A critical flaw in the Open VSX Registry, a widely used alternative to the Visual Studio Code Extension Marketplace, could have enabled threat actors to hijack extension repositories and execute extensive supply chain attacks. Researchers warn that exploitation of this vulnerability could compromise millions of developers, as attackers would gain the ability to inject malicious code into trusted development tools.
Source: Security Affairs
Massive American Grocery Chain Data Breach Exposes 2.2 Million Customers’ Sensitive Info
Dutch retail conglomerate Ahold Delhaize has confirmed a cyberattack that compromised personal, financial, and health data of over 2.2 million customers. The stolen information reportedly includes national identification numbers and payment details, raising risks for identity theft and financial fraud across several major US grocery brands.
Source: RecordedFuture
Scattered Spider Hackers Pivot to Aviation and Transportation Targets
The notorious Scattered Spider cybercriminal group, previously known for attacks on retail and insurance sectors, has shifted its focus to aviation and transportation firms. The group is employing advanced social engineering, MFA bypass, and privilege escalation tactics, emphasizing the need for robust defenses in critical infrastructure sectors undergoing digital transformation.
Source: Bleeping Computer
Citrix Bleed 2 Flaw Now Actively Exploited in Attacks
A new critical vulnerability (CVE-2025-5777) in Citrix NetScaler ADC and Gateway, dubbed Citrix Bleed 2, is now believed to be actively exploited. Cybersecurity researchers are detecting increased suspicious sessions on Citrix devices, signaling a sharp uptick in threat activity following public disclosure and highlighting the importance of timely patching for exposed enterprise systems.
Source: Bleeping Computer
NATO to Allocate Increased Cybersecurity Funding in Defense Spending Push
NATO member nations have agreed to dedicate up to 1.5% of their respective GDPs within a new 5% defense spending target specifically for civilian cybersecurity. This landmark policy aims to elevate cyber resilience alongside conventional military readiness, signaling a major increase in long-term national and cross-border investments in digital defense capabilities.
Source: RecordedFuture
Fake DocuSign Phishing Campaign Fingerprints Targets via Captcha
A new phishing campaign disguises emails as DocuSign document requests and employs a “way-too-easy” CAPTCHA screen to fingerprint targets before stealing credentials. This tricky tactic bypasses some email security controls and highlights a trend toward more sophisticated spear-phishing attacks exploiting trusted business platforms.
Source: MalwareBytes Blog
Cloudflare Blocks Largest DDoS Attack On Record — Bigger Threats Loom
Cloudflare has successfully mitigated what may be the largest distributed denial-of-service (DDoS) attack to date, but warns that attackers are escalating their capabilities and more severe DDoS events are likely. Organizations are urged to bolster their defenses and update incident response playbooks to prepare for increasingly frequent, high-volume assaults targeting internet infrastructure.
Source: ZDNet Cyber
You May Also Be Interested In...