AUTO-UPDATED

Security Affairs newsletter Round 589 by Pierluigi Paganini – INTERNATIONAL EDITION

The latest Security Affairs newsletter highlights a surge in global cyberattacks, including major data breaches, critical software vulnerabilities, and the emerging use of AI in malicious operations.

Key Points

  • Meta was ordered to pay $567 million for child safety failures, while a Snowflake hacker pleaded guilty to stealing billions of records.
  • Unlimited Technology Systems and CareCloud reported data breaches affecting 3.8 million and 345,000 individuals, respectively.
  • CISA added multiple critical flaws, including those in Progress LoadMaster and JetBrains TeamCity, to its Known Exploited Vulnerabilities catalog.
  • Researchers identified a 13-year-old Linux kernel vulnerability, OVSwrap, and a WordPress XSS2Shell flaw enabling full server takeovers.
  • Chinese threat actors are increasingly utilizing AI models like DeepSeek to automate cyberattacks against global targets.

Why it Matters

These incidents demonstrate a significant escalation in both the scale of data theft and the sophistication of automated attack vectors. Organizations must prioritize patching known vulnerabilities and strengthening infrastructure resilience to defend against increasingly autonomous and persistent cyber threats.
Securityaffairs.com Published by Pierluigi Paganini
Read original