Cyberthreat News
The expanding attack surface forces organizations to strengthen resilience and coordinate security strategies across sectors. Changing geopolitical tensions and technological shifts create opportunities for adversaries to innovate, outpacing traditional defenses. These insights reveal the evolving threat landscape, with attackers increasingly combining tactics like automation and social engineering to achieve maximum impact.
Cyberthreat News is a weekly news brief that summarizes notable cyber threats, incidents, and risk trends. It includes details about new attacks and vulnerabilities, severe denial-of-service events, widespread outages or breaches, and emerging threats related to world events.
SAP NetWeaver zero-day exploitation: A single flaw in this widely used enterprise software enabled web-shell uploads and active exploitation across hundreds of instances, putting cloud and public-sector infrastructure at risk. This is a reminder of the critical need to patch vulnerabilities promptly and accurately. Kettering Health ransomware healthcare disruption: This incident in June 2025 showed how a single attack can cause severe disruption with direct public-safety consequences, including procedure cancellations and ambulance diversions. The attack also highlights the need for robust MFA and identity monitoring.
Data breach exploitation via stolen credentials: The attack on M&S, UK Ministry of Defence, and other victims highlighted the need to protect user access controls. It also underscores the importance of MFA, identity management, and reducing reliance on reused credentials.
Palau government breach: Hackers breached the government of this small island nation, exposing official documents. This was one of the first large attacks against a sovereign government in 2025. Salt Typhoon global telecom espionage: Chinese hackers infiltrated networks in Southeast Asia to gain long-term access for intelligence gathering.