New PathWiper Data Wiper Malware Disrupts Ukrainian Critical Infrastructure in 2025 Attack post, juni 6, 2025 A critical infrastructure entity within Ukraine was targeted by a previously unseen data wiper malware named PathWiper, according to new findings from Cisco Talos. “The attack was instrumented via a legitimate endpoint administration framework, indicating that the attackers likely had access to the administrative console, that was then used to… Continue Reading
Scattered Spider: Three things the news doesn’t tell you post, juni 3, 2025 With the recent attacks on UK retailers Marks & Spencer and Co-op, so-called Scattered Spider has been all over the media, with coverage spilling over into the mainstream news due to the severity of the disruption — currently looking like hundreds of millions in lost profits for M&S alone. This… Continue Reading
Microsoft and CrowdStrike Launch Shared Threat Actor Glossary to Cut Attribution Confusion post, juni 3, 2025 Microsoft and CrowdStrike have announced that they are teaming up to align their individual threat actor taxonomies by publishing a new joint threat actor mapping. “By mapping where our knowledge of these actors align, we will provide security professionals with the ability to connect insights faster and make decisions with… Continue Reading
Google patches new Chrome zero-day bug exploited in attacks post, juni 3, 2025 Google has released an emergency security update to fix the third Chrome zero-day vulnerability exploited in attacks since the start of the year. “Google is aware that an exploit for CVE-2025-5419 exists in the wild,” the company warned in a security advisory published on Monday. This high-severity vulnerability is caused by an out-of-bounds read and write weakness… Continue Reading
Google Releases Emergency Security Patch For Actively Exploited Chrome Zero-Day Vulnerability post, juni 3, 2025juni 4, 2025 Google released emergency (out-of-band) updates for its Chrome browser to address three security vulnerabilities—one of which is currently being actively exploited. The most critical of the flaws is tracked as CVE-2025-5419 (CVSS score: 8.8). It is a high-severity out-of-bounds read and write vulnerability in Chrome’s V8 JavaScript and WebAssembly engine…. Continue Reading
Tsjechië: China zit achter cyberaanval op ministerie van Buitenlandse Zaken post, mei 28, 2025juli 3, 2025 Tsjechië houdt een Chinese groep hackers verantwoordelijk voor een cyberaanval op het ministerie van Buitenlandse Zaken. Volgens de Tsjechen gaat het om een “kwaadaardige cybercampagne”, gericht op een netwerk dat gebruikt werd voor niet-geheime communicatie. Het land stelt dat de aan China gelinkte groep APT31 daar vermoedelijk achter zit. Die… Continue Reading
Cybercriminals Clone Antivirus Site to Spread Venom RAT and Steal Crypto Wallets post, mei 27, 2025mei 28, 2025 Cybersecurity researchers have disclosed a new malicious campaign that uses a fake website advertising antivirus software from Bitdefender to dupe victims into downloading a remote access trojan called Venom RAT. The campaign indicates a “clear intent to target individuals for financial gain by compromising their credentials, crypto wallets, and potentially… Continue Reading
Adidas Confirms Major Data Breach post, mei 27, 2025mei 28, 2025 Global sportswear giant Adidas has confirmed it was the target of a cyber attack in which customer information was compromised. According to the German sportswear giant, the breach involved “specific consumer data,” primarily consisting of contact details from individuals who had interacted with its customer support services. Continue Reading
Noord-Koreaanse dreigingsactoren richten zich op Oekraïense overheidsinstanties post, mei 26, 2025 In februari 2025 begon TA406, een door Noord-Korea gesponsorde dreigingsactor, zich te richten op overheidsinstanties in Oekraïne. Zowel credential harvesting als malware werden ingezet in phishingcampagnes. Het vermoedelijke doel van deze campagnes is het verzamelen van inlichtingen over het verloop van de Russische invasie. TA406 overlapt met activiteiten die door… Continue Reading
Een op de vijf bedrijven had vorig jaar schade door cybercriminaliteit post, mei 21, 2025 Veel meer bedrijven dan gedacht ondervinden schade door cybercriminaliteit. Een op de vijf bedrijven had vorig jaar jaar schade. Bij grote bedrijven was dat bijna 30 procent, zegt ABN Amro, dat onderzoek deed naar de impact van cyberaanvallen op het Nederlandse bedrijfsleven. Uit het onderzoek blijkt ook dat bedrijven zelf de risico’s nog… Continue Reading