> TODAY'S SUMMARY (14 articles)
Today's cybersecurity landscape highlights several critical developments. Canadian cybersecurity executive Edward Dubrovsky was arrested for alleged ties to extortion linked to the ShinyHunters hacking group. Meanwhile, the Silent Ransom Group reportedly extorted $207 million from law firms through social engineering tactics without encrypting files. Cyberattacks on South Korean banks were traced to a Chinese hacker utilizing ARTEX AI tools. Additionally, an insider extortion case involved a former engineer demanding ransom from an industrial firm after compromising server access. As AI continues to evolve, initiatives are leveraging it to counter cybercriminals, indicating a shift in anti-cybercrime strategies. Lastly, the sentencing of the Empire Market co-creator underscores ongoing efforts to dismantle dark web operations.
|
// AI-powered summary generated at 16:00
Ever Care Corporation d/b/a Right at Home experienced a data security event involving unauthorized access to certain files, potentially impacting employee personal information. The incident was discovered on September 3, 2025, and was claimed by Sinobi on October 8.
MetroWest Community Federal Credit Union suffered a data breach on September 1, 2025, where unauthorized access to certain systems and files was detected. The breach potentially affected sensitive information including names, Social Security numbers, financial account numbers, and payment card numbe...
Google refutes claims that all 2.5 billion Gmail users are at risk.
The US Immigration agency has resumed a $2m contract with the Graphite spyware developer, now owned by US investor AE Industrial Partners
A malicious npm package “nodejs-smtp” has been discovered impersonating nodemailer and injecting code to drain crypto wallets
Added an acknowledgement. This is an informational change only.
Experts have revealed an Azure AD vulnerability exposing ClientId and ClientSecret in a publicly accessible appsettings.json file
Jaguar has proactively shut down systems to mitigate the impact of the incident, amid reports that workers at a UK manufacturing plant had been told to stay at home
Kerberos is the default authentication protocol in on-prem Windows environments. We’re launching a 6-part YouTube series, a technical deep dive into Kerberos. We’ll break down the protocol, dissect well-known attacks, and cover defensive strategies to keep your environment secure.
The UK National Cyber Security Centre thinks public disclosure programs could help mitigate AI safety threats
Zscaler has emerged as the latest corporate victim of a supply chain attack targeting Salesforce data
Exploring how far cyber security approaches can help mitigate risks in generative AI systems
This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of...
This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of...
MEDPEDS experienced a data breach on September 2, 2025, where an unknown person or entity gained access to their computer system, encrypted data, and viewed patient information. The breach involved name, date of birth, home address, phone number, and patient medical records. A cyberattack was claime...
This vulnerability allows local attackers to disclose sensitive information on affected installations of Realtek RTL8811AU drivers. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating...
This vulnerability allows local attackers to escalate privileges on affected installations of Realtek RTL8811AU drivers. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. Th...
Diamond Chemical Co, LLC suffered a data breach where an unauthorized actor accessed certain systems between July 26, 2025, and September 2, 2025, and copied some files without permission. The breach involved name and Social Security Number information. Diamond Chemical is providing credit monitorin...
This vulnerability allows local attackers to escalate privileges on affected installations of Realtek rtl81xx SDK Wi-Fi driver. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of...
Silver Fox APT abuses Microsoft-signed drivers to kill antivirus and deploy ValleyRAT remote-access backdoor