THE DAILY BRIEFING

A clearer view of today.

The stories that matter. The context you need.

INDEPENDENT PERSPECTIVEFree to read.
Every day.

Cybersecurity

Your briefing

3 min read

AI-assisted briefingHow we put it together ↗
### Daily Cybersecurity Briefing — June 12, 2025 --- #### Major Cybercrime Bust: INTERPOL Takes Down 20,000 Malicious Infostealer Domains & IPs **Summary:** Operation Secure, led by INTERPOL, targeted global infostealer malware operations across 26 countries. The four-month operation resulted in the dismantling of over 20,000 malicious IP addresses and domains, arresting 32 suspects, and notifying over 216,000 victims. The takedown, coordinated with leading cybersecurity firms, significantly disrupts the infrastructure supporting infostealers like RedLine, Vidar, and Raccoon. [Read more (BleepingComputer)](https://www.bleepingcomputer.com/news/security/operation-secure-disrupts-global-infostealer-malware-operations/) [See also: TheHackerNews, SecurityWeek, HackRead] --- #### Active Zero-Days: Microsoft WebDAV, Secure Boot, Roundcube **Summary:** - **Microsoft Patch Tuesday:** June’s updates addressed 66 vulnerabilities, including an RCE zero-day in WebDAV (CVE-2025-33053), implicated in attacks by the Stealth Falcon APT on defense targets. Patch immediately, as active exploitation is ongoing. - **Secure Boot Vulnerability (CVE-2025-3052):** A Secure Boot bypass affecting UEFI modules allows bootkit injection, emphasizing the importance of updating firmware on affected devices. - **Roundcube RCE (CVE-2025-49113):** Exploited within days of patch release, over 80,000 servers have been compromised by threat actors targeting the popular webmail service. [WebDAV Zero-Day](https://www.helpnetsecurity.com/2025/06/11/microsoft-fixes-zero-day-exploited-for-cyber-espionage-cve-2025-33053/) [Secure Boot](https://www.scworld.com/brief/bootkit-malware-injection-possible-with-novel-secure-boot-vulnerability) [Roundcube RCE](https://securityaffairs.com/178887/hacking/over-80000-servers-hit-as-roundcube-rce-bug-gets-rapidly-exploited.html) --- #### Alert: 40,000+ Internet-Exposed Security Cameras Vulnerable to Remote Hijack **Summary:** Researchers found over 40,000 internet-connected security cameras worldwide streaming video without passwords or with unsecured protocols (HTTP/RTSP). These are widespread in retail, office, data center, and home settings, raising significant risks around privacy, espionage, and physical security. [Read the analysis (SecurityWeek)](https://www.securityweek.com/40000-unprotected-security-cameras-found-on-internet/) [More: CyberNews, Security Affairs] --- #### Major SaaS Exposures: 20 Misconfigurations & 0-Days in Salesforce Industry Cloud **Summary:** AppOmni researchers disclosed over 20 vulnerabilities, including several zero-days, affecting Salesforce Industry Cloud. Config weaknesses could enable unauthorized access, session hijacking, and data leaks. Admins are urged to review their SaaS configurations and apply recommended controls. [Full Story (HackRead)](https://hackread.com/salesforce-industry-cloud-20-vulnerabilities-0days/) --- #### Sophisticated Phishing Surge Tied to Summer Travel **Summary:** Check Point Research warns of heightened holiday/travel-themed phishing and brand impersonation attacks. Over 39,000 new domains linked to vacation rentals (Airbnb, Booking.com, etc.) were registered in May, with 1 in 21 flagged as malicious or suspicious. Companies in the hospitality sector and seasonal travelers are urged to be extra vigilant. [Check Point blog](https://blog.checkpoint.com/research/check-point-research-warns-of-holiday-themed-phishing-surge-as-summer-travel-season-begins/) --- #### Privacy & Data Governance in the Headlines - **23andMe Faces Congressional Scrutiny:** Senators press the genetic testing firm over treatment of genetic data amid bankruptcy and a potential acquisition. [Read more (MalwareBytes)](https://www.malwarebytes.com/blog/news/2025/06/23andme-raked-by-congress-on-privacy-sale-of-genetic-data) - **US Airline Data Sharing:** US airlines found selling customer flight data to DHS agencies, raising fresh privacy concerns. [Story (MalwareBytes)](https://www.malwarebytes.com/blog/news/2025/06/us-airline-industry-quietly-selling-flight-data-to-dhs) --- ### You May Also Be Interested In… - **Microsoft 365 Copilot zero-click AI data leak flaw uncovered** [Details (BleepingComputer)](https://www.bleepingcomputer.com/news/security/zero-click-ai-data-leak-flaw-uncovered-in-microsoft-365-copilot/) - **FIN6 cybercriminals target recruiters with resume malware** [Coverage (The Record)](https://therecord.media/fin6-recruitment-scam-malware-campaign) - **SinoTrack GPS trackers vulnerable to remote control, CISA warns** [Explainer (HackRead)](https://hackread.com/cisa-remote-control-flaws-sinotrack-gps-trackers/) - **BrowserVenom malware poses as DeepSeek installer** [Read (SecureList)](https://securelist.com/browservenom-mimicks-deepseek-to-use-malicious-proxy/115728/) - **EUROPOL: Stolen data black market thriving as cybercriminals monetize credentials and records** [Full Report (HelpNetSecurity)](https://www.helpnetsecurity.com/2025/06/12/europol-internet-organised-crime-threat-assessment-iocta-2025/) --- **Stay vigilant. Patch promptly. Secure your SaaS and endpoints. And monitor for third-party and supply chain exposures.**
Cybersecurity — June 12, 2025 | Briefing24