ThreatsDay Bulletin: RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More Stories

ThreatsDay Bulletin: RustFS Flaw, Iranian Ops, WebUI RCE, Cloud Leaks, and 12 More Stories

This week’s cybersecurity news highlights active threat actors using honeypots and exploiting known vulnerabilities to distribute malware. Key developments include a fake hack trap by Resecurity, cryptocurrency miners exploiting GeoServer flaws, and a surge in Chinese-backed attacks on Taiwan’s infrastructure. #LAPSUS$ Hunters #GeoServer #MuddyWater

Keypoints

  • Resecurity set a honeypot to trap threat actors claiming to be involved with LAPSUS$ Hunters.
  • Cybercriminals exploit GeoServer CVE-2024-36401 to distribute XMRig cryptocurrency miners.
  • CISA added 245 new vulnerabilities to its KEV catalog in 2025, increasing exposure to cyberattacks.
  • OpenAI faces a lawsuit demanding the release of 20 million ChatGPT logs over copyright concerns.
  • Chinese cyber units drastically increased attacks on Taiwan’s critical infrastructure in 2025.

Read More: https://thehackernews.com/2026/01/threatsday-bulletin-rustfs-flaw-iranian.html