THE DAILY BRIEFING

A clearer view of today.

The stories that matter. The context you need.

INDEPENDENT PERSPECTIVEFree to read.
Every day.

Cybersecurity

Your briefing

2 min read

AI-assisted briefingHow we put it together ↗
### Urgent Update: Google Chrome Addresses Actively Exploited Zero-Day Google has released an emergency update for Chrome users worldwide to address three security issues, including a high-severity zero-day vulnerability currently being exploited in the wild. Tracked as CVE-2025-5419, this vulnerability involves an out-of-bounds read and write in the V8 JavaScript and WebAssembly engine. All users are urged to update their browsers immediately to mitigate potential risks. [Read more here](https://thehackernews.com/2025/06/new-chrome-zero-day-actively-exploited.html). ### International Crackdown on Counter Antivirus Services Authorities have dismantled several counter antivirus (CAV) services used by cybercriminals to test and develop undetectable malware. The operation, led by the U.S. Department of Justice in collaboration with international partners, has taken down multiple crypting sites including AvCheck. This action is a significant step in the fight against cybercrime networks. [Learn more here](https://securityaffairs.com/178518/cyber-crime/police-took-down-several-popular-counter-antivirus-cav-services-including-avcheck.html). ### Qualcomm Patches Zero-Day Vulnerabilities Attacked in Limited Campaigns Qualcomm has released patches for three zero-day vulnerabilities in its Adreno GPU driver, which were exploited in targeted attacks. Discovered by the Google Android Security Team, these vulnerabilities could have severe implications for affected devices, emphasizing the need for immediate action from OEMs. [Further details available here](https://www.securityweek.com/qualcomm-flags-exploitation-of-adreno-gpu-flaws-urges-oems-to-patch-urgently/). ### ConnectWise ScreenConnect Instances Breached by Sophisticated Actor ConnectWise has announced a breach involving a sophisticated nation-state actor against a small number of their customers' ScreenConnect cloud instances. A patch addressing the ViewState deserialization vulnerability behind the breach was released earlier, but the event underscores the ongoing threats against MSP infrastructure. [Explore the full story here](https://www.helpnetsecurity.com/2025/06/02/attackers-breached-connectwise-compromised-customer-screenconnect-instances/). ### You May Also Be Interested In... - **France and US Collaborate on Global Law Against Ransomware Payments** - In light of increased ransomware activities, new international policies may soon require businesses to report any ransomware payments. [Read here](https://securityweek.com/australia-requires-ransomware-victims-to-declare-payments.html) - **Microsoft and CrowdStrike Align Threat Actor Naming** - This collaboration aims to reduce confusion in threat actor attribution by uniting naming taxonomies for better security industry clarity. [Read here](https://securityweek.com/microsoft-crowdstrike-lead-effort-to-map-threat-actor-names/). - **Cartier Confirms Data Breach** - The luxury brand Cartier has reported unauthorized access to customer data due to a cybersecurity breach. Customers are advised to be vigilant against potential phishing attacks following the incident. [Read here](https://www.securityweek.com/cartier-data-breach-jewelry-maker-warns-customers-that-personal-data-was-exposed/). This concise briefing highlights the critical updates and actions needed for cybersecurity teams. Stay informed and stay protected.
Cybersecurity — June 3, 2025 | Briefing24