> TODAY'S SUMMARY (88 articles)
Today's cybersecurity news highlights significant threats and trends. ASOS customers were targeted in a data breach where hackers stole personal details and shopping searches, prompting warnings about potential phishing attempts. In law enforcement, the FBI arrested members of the ShinyHunters group while also disrupting tools linked to the Flax Typhoon, a Chinese state-sponsored hacking group. Meanwhile, ransomware continues to pose a major risk, with new arrests and a trial involving a ransomware consultant accused of fraud. Citrix has issued critical patches for vulnerabilities in its NetScaler products, while researchers reported on the exploitation of flaws in AhsayCBS software. Lastly, a $10 million bounty has been offered for a Chinese hacker linked to a significant Microsoft Exchange Server attack, underscoring ongoing geopolitical cyber tensions.
|
// AI-powered summary generated at 16:00
A cyber-attack by pro-Iranian group Cyber Fattah has leaked personal information from the Saudi Games online
A cyber-attack on CoinMarketCap exposed users to a fake Web3 wallet prompt, draining $43,266 from wallets
Written by: Louis Dion-Marcil
This blog post highlights a Mandiant Red Team case study simulating an “Initial Access Brokerage” approach that discovered two vulnerabilities on Aviatrix Controller, a Software-Defined Networking (SDN) utility that allows for the creation of links between different cl...
The DHS warned of a heightened risk of cyber and physical attacks on US targets by Iran in retaliation for strikes on Iranian nuclear facilities over the weekend
The UK government’s Cyber Essentials scheme hits 10,000 certifications for the first time in a quarter but challenges persist
Le parti politique australien United Australia Party a subi une attaque de ransomware le 23 juin 2025, ce qui a entraîné une violation de données potentiellement importante. Le parti n'est pas en mesure de confirmer quelles données ont été compromises, mais il avertit que les informations personnell...
SecurityScorecard has discovered a covert cyber-espionage botnet dubbed “LapDogs” linked to China
Birdsong Peanuts suffered a data breach that exposed customers to identity theft and fraud. The breach occurred when customers were offered free credit monitoring services. The breach was discovered on an unknown date, but the notification was sent on 07/15/2025.
Une faille de sécurité a compromis les informations personnelles des employés et des associés liés aux entités commerciales et politiques de Clive Palmer, notamment Mineralogy et Queensland Nickel Group. La faille, identifiée le 23 juin 2025, impliquait une attaque de ransomware qui a affecté 11 ent...
Ce bulletin d'actualité du CERT-FR revient sur les vulnérabilités significatives de la semaine passée pour souligner leurs criticités. Il ne remplace pas l'analyse de l'ensemble des avis et alertes publiés par le CERT-FR dans le cadre d'une analyse de risques pour prioriser l'application des...
Netstar, une filiale d'Altron, a subi une attaque de ransomware en juin 2023, mais a pu contenir l'incident et restaurer ses opérations. Les hackers ont publié des données en ligne, mais Netstar affirme que les données des clients n'ont pas été compromises. L'entreprise a mis en place des mesures de...
La ville autonome de Melilla est touchée par une panne informatique totale depuis trois jours, empêchant les employés publics de travailler et les administrés de régler leurs affaires. Les techniciens travaillent à résoudre le problème avec l'aide du service de renseignement national. Les causes de...
The UK’s Cyber Monitoring Centre (CMC) assessed the incident as a Category 2 systemic event, based on the significant economic impact
Oxford City Council revealed that attackers accessed data of individuals who worked on Council-administered elections between 2001 and 2022
L'attaque n'a pas été revendiquée, mais l'enseigne Qilin divulgue des données présentées comme issues des systèmes de Sly Fox.
Around half of the world’s top 100 websites have already integrated passkey support
Bridewell’s analysis of advertised UK cybersecurity roles revealed that the public sector offers one the lowest average salaries across all industries
ESET Endpoint Antivirus and ESET Endpoint Security for Windows version 12.0.2058.0 have been released and are available for download.
A prominent expert on Russian information operations was targeted by a sophisticated spear phishing attack likely coming from Russian hackers
Banana Squad exploited GitHub to distribute malicious Python code disguised as legitimate tools