• Home
  • Cyber Crime
  • Cyber warfare
  • APT
  • Data Breach
  • Deep Web
  • Digital ID
  • Hacking
  • Hacktivism
  • Intelligence
  • Internet of Things
  • Laws and regulations
  • Malware
  • Mobile
  • Reports
  • Security
  • Social Networks
  • Terrorism
  • ICS-SCADA
  • POLICIES
  • Contact me
MUST READ

Salt Typhoon breach: Chinese APT compromises U.S. Army National Guard network

 | 

Former US Army member confesses to Telecom hack and extortion conspiracy

 | 

CVE-2025-6554 marks the fifth actively exploited Chrome Zero-Day patched by Google in 2025

 | 

DDoS peaks hit new highs: Cloudflare mitigated massive 7.3 Tbps assault

 | 

U.S. CISA adds Wing FTP Server flaw to its Known Exploited Vulnerabilities catalog

 | 

Android Malware Konfety evolves with ZIP manipulation and dynamic loading

 | 

Belk hit by May cyberattack: DragonForce stole 150GB of data

 | 

North Korea-linked actors spread XORIndex malware via 67 malicious npm packages

 | 

FBI seized multiple piracy sites distributing pirated video games

 | 

An attacker using a $500 radio setup could potentially trigger train brake failures or derailments from a distance

 | 

Interlock ransomware group deploys new PHP-based RAT via FileFix

 | 

Global Louis Vuitton data breach impacts UK, South Korea, and Turkey

 | 

Experts uncover critical flaws in Kigen eSIM technology affecting billions

 | 

Spain awarded €12.3 million in contracts to Huawei

 | 

Patch immediately: CVE-2025-25257 PoC enables remote code execution on Fortinet FortiWeb

 | 

Wing FTP Server flaw actively exploited shortly after technical details were made public

 | 

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 53

 | 

Security Affairs newsletter Round 532 by Pierluigi Paganini – INTERNATIONAL EDITION

 | 

McDonald’s job app exposes data of 64 Million applicants

 | 

Athlete or Hacker? Russian basketball player accused in U.S. ransomware case

 | 
  • Home
  • Cyber Crime
  • Cyber warfare
  • APT
  • Data Breach
  • Deep Web
  • Digital ID
  • Hacking
  • Hacktivism
  • Intelligence
  • Internet of Things
  • Laws and regulations
  • Malware
  • Mobile
  • Reports
  • Security
  • Social Networks
  • Terrorism
  • ICS-SCADA
  • POLICIES
  • Contact me
  • Home
  • Breaking News
  • Security Affairs newsletter Round 521 by Pierluigi Paganini – INTERNATIONAL EDITION

Security Affairs newsletter Round 521 by Pierluigi Paganini – INTERNATIONAL EDITION

Pierluigi Paganini April 27, 2025

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free in your email box.

Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.

African multinational telco giant MTN Group disclosed a data breach
CEO of cybersecurity firm charged with installing malware on hospital systems
JPCERT warns of DslogdRAT malware deployed in Ivanti Connect Secure
SAP NetWeaver zero-day allegedly exploited by an initial access broker
Operation SyncHole: Lazarus APT targets supply chains in South Korea
Interlock ransomware gang started leaking data allegedly stolen from leading kidney dialysis firm DaVita
Yale New Haven Health (YNHHS) data breach impacted 5.5 million patients
Crooks exploit the death of Pope Francis
WhatsApp introduces Advanced Chat Privacy to protect sensitive communications
Android spyware hidden in mapping software targets Russian soldiers
Crypto mining campaign targets Docker environments with new evasion technique
The popular xrpl.js Ripple cryptocurrency library was compromised in a supply chain attack
British retailer giant Marks & Spencer (M&S) is managing a cyber incident
Chinese Cybercriminals Released Z-NFC Tool for Payment Fraud
Millions of SK Telecom customers are potentially at risk following USIM data compromise
Abilene city, Texas, takes systems offline following a cyberattack
Japan ’s FSA warns of unauthorized trades via stolen credentials from fake security firms’ sites
Kimsuky APT exploited BlueKeep RDP flaw in attacks against South Korea and Japan
New sophisticate malware SuperCard X targets Androids via NFC relay attacks
Russia-linked APT29 targets European diplomatic entities with GRAPELOADER malware

International Press – Newsletter

Cybercrime

Hackers pounce on Pope’s death with scams 

Damage caused by unauthorized access to and transactions on internet trading services is increasing sharply  

Southeast Asian cyber fraud industry at ‘inflection point’ as it expands globally  

British retailer M&S confirms being hit by ‘cyber incident’ amid store delays  

Blue Shield of California Data Breach Impacts 4.7 Million People  

NFC Fraud Wave: Evolution of Ghost Tap on the Dark Web 

FBI says online scams raked in $16.6 billion last year  

Interlock ransomware claims DaVita attack, leaks stolen data

Cyber Firm CEO Accused of Placing Malware on Hospital Device  

Ransomware Groups Evolve Affiliate Models

Introducing ToyMaker, an initial access broker working in cahoots with double extortion gangs  

AI-Enabled Darcula-Suite Makes Phishing Kits More Accessible, Easier to Deploy  

Malware

XRP supply chain attack: Official NPM package infected with crypto stealing backdoor 

SuperCard X: exposing a Chinese-speaker MaaS for NFC Relay fraud operation 

New Rust Botnet “RustoBot” is Routed via Routers  

DslogdRAT Malware Installed in Ivanti Connect Secure  

Iran-Linked Hackers Target Israel with MURKYTOUR Malware via Fake Job Campaign

Hacking

Remote Exploitation of Nissan Leaf: Controlling Critical Body Elements from the Internet

Obfuscation Overdrive: Next-Gen Cryptojacking with Layers      

ConfusedComposer: A Privilege Escalation Vulnerability Impacting GCP Composer 

ReliaQuest Uncovers New Critical Vulnerability in SAP NetWeaver  

Novel Universal Bypass for All Major LLMs  

Fake Security Vulnerability Phishing Campaign Targets WooCommerce Users 

Craft CMS RCE exploit chain used in zero-day attacks to steal data

Intelligence and Information Warfare

APT Group Profiles – Larva-24005  

Whistleblower: DOGE Siphoned NLRB Case Data  

Android spyware trojan targets Russian military personnel who use Alpine Quest mapping software

Phishing for Codes: Russian Threat Actors Target Microsoft 365 OAuth Workflows  

Inside Gamaredon’s PteroLNK: Dead Drop Resolvers and evasive Infrastructure

DPRK Hackers Steal $137M from TRON Users in Single-Day Phishing Attack

Operation SyncHole: Lazarus APT goes back to the well  

FBI seeks help to unmask Salt Typhoon hackers behind telecom breaches

North Korean Hackers Spread Malware via Fake Crypto Firms and Job Interview Lures

Cybersecurity

SK Telecom warns customer USIM data exposed in malware attack

Adversarial machine learning is cybersecurity’s new frontier   

Introducing Advanced Chat Privacy: Enhanced Protection for Your Most Sensitive Conversations

Microsoft Defender XDR False Positive Leads to Massive Data Leak of 1,700+ Sensitive Documents  

What Are We Really Securing?  

Understanding the threat landscape for Kubernetes and containerized assets

Employee monitoring app leaks 21 million screenshots in real time

Mobile provider MTN says cyberattack compromised customer data     

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)


facebook linkedin twitter

Cybercrime data breach Hacking hacking news information security news IT Information Security malware Newsletter Pierluigi Paganini Security Affairs

you might also like

Pierluigi Paganini July 16, 2025
Salt Typhoon breach: Chinese APT compromises U.S. Army National Guard network
Read more
Pierluigi Paganini July 16, 2025
Former US Army member confesses to Telecom hack and extortion conspiracy
Read more

leave a comment

newsletter

Subscribe to my email list and stay
up-to-date!

    recent articles

    Salt Typhoon breach: Chinese APT compromises U.S. Army National Guard network

    Intelligence / July 16, 2025

    Former US Army member confesses to Telecom hack and extortion conspiracy

    Cyber Crime / July 16, 2025

    CVE-2025-6554 marks the fifth actively exploited Chrome Zero-Day patched by Google in 2025

    Hacking / July 16, 2025

    DDoS peaks hit new highs: Cloudflare mitigated massive 7.3 Tbps assault

    Security / July 16, 2025

    U.S. CISA adds Wing FTP Server flaw to its Known Exploited Vulnerabilities catalog

    Hacking / July 16, 2025

    To contact me write an email to:

    Pierluigi Paganini :
    pierluigi.paganini@securityaffairs.co

    LEARN MORE

    QUICK LINKS

    • Home
    • Cyber Crime
    • Cyber warfare
    • APT
    • Data Breach
    • Deep Web
    • Digital ID
    • Hacking
    • Hacktivism
    • Intelligence
    • Internet of Things
    • Laws and regulations
    • Malware
    • Mobile
    • Reports
    • Security
    • Social Networks
    • Terrorism
    • ICS-SCADA
    • POLICIES
    • Contact me

    Copyright@securityaffairs 2024

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities...
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
    Non-necessary
    Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
    SAVE & ACCEPT