THE DAILY BRIEFING

A clearer view of today.

The stories that matter. The context you need.

INDEPENDENT PERSPECTIVEFree to read.
Every day.

Cybersecurity

Your briefing

2 min read

AI-assisted briefingHow we put it together ↗
### Millions of Android Devices Compromised by Badbox 2.0 Botnet Millions of off-brand IoT devices using Android are involved in the Badbox 2.0 botnet, according to an FBI warning. This botnet facilitates ad fraud, click fraud, and various cybercrime activities by selling access to compromised devices through residential proxy services. Security professionals should verify and secure Android devices using open-source systems. [Read more](https://www.helpnetsecurity.com/2025/06/06/millions-of-android-devices-roped-into-badbox-2-0-botnet-is-yours-among-them/) ### Russia-linked Group Targets Ukrainian Infrastructure with PathWiper Malware A new malware, PathWiper, targets Ukraine's critical infrastructure, showing similarities to other known Russia-linked malware. The attack utilized legitimate endpoint administration frameworks, suggesting the attackers had admin-level access. This highlights the importance of securing and monitoring administrative access closely. [Read more](https://securityaffairs.com/178726/apt/russia-linked-threat-actors-targets-ukraine-with-pathwiper-wiper.html) ### U.S. Cracks Down on BidenCash Marketplace The U.S. seized 145 domains associated with the notorious BidenCash marketplace responsible for millions in illicit transactions from credit card theft. This marks a significant victory against cybercriminal activities targeting financial information. Cybersecurity experts should note the ongoing efforts to combat such dark web activities. [Read more](https://www.helpnetsecurity.com/2025/06/06/bidencash-marketplace-domains-seized/) ### Popular Chrome Extensions Leak User Data Several popular Chrome extensions have been found transmitting sensitive data over unencrypted HTTP connections. Users are at risk of data exposure compromising privacy, and security experts should review and audit browser extensions for privacy and security vulnerabilities. [Read more](https://hackread.com/popular-chrome-extensions-data-leak-unencrypted-connection/) ### Critical Fortinet Vulnerabilities Exploited by Qilin Ransomware Qilin ransomware now exploits critical Fortinet vulnerabilities (CVE-2024-21762, CVE-2024-55591) for remote code execution. This showcases the need for immediate patch applications and evaluations of system exposures to mitigate potential ransomware threats. [Read more](https://www.securityweek.com/attackers-exploit-fortinet-flaws-to-deploy-qilin-ransomware/) ### FBI Warns of Rising Cyberattack Victims A recent FBI alert emphasizes a surge in victims of advanced ransomware and other cyber-attacks, urging organizations to enhance protective measures and response strategies. Cybersecurity teams should review incident response plans, ensuring they are robust and up-to-date. [Read more](https://www.forbes.com/sites/daveywinder/2025/06/06/fbi-issues-critical-cyberattack-alert---act-now-as-victims-skyrocket/) ### DOJ Targets $8 Million in Stolen Funds from North Korea The U.S. is working to reclaim nearly $8 million stolen by North Korean cyber operations, highlighting the ongoing international cybercrime threat and efforts to combat funding of hostile nation-state activities. [Read more](https://www.nextgov.com/cybersecurity/2025/06/doj-files-complaint-get-nearly-8-million-stolen-funds-back-north-korea/405886/) ### Trump Administration's Cyber Executive Order A new executive order attempts to amend problematic aspects of previous Biden and Obama cyber strategies, intending to enforce stricter IoT labeling, secure software practices, and the adoption of quantum-safe encryption. [Read more](https://www.nextgov.com/cybersecurity/2025/06/trump-cyber-executive-order-aims-amend-problematic-parts-biden-obama-cyber-orders/405898/) ### You May Also Be Interested In... - [U.S. Offers $10M Bounty for RedLine Malware Developers](https://securityaffairs.com/178702/cyber-crime/us-offers-10m-bounty-redline-malware) - [Booking.com Used by Cybercriminals to Defraud Travelers](https://www.malwarebytes.com/blog/news/2025/06/booking-com-abused-by-cybercriminals-to-steal-from-travelers) - [California Company Disrupted by Chaos Ransomware](https://www.bleepingcomputer.com/news/security/tax-resolution-firm-optima-tax-relief-hit-by-ransomware-data-leaked/)
Cybersecurity — June 7, 2025 | Briefing24