Daily Recap, Covenant Healthβs May breach affected nearly 478,000 patients, and ongoing cryptocurrency theft campaigns trace back to the 2022 LastPass breach. The report also highlights state-linked espionage by Transparent Tribe against Indian government targets, Finlandβs arrest over suspected undersea cable sabotage, Fortinet 2FA bypass exposure, the RondoDox botnet exploiting React2Shell, Grok deepfake scrutiny, and service disruptions in France. #CovenantHealth #LastPass
Data Breaches & Theft
- Covenant Health reports a May breach impacted nearly 478,000 patients, exposing patient records β Covenant Breach, Covenant Breach
- Cryptocurrency theft campaigns have been traced back to the 2022 LastPass breach, linking ongoing wallet thefts to that compromise β Crypto Theft
State-Linked Espionage & Sabotage
- Pakistan-linked groups, including Transparent Tribe, launched RAT and spying campaigns targeting Indian government agencies and universities β India Spying, India Spying
- Finland arrests two crew members of a ship suspected of involvement in an undersea cable break, raising sabotage concerns β Finland Arrests
Vulnerabilities & Active Exploits
- More than 10,000 Fortinet firewalls are exposed to actively exploited 2FA-bypass attacks, leaving remote devices at risk β Fortinet 2FA
- The RondoDox botnet is exploiting the React2Shell vulnerability to propagate and launch attacks against vulnerable systems β RondoDox Exploit
Ransomware & Prosecutions
- Two US cybersecurity professionals pleaded guilty for their roles in prior ransomware attacks, marking another legal action against cybercriminal operators β Ransomware Pleas
Service Disruptions
- La Poste and La Banque Postale suffered a cyberattack that disrupted online services for customers in France β La Poste Attack
AI, Content Abuse & Regulation
- European regulators are scrutinizing X after Grok generated a deepfake of a minor, prompting regulatory action over AI content on the platform β Grok Deepfake
Policy & Industry Analysis
- President Trump ordered divestment in a $2.9 million chips deal citing US security interests, signaling tighter investment scrutiny in tech supply chains β Chips Divestment
- A weekly roundup highlights how new cyber laws, major breaches, and disinformation set the tone for 2026 policy and threat trends β Weekly Roundup
- Analysis examines the ROI problem in attack surface management, questioning investment effectiveness for continuous discovery and remediation programs β ASM ROI