THE DAILY BRIEFING

A clearer view of today.

The stories that matter. The context you need.

INDEPENDENT PERSPECTIVEFree to read.
Every day.

Cybersecurity

Your briefing

2 min read

AI-assisted briefingHow we put it together ↗
### Microsoft Dynamics 365 Customer Voice Phishing Scam Check Point researchers have uncovered a sophisticated phishing campaign exploiting Microsoft Dynamics 365 Customer Voice to deceive recipients. Cybercriminals are leveraging compromised accounts to send realistic email solicitations targeting a vast array of organizations, including 97% of Fortune 500 companies. The phony links in these emails could trick users into giving away sensitive information. With Dynamics 365 used by over 2 million organizations, the implications of this threat are substantial. Stay vigilant and scrutinize emails appearing to come from Dynamics 365. [Read more](https://blog.checkpoint.com/research/microsoft-dynamics-365-customer-voice-phishing-scam/) ### DragonForce Ransomware: A New Era of Hybrid Extortion DragonForce Ransomware, known for its decentralized operations and link to hacktivist roots, represents a shift toward ideologically ambiguous and highly opportunistic threats. Emergent from a dark web portal in 2023, the group now operates as part of the ransomware gig economy, engaging in complex hybrid extortion tactics. The implications for businesses globally are significant, as these actors are harder to track and more unpredictable. [Read more](https://blog.checkpoint.com/security/dragonforce-ransomware-redefining-hybrid-extortion-in-2025/) ### Android Security Update Addresses 47 Vulnerabilities Google's May security update for Android has patched 47 vulnerabilities, including a critical zero-day identified in the FreeType library, which has been actively exploited in the wild. Android users are urged to update their systems immediately to protect against these exploits that could lead to local code executions without additional user permission. [Read more](https://www.malwarebytes.com/blog/news/2025/05/android-fixes-47-vulnerabilities-including-one-zero-day-update-as-soon-as-you-can/) ### Samsung MagicINFO Vulnerability Exploited A recent vulnerability (CVE-2024-7399) in Samsung MagicINFO, a digital display content management platform, is being exploited in the wild shortly after a proof-of-concept was published. The exploit allows attackers to execute a downloader for the Mirai botnet, posing threats to commercial displays. [Read more](https://www.securityweek.com/samsung-magicinfo-vulnerability-exploited-days-after-poc-publication/) ### Critical Langflow RCE Flaw Under Attack Langflow, a tool for building low-code AI applications, has a critical remote code execution vulnerability (CVE-2025-3248) actively exploited by attackers. This flaw allows unauthorized users to execute arbitrary code, leading CISA to add it to its Known Exploited Vulnerabilities catalog. Immediate mitigation measures are advised. [Read more](https://www.securityweek.com/critical-vulnerability-in-ai-builder-langflow-under-attack/) ### You May Also Be Interested In... - **NSO Group Owes $168M in Damages to WhatsApp**: Meta secures a legal victory over NSO Group concerning the use of spyware on WhatsApp users. [Read more](https://cyberscoop.com/nso-group-owes-whatsapp-over-spyware-infections-jury/) - **New ‘Bring Your Own Installer’ EDR Bypass Technique**: A novel method to bypass EDR systems, specifically targeting SentinelOne, has emerged, increasing the vulnerability of enterprises to ransomware. [Read more](https://securityaffairs.com/177494/hacking/new-bring-your-own-installer-byoi-technique-allows-to-bypass-edr.html) - **FTC Reports $470 Million Lost to Text Scams**: The Federal Trade Commission reveals skyrocketing consumer losses from text message-based scams. [Read more](https://www.securitymagazine.com/articles/101603-ftc-findings-show-that-consumers-lost-470-million-to-text-scams)
Cybersecurity — May 6, 2025 | Briefing24