> TODAY'S SUMMARY (1 articles)
Raheim Hamilton, co-creator of the dark web marketplace Empire Market, was sentenced to 40 years in prison after pleading guilty to drug conspiracy charges. Hamilton's case underscores the ongoing law enforcement efforts to dismantle illegal online drug trafficking operations. Additionally, he agreed to forfeit over $100 million in Bitcoin and various properties, highlighting the financial ramifications of cybercrime. This incident reflects a broader trend in cybersecurity where authorities are increasingly targeting cryptocurrency-related crimes in the dark web space. As cybercriminal activities evolve, the focus on dismantling such marketplaces is likely to intensify.
|
// AI-powered summary generated at 00:01
In July 2025, a vulnerability in the GiveWP WordPress plugin exposed the names and email addresses of approximately 30k donors to the Pi-hole network-wide ad blocking project. Pi-hole subsequently self-submitted the list of impacted donors to HIBP.
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see [Google Chrome Releases](https://chromereleases.googleblog.com/202[SS9.1]5) for more information.
The DoubleTrouble Android banking Trojan has evolved, using Discord for delivery and introducing several new features
CISA has launched a new tool to streamline cyber incident response and aid in adversary eviction
We’re releasing pajaMAS: a curated set of MAS hijacking demos that illustrate important principles of MAS security.
Semperis found that executives were physically threatened in 40% of ransomware incidents, in a bid to pressure victims to pay demands
The arrest of members of the Scattered Spider cyber-attack group have temporarily halted new intrusions, however, similar threat actors continue to pose risks
Here's a look at cybersecurity stories that moved the needle, raised the alarm, or offered vital lessons in July 2025
Avast researchers shared a step-by-step guide to decrypt files for victims of FunkSec ransomware
Experts argue that password managers are still useful despite Microsoft Authenticator ditching its capabilities
Added an FAQ to explain that the security update KB for SharePoint Server 2016 applies to both Microsoft SharePoint Server 2016 and Microsoft SharePoint Enterprise Server 2016. This is an informational change only.
North Korea’s Lazarus Group has been blamed for a cyber-espionage campaign using open source packages
Added an FAQ to explain that the security update KB for SharePoint Server 2016 applies to both Microsoft SharePoint Server 2016 and Microsoft SharePoint Enterprise Server 2016. This is an informational change only.
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of QNAP TS-464 devices. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2024-50388.
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of QNAP TS-464 devices. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.5. The following CVEs are assigned: CVE-2024-50387.
Le Muséum national d'Histoire naturelle a été victime d'une cyberattaque, ce qui affecte la recherche française. Le musée est également un centre de recherche important. L'attaque a eu lieu récemment, mais la date exacte n'est pas précisée.
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of QNAP TS-464 devices. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 6.3.
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of QNAP QHora-322 routers. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.5.
La ville de Bar Harbor a subi une attaque de cybersécurité, ce qui a entraîné la fermeture de ses services en ligne pour un avenir prévisible. Les systèmes de la ville ont été déconnectés pour prévenir tout dommage supplémentaire et une enquête est en cours avec l'aide de la société de cybersécurité...
Phoenix Products, LLC suffered a sophisticated ransomware attack on July 31, 2025, which may have involved unauthorized access to employee data, including first and last names and Social Security numbers. The attack was claimed bay Play on August 4.