Policy & Government
FBI Arrests 21-Year-Old Zyaire Wilkins Over Steam-Game Malware Campaign Draining Crypto Wallets
A cryptocurrency-user targeting arrest via a novel Steam-games vector — law-enforcement coverage this weekend.
Actionable insights into the global threat landscape. Analysis of TTPs, Indicators of Compromise (IoCs), and emerging attack patterns.
Policy & Government
A cryptocurrency-user targeting arrest via a novel Steam-games vector — law-enforcement coverage this weekend.
Threat Intelligence
A botnet targeting self-hosted AI tooling for cloud keys — defender review for organizations exposing AI services this weekend.
Supply Chain Attack
A code-signing-integrity attribution against a Chinese cybercrime subgroup — and a prompt for supply-chain defenders to review how much trust their pipelines place in a valid signature.
Ransomware
INC Ransomware named as the SonicWall SMA zero-day exploiter — defender teams stay in accelerated verification posture this weekend.
Supply Chain Attack
Another JavaScript-ecosystem compromise with a novel blockchain-C2 angle — seven scoped npm packages impersonating the Vite tooling namespace, and defender inventory work this weekend.
Vulnerabilities
Rapid7 goes deep on the SharePoint CVSS-9.8 RCE — defender-team detection-engineering review this weekend.
Cybersecurity 101
The major categories of cyber threat actors explained — nation-states, cybercriminals, hacktivists, insiders, and script kiddies — with motivations and defense implications.
Nation-State Cyber Threats
Another Southeast-Asia-focused espionage cluster documented by Kaspersky — a defender research review this week for government and diplomatic entities in the region.
Threat Intelligence
Another named stealer joins the ClickFix pattern — a defender posture review across Microsoft 365 environments after Microsoft's published analysis this week.
Nation-State Cyber Threats
ClickFix migrates from financially motivated crime to nation-state activity, according to Ars Technica's report on Russia's Sandworm cluster - a defender-awareness read for this week.
Ransomware
A fast-moving Rust-based ransomware family — defender detection-engineering review this week.
Policy & Government
More detail on Scattered Spider's TfL leaders: US authorities have Jubair on the record for 120 attacks, and defender pattern-tracking continues this week.