THE DAILY BRIEFING

A clearer view of today.

The stories that matter. The context you need.

INDEPENDENT PERSPECTIVEFree to read.
Every day.

Cybersecurity

Your briefing

3 min read

AI-assisted briefingHow we put it together ↗
Millions Exposed by Malicious Chrome and Edge Extensions

Researchers uncovered a widespread campaign where over 2.3 million Chrome and Edge users were compromised by 18 browser extensions, available via official stores, that silently turned Trojan through updates. The extensions hijacked user browsers, enabling extensive surveillance and potentially more harmful payload delivery. Security experts stress the importance of vigilant extension management, regular reviews, and robust browser protection solutions to mitigate such threats.

Source: MalwareBytes Blog


Microsoft July Patch Tuesday Addresses 130 Vulnerabilities, Including Wormable Windows Flaw

Microsoft’s July 2025 Patch Tuesday brought patches for 130 vulnerabilities, including CVE-2025-47981—a critical, wormable remote code execution flaw impacting Windows and Windows Server. Another significant fix addressed a publicly disclosed SQL Server vulnerability. Organizations are strongly urged to prioritize patch deployment to defend against potential exploitation of these high-risk flaws.

Source: Help Net Security


Growing Crisis: Open Source Malware Packages Surge 188% in One Year

Sonatype’s Q2 2025 Open Source Malware Index revealed over 16,000 newly identified malicious packages, pushing the total count to more than 845,000. The volume of discovered malware jumped by 188% year-over-year, reflecting increasingly aggressive and sophisticated supply chain attacks targeting developers and CI/CD pipelines. Security teams are advised to harden open-source code use and improve supply chain visibility.

Source: Help Net Security


Qantas Data Breach Impacts 5.7 Million: Airlines Remain Attractive Targets

Australian airline Qantas confirmed that a breach on a third-party platform exposed sensitive information—including addresses and frequent flyer numbers—of approximately 5.7 million customers. The incident is linked to the ongoing activity of threat actor group Scattered Spider, and further illustrates the vulnerabilities airlines face from both direct and supply chain threats.

Source: Bleeping Computer


Lenovo Vantage Patched for Multiple Privilege Escalation Vulnerabilities

Atredis Partners disclosed several serious privilege escalation vulnerabilities in Lenovo Vantage, a management platform pre-installed on many Lenovo laptops. These flaws—assigned CVE-2025-6230, CVE-2025-6231, and CVE-2025-6232—could enable attackers to gain elevated privileges or execute arbitrary code by exploiting weak signature validation and improper input handling. Users should immediately apply the July 8th update to mitigate risk.

Source: Atredis Partners


Discord Exploits and Multi-Stage Malware Delivery on the Rise

Check Point Research reports a dangerous malware campaign using hijacked Discord invite links to deliver threats like AsyncRAT, now a top-three malware globally. Attackers are chaining trusted platforms (Discord, GitHub, Bitbucket) in intricate multi-stage delivery and exfiltration processes, while phishing tactics such as ClickFix and advanced encryption bypasses have made these attacks highly evasive. This trend highlights the persistent evolution of attacker TTPs and the need for layered defense strategies.

Source: Checkpoint Blog


ServiceNow Vulnerability “Count(er) Strike” Could Lead to Data Leakage

A critical vulnerability (CVE-2025-3648) in ServiceNow, dubbed “Count(er) Strike,” allows low-privileged users to enumerate and exfiltrate restricted data using misconfigured conditional access control rules. Organizations using ServiceNow are urged to review and patch their instances promptly to prevent data inference risks and unauthorized information exposure.

Source: Bleeping Computer


You May Also Be Interested In...
Cybersecurity — July 10, 2025 | Briefing24