Guidance on browsing more sustainably with a βgreen browserβ highlights privacy-adjacent environmental choices for users and organizations β Green Browser
Cybersecurity News Recap
Major Outages & Attacks
- A suspected DDoS attack disrupted online and branch services at Franceβs postal and banking provider La Poste, causing delays ahead of Christmas while customer data was reportedly not compromised β France Outage, La Poste DDoS
Ransomware & Law Enforcement
- An Interpol-led operation dismantled infrastructure, arrested 574 suspects and recovered $3 million tied to ransomware, BEC and extortion globally β Interpol Operation
- A former affiliate pleaded guilty in connection with the Nefilim ransomware campaign as prosecutions continue against operators and affiliates β Nefilim Guilty
- A Romanian national water agency was hit by BitLocker ransomware affecting around 1,000 systems across 10 regions, forcing outages and incident response actions β Romania Ransomware, Water Agency Hit, Romania BitLocker
- 54 suspects were charged in the US over ATM attacks leveraging the Ploutus malware family in a crackdown on cash-out schemes β Ploutus Charges
Malware & Malicious Packages
- The MacSync macOS malware dropper bypasses Gatekeeper and has been distributed via a signed Swift application, raising concerns about macOS supply-chain bypasses β MacSync Malware, MacSync Signed App
- Malicious npm packages masquerading as WhatsApp APIs have been found stealing messages, contacts and login tokens, exposing developer-supply-chain risks β WhatsApp npm, Fake WhatsApp API
- An Iranian-linked APT dubbed the βPrince of Persiaβ resurfaced with a Telegram-controlled stealth malware campaign targeting strategic victims β Iran APT
- CISA and partners released an update analyzing the BRICKSTORM backdoor, providing indicators and mitigation guidance for defenders β BRICKSTORM Update
Data Breaches & Exposures
- Automaker Nissan reported thousands of customer records exposed following a third-party Red Hat breach impacting its systems and prompting notifications β Nissan Exposure
- The University of Phoenix disclosed a data breach affecting nearly 3.5 million individuals, raising identity and credential risk for students and staff β Phoenix Breach
- Retailer Coupang suffered a breach impacting about 33.7 million users, prompting scrutiny over data protection practices β Coupang Breach
- Spotify disabled accounts after an open-source group scraped roughly 86 million songs from the platform, leading to takedowns and content-access controls β Spotify Scrape
Espionage & Phishing
- Threat actors used fake New Year concert invites as a phishing lure to target the Russian military, illustrating tailored social-engineering against defense targets β Russian Phishing
Policy, Regulation & Privacy
- Italy fined Apple $116 million over App Store tracking and privacy practice violations, emphasizing stronger enforcement of privacy rules β Apple Fine
- South Korea will require facial recognition verification for issuing new mobile numbers, raising privacy and surveillance debates β South Korea ID Rule
Alerts & Advisories
- The Internet Crime Complaint Center (IC3) issued a public service announcement covering current threats and reporting guidance for victims β IC3 PSA
- Security researchers noted that not every CISA-linked alert demands immediate patching, highlighting the example of the ASUS Live Update CVE-2025-59374 advisory and prioritization guidance β ASUS Update
Industry, Funding & Research
- Cybersecurity startup Gambit Cyber closed a seed round of $3.4 million to advance threat-detection capabilities for enterprises β Gambit Funding
- A profile on an OSINT investigator explored how open-source intelligence makes cybersecurity personal and operationally impactful β OSINT Profile
- Guidance on browsing more sustainably with a βgreen browserβ highlights privacy-adjacent environmental choices for users and organizations β Green Browser