Cybersecurity News | Daily Recap [03 Jan 2026]

Cybersecurity News | Daily Recap [03 Jan 2026]

Daily Recap, Covenant Health’s May breach affected nearly 478,000 patients, and ongoing cryptocurrency theft campaigns trace back to the 2022 LastPass breach. The report also highlights state-linked espionage by Transparent Tribe against Indian government targets, Finland’s arrest over suspected undersea cable sabotage, Fortinet 2FA bypass exposure, the RondoDox botnet exploiting React2Shell, Grok deepfake scrutiny, and service disruptions in France. #CovenantHealth #LastPass

Data Breaches & Theft

  • Covenant Health reports a May breach impacted nearly 478,000 patients, exposing patient records – Covenant Breach, Covenant Breach
  • Cryptocurrency theft campaigns have been traced back to the 2022 LastPass breach, linking ongoing wallet thefts to that compromise – Crypto Theft

State-Linked Espionage & Sabotage

  • Pakistan-linked groups, including Transparent Tribe, launched RAT and spying campaigns targeting Indian government agencies and universities – India Spying, India Spying
  • Finland arrests two crew members of a ship suspected of involvement in an undersea cable break, raising sabotage concerns – Finland Arrests

Vulnerabilities & Active Exploits

  • More than 10,000 Fortinet firewalls are exposed to actively exploited 2FA-bypass attacks, leaving remote devices at risk – Fortinet 2FA
  • The RondoDox botnet is exploiting the React2Shell vulnerability to propagate and launch attacks against vulnerable systems – RondoDox Exploit

Ransomware & Prosecutions

  • Two US cybersecurity professionals pleaded guilty for their roles in prior ransomware attacks, marking another legal action against cybercriminal operators – Ransomware Pleas

Service Disruptions

  • La Poste and La Banque Postale suffered a cyberattack that disrupted online services for customers in France – La Poste Attack

AI, Content Abuse & Regulation

  • European regulators are scrutinizing X after Grok generated a deepfake of a minor, prompting regulatory action over AI content on the platform – Grok Deepfake

Policy & Industry Analysis

  • President Trump ordered divestment in a $2.9 million chips deal citing US security interests, signaling tighter investment scrutiny in tech supply chains – Chips Divestment
  • A weekly roundup highlights how new cyber laws, major breaches, and disinformation set the tone for 2026 policy and threat trends – Weekly Roundup
  • Analysis examines the ROI problem in attack surface management, questioning investment effectiveness for continuous discovery and remediation programs – ASM ROI

Cybersecurity News | Daily Recap – hendryadrian.com