SecurityBrief UK - Technology news for CISOs & cybersecurity decision-makers

Advanced Persistent Threat (APT) stories

Smart home night scene shadowy fox iot cyber espionage threat

Silver Fox APT & PowerG flaws expose key security risks

Last week
#
apt
NCC Group links Silver Fox’s false-flag malware campaigns to ValleyRAT and uncovers critical PowerG flaws that can fully compromise alarms.
Moody control room venezuela power grid map usa flag reflection

US cyber attack on Venezuela exposes CNI vulnerabilities

This month
#
apt
Alleged US cyber role in Venezuela attack exposes how multi-domain operations can silently compromise critical national infrastructure.
Dark server room ransomware attack shadowy hacker hands locks

Storm-0249 hijacks security tools to fuel ransomware

This month
#
apt
Storm-0249 hijacks trusted security and Windows tools to stealthily broker high-value network access for ransomware operators.
Covert cyber espionage software download bug warning china russia

Chinese hackers fake Teams downloads in false flag ploy

Last month
#
apt
Chinese state-backed hackers mimic Microsoft Teams downloads in a false flag campaign to infect Chinese speakers and blame Russian actors.
Shield emblem cloud server network icons blocking malware symbols

CrowdStrike hits 100% in latest MITRE ATT&CK tests

Last month
#
apt
CrowdStrike’s Falcon platform scores 100% detection and protection with zero false positives in MITRE ATT&CK’s toughest cloud-era tests.
Shadowy hackers dark room multiple screens cloud icons cyber espionage us cloud networks

WARP PANDA cyberespionage group targets US cloud networks

Last month
#
apt
China-linked WARP PANDA cyberespionage group targets US cloud networks, exploiting vulnerabilities in Microsoft 365, VMware, and more for sustained data access.
Digital world map asia pacific cyber risk detection binary code alerts

ThreatBook unveils ATI for APAC cyber risk detection & insight

Thu, 2nd Oct 2025
#
apt
ThreatBook launches its Advanced Threat Intelligence solution to enhance cyber risk detection in Asia Pacific, analysing billions of attack records daily.
Masked figures dark clothing computers dim room digital maps asia africa cyber espionage

Phantom Taurus: new Chinese group targets governments in Asia & Africa

Thu, 2nd Oct 2025
#
apt
Phantom Taurus, a new Chinese state-backed group, targets governments and telecoms in Africa, the Middle East, and Asia with advanced espionage tools and tactics.
Realistic server room security breach highlight cybersecurity patching cloud

Broadcom patches VMware zero-day exploited for nearly a year

Thu, 2nd Oct 2025
#
apt
Broadcom patches a VMware zero-day flaw exploited for nearly a year, allowing attackers root access to virtual machines in certain configurations.
Secure digital network cloud icons shields cybersecurity remote workers laptops

WatchGuard launches FireCloud Total Access for Zero Trust SASE

Fri, 26th Sep 2025
#
apt
WatchGuard launches FireCloud Total Access, a hybrid SASE service offering Zero Trust security for MSPs and IT teams to protect remote and hybrid workforces.
Cyber espionage dark room shadowy figures computer screens us china flags

Chinese cyber group targets US policy bodies during trade talks

Thu, 18th Sep 2025
#
apt
A Chinese cyber group has targeted US government and policy organisations with spearphishing attacks amid trade talks, using advanced tactics to gain persistent access.
Shadowy figure operating computer with philippines map and digital code overlay

EggStreme malware targets Philippine military in Chinese cyber campaign

Thu, 11th Sep 2025
#
apt
Chinese-linked EggStreme malware targets Philippine military firm, signalling rising espionage efforts in Asia-Pacific by advanced threat groups.
Concerned business executive digital cybersecurity threats ai singapore office

Singapore CISOs face rising cyber risks, insider threats & AI worry

Thu, 28th Aug 2025
#
apt
Singapore CISOs face rising cyber risks with 91% reporting data loss, growing insider threats, and concerns over AI amid escalating pressure and preparedness gaps.
Realistic computer login screen fingerprint scanner security key shadowy hand manipulating settings hidden vulnerability

Proofpoint warns FIDO authentication can be bypassed by downgrade

Tue, 19th Aug 2025
#
apt
Proofpoint warns of a potential vulnerability where FIDO authentication can be bypassed via downgrade attacks, exposing users to phishing risks despite advanced security.
Shield over email envelope half glowing half cracked outline map australia

Half of Australian government agencies lack top email security

Fri, 15th Aug 2025
#
apt
Half of Australian government agencies have not adopted the strongest email security, risking cyberattacks on sensitive public sector data and communications.
Ps   cyrusone

CyrusOne invests GBP £1.2 billion in sustainable data centre

Fri, 13th Jun 2025
#
apt
CyrusOne plans a GBP £1.2 billion sustainable data centre in Buckinghamshire, creating 540 jobs and advancing the UK’s digital infrastructure.
Realistic computer screen security shield binary code padlock cybersecurity update

Microsoft tackles WebDAV zero-day in June 2025 patch update

Wed, 11th Jun 2025
#
apt
Microsoft’s June 2025 patch fixes 67 flaws, including the first WebDAV zero-day in seven years and critical remote code execution issues across Windows and Office.
Techday f 88377f3988f90b700682

Ransomware attacks on industrial targets surge, AI tactics rise

Thu, 22nd May 2025
#
apt
Ransomware attacks on industrial firms surged to 708 in Q1 2025, led by manufacturing, with North America and Europe hardest hit, warns Dragos report.
Techday f 89e4320e6fb09d593dcc

BlackFog unveils AI update to detect dormant cyber attackers

Tue, 6th May 2025
#
apt
BlackFog updates its AI-powered platform to detect dormant cyber attackers by baseline activity, bolstering defences against advanced persistent and insider threats.
Techday f a176b59c9d94e35798c3

Chinese APT group linked to cyber attack on US defence firm

Thu, 24th Apr 2025
#
apt
ReliaQuest reveals a Chinese APT group targeted US defence tech firm in February 2025, stealing sensitive IP using advanced, stealthy cyber espionage tactics.