Cybersecurity News | Daily Recap [10 Jun 2025]

Chinese-linked groups including APT41, PurpleHaze, and APT15 targeted global enterprises and infrastructure with ShadowPad and GOREshell malware, while a North Korea-linked group exploited social media for malware campaigns. Vulnerabilities in Roundcube, SAP NetWeaver, and Wazuh server were actively exploited, leading to data breaches and DDoS attacks; meanwhile, major outages impacted Heroku and OpenAI. #APT41 #ShadowPad #WazuhVulnerability #HerokuOutage

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Recent cybersecurity updates include Chinese state-sponsored actors exploiting the NICKNAME zero-click iMessage vulnerability to target high-profile individuals in the US and EU, while US authorities seize cryptocurrency linked to North Korean sanctions evasion. Multiple organizations, including NHS UK and United Natural Foods, suffered ransomware and cyberattacks affecting critical services and operations. #NICKNAMEExploit #UNC1151 #Qilin #MiraiBotnet #SalesforceZeroDay #CryptoPhishing

Read More
Threat Research | Weekly Recap [08 June 2025]

This week’s cybersecurity recap highlights ongoing threats from phishing and social engineering campaigns targeting various sectors, including finance and government, with sophisticated tactics like fake CAPTCHA frameworks and Phishing-as-a-Service platforms. Malware developments include stealthy RATs such as DuplexSpy and Chaos RAT, along with advanced infostealers like OtterCookie, all posing significant risks to corporate and crypto assets; supply chain threats involve malicious repositories and compromised developer tools. The report also covers notable APT activities by groups like UNC5174, OilRig, and Kimsuky, alongside infrastructure attacks exploiting IoT and cloud misconfigurations. Emerging tools like RayV Lite facilitate hardware-level attacks, illustrating the evolving landscape of cyber threats. #ClickFix #FlowerStorm #LazarusGroup #ChaosRAT #Mirai #RayVLite

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Multiple critical vulnerabilities have been identified across various platforms, including HPE Insight Remote Support, FreeRTOS-Plus-TCP, AWS Amplify Studio, and Apache Tomcat, urging immediate patching to prevent exploits leading to system crashes and denial of service. Additionally, recent ransomware campaigns targeted organizations like Optima Tax Relief and Kettering Health, while nation-state actors have engaged in espionage and infrastructure attacks, notably in Ukraine and Armenia. #HPE RCE Flaw #FreeRTOS Flaw #AWS Amplify RCE #Tomcat DoS #Optima Tax Chaos #Kettering Interlock #Bitter APT #UNC5792 #Atomic macOS Stealer #PathWiper Malware

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

This cybersecurity update covers extensive malware and ransomware campaigns, including the BadBox IoT botnet and Qilin ransomware exploiting critical vulnerabilities. It also highlights law enforcement actions against cybercrime networks and emerging technologies enhancing defense strategies. #BadBox #Qilin #PathWiper #Interlock #PlayRansomware #Hive0131 #Rhadamanthys #RedLine

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Recent cybersecurity developments include sophisticated phishing and malware campaigns targeting Salesforce users with infostealers like Azorult and Lumma, and cybercriminal activities involving backdoors in open-source repositories. Key issues also involve geopolitical cyberattacks, major data breaches, and security vulnerabilities affecting critical infrastructure and enterprise systems. #UNC6040 #Azorult #Lumma #ChaosRAT #PhantomEnigma #RedLine #BidenCash #PathWiper #Tupolev #IBMQRadar #CiscoISE

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Recent cybersecurity incidents include breaches at North Face and North Carolina healthcare, and a ransomware attack that impacted Victoria’s Secret, highlighting escalating retail cyber threats. Emerging malware like SafePay and threat actors such as Scattered Spider and SafePay gang continue to pose significant risks across sectors. #ScatteredSpider #SafePay #Victoria’sSecret

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Cybersecurity Daily Recap highlights recent threats involving PowerShell-based campaigns delivering NetSupport RAT and AsyncRAT through social engineering tactics. It also covers critical vulnerabilities patched in Chrome, Roundcube, and Fire Panels, alongside a notable data breach at Cartier and ongoing activities of groups like Scattered Spider and Lazarus. #NetSupportRAT #AsyncRAT #ChromeZeroDay #CartierDataBreach #ScatteredSpider #LazarusGroup

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Recent cybersecurity updates highlight active exploitation of Adreno GPU vulnerabilities and the critical vBulletin flaw, underscoring the urgency for patching and improved security practices. The reports also reveal threats from TrickBot, GhostSpy, and NetBird spear-phishing campaigns, as well as geopolitical influence campaigns and regional cyber incidents. #AdrenoGPU #vBulletin #TrickBot #GhostSpy #NetBird

Read More
Threat Research | Weekly Recap [2025-06-01]

Recent cybersecurity threat research highlights the rise of new ransomware groups like NightSpire and Lyrix, targeting SMEs and Windows users with sophisticated techniques. Advanced persistent threats such as Konni and Void Blizzard continue to focus on geopolitical espionage, while malware campaigns exploit supply chain vulnerabilities to deploy mining malware and remote access trojans. #NightSpire #LyrixRansomware #Konni #VoidBlizzard #FormBook

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Recent cybersecurity updates include Linux core dump flaws enabling local password hash theft and law enforcement seizing domains supporting malware evasion tools. Major threat actor activity includes Conti and TrickBot gang revelations, regional social engineering campaigns by Bitter APT, and high-profile breaches like TikTok user data sale claims. #LinuxVulnerabilities #Conti #BitterAPT #TikTokData breach

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Cybersecurity News Daily Recap highlights sophisticated phishing campaigns abusing trusted platforms like Google Apps Script and Firebase, alongside targeted state-sponsored attacks such as the ConnectWise breach and APT41 espionage operations. Recent developments also include ransomware threats like Qilin, critical vulnerabilities in Apache InLong and Argo CD, and emerging malware like EDDIESTEALER. #Firebase #APT41

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Recent cybersecurity reports highlight targeted attacks on retail giants like Victoria’s Secret using ransomware, along with widespread data breaches affecting millions including LexisNexis. Notable threats include Chinese APT groups APT41 and APT31 exploiting cloud and zero-day vulnerabilities, along with botnets like AyySSHush and PumaBot compromising IoT devices. #Victoria’sSecret #APT41 #AyySSHush

Read More
Cybersecurity News | Daily Recap [10 Jun 2025]

Yesterday’s cybersecurity recap highlights attacks involving DragonForce ransomware exploiting SimpleHelp vulnerabilities and the silent activities of the Silent Ransom Group targeting US law firms. It also covers Russian-affiliated groups like Void Blizzard and Laundry Bear breaching organizations and the exposure of open-source supply chain threats through malicious npm packages. #DragonForce #SilentRansomGroup #VoidBlizzard #LaundryBear #NPM

Read More