Cybersecurity News | Daily Recap [07 Jun 2025]

Multiple critical vulnerabilities have been identified across various platforms, including HPE Insight Remote Support, FreeRTOS-Plus-TCP, AWS Amplify Studio, and Apache Tomcat, urging immediate patching to prevent exploits leading to system crashes and denial of service. Additionally, recent ransomware campaigns targeted organizations like Optima Tax Relief and Kettering Health, while nation-state actors have engaged in espionage and infrastructure attacks, notably in Ukraine and Armenia. #HPE RCE Flaw #FreeRTOS Flaw #AWS Amplify RCE #Tomcat DoS #Optima Tax Chaos #Kettering Interlock #Bitter APT #UNC5792 #Atomic macOS Stealer #PathWiper Malware

Read More
Infostealers Crash Course: A Tradecraft Tuesday Recap

Infostealers have become a significant cyber threat, accounting for almost a quarter of all incidents detected by Huntress in 2024, by harvesting sensitive credentials and data that fuel ransomware, extortion, and identity theft attacks. The evolution of infostealers, their targeting of diverse information including corporate credentials and cloud keys, and the law enforcement takedowns of related marketplaces highlight both the risks and ongoing efforts to combat these threats. #Infostealers #LummaStealer #RedLine #BansheeStealer

Read More
Controversial Firms Cellebrite and Corellium Announce 0 Million Acquisition Deal

Cellebrite’s acquisition of Corellium for $200 million aims to enhance mobile vulnerability detection and virtual device visualization solutions for various sectors. Both companies have faced legal and ethical controversies, including lawsuits from Apple and associations with spyware groups. #Cellebrite #Corellium #NSOGroup #Apple #cybersecurityM&A…

Read More
AI Vulnerability Hunting – Jailbreaking is Over

This episode covers a range of topics including the use of AI in vulnerability hunting, recent hacking competitions, and innovative security patents like PayPal’s domain scanning system. It also discusses the security implications of SVG graphics, updates to Apple’s security strategy, and classic sci-fi movies relevant to AI futures. #OpenAI #ZeroDayExploits

Read More
⚡ Weekly Recap: APT Intrusions, AI Malware, Zero-Click Exploits, Browser Hijacks and More

This cybersecurity update highlights recent active threats, including APT41’s use of Google Calendar for command-and-control and the takedown of services aiding malware obfuscation. Key incidents involve nation-state cyberattacks, vulnerabilities in popular software, and innovative malware such as GhostSpy and Lumma Stealer. #APT41 #VoidBlizzard…

Read More
Fake Recruiter Emails Target CFOs Using Legit NetBird Tool Across 6 Global Regions

Cybersecurity experts warn of a sophisticated spear-phishing campaign targeting financial executives across multiple regions, utilizing a legitimate remote access tool, NetBird, to maintain persistent access. This multi-stage attack involves encrypted redirects, CAPTCHA evasion, and custom scripts, highlighting the rising use of legitimate tools for malicious purposes. #NetBird #PhishingCampaign…

Read More
North Korea Hacking Group Konni Malware – External Evaluation Committee Appointment Notice for Virtual Assets.hwp(2025.5.2)

This analysis details a North Korean cyberattack using a malicious HWP document disguised as a cryptocurrency-related external evaluation committee appointment notice. The malware employs PowerShell commands to execute payloads, evade detection, and exfiltrate data to a remote server. #Kimsuky #Lazarus #Konni #SeacuraMalware

Read More
North Korea Hacking Group Konni Malware – External Evaluation Committee Appointment Notice for Virtual Assets.hwp(2025.5.2)

This article analyzes a malicious HWP document disguised as a cryptocurrency-related external evaluation committee appointment notice linked to North Korean threat actors such as Kimsuky, Lazarus, and Konni. The malware uses PowerShell scripts for execution, data extraction, encryption, and exfiltration to external servers under the attackers’ control. #Kimsuky #Lazarus #Konni #MaliciousHWP #PowerShellMalware

Read More