THE DAILY BRIEFING

A clearer view of today.

The stories that matter. The context you need.

INDEPENDENT PERSPECTIVEFree to read.
Every day.

Cybersecurity

Your briefing

2 min read

AI-assisted briefingHow we put it together ↗
Apple rushes fixes for actively exploited zero-day hitting iOS, iPadOS and macOS

Apple patched CVE-2025-43300, an ImageIO out-of-bounds write flaw used in “extremely sophisticated” targeted attacks. The bug can trigger memory corruption via malicious images, impacting iPhones, iPads, and Macs—so immediate updates are critical across all devices, including older versions still receiving security patches.

Source: SecurityWeek


FBI: Russian state hackers exploiting 7‑year‑old Cisco Smart Install flaw against critical infrastructure

FSB-linked “Static Tundra” is compromising unpatched and end‑of‑life Cisco devices via CVE-2018-0171 to gain persistent access to telecom, higher‑ed, and manufacturing networks. Organizations should disable Smart Install, restrict SNMP, segment management planes, and urgently replace or patch vulnerable gear.

Source: SecurityWeek


AWS Trusted Advisor blind spot let public S3 buckets appear secure

Researchers found a way to “trick” AWS Trusted Advisor into reporting publicly exposed S3 buckets as protected, creating a dangerous false sense of security. AWS has addressed the issue; customers should still enforce S3 Block Public Access, use Access Analyzer, and perform independent audits of bucket policies.

Source: SecurityWeek


Orange Belgium breach exposes 850,000 customers; SIM/PUK data raises port‑out risks

Orange Belgium confirmed a July intrusion exposed data tied to 850,000 accounts, including names, phone numbers, SIM card numbers, and PUK codes. The leak increases the risk of SIM‑swapping and targeted fraud; affected users should enable account PINs/port freezes and watch for suspicious number-port requests.

Source: SecurityWeek


Interpol’s Africa cybercrime sweep nets $97.4M, 1,209 arrests and 11,432 takedowns

Operation Serengeti 2.0, spanning June–August across 18 African nations and the UK, dismantled over 11,000 malicious infrastructures and recovered nearly $100 million. The crackdown underscores a growing global focus on fraud supply chains and infrastructure-as-a-service that enable large‑scale cybercrime.

Source: Help Net Security


AI turbocharges ransomware: 70% surge in victims and automated extortion playbooks

According to new data, ransomware victim counts jumped 70% YoY in H1 2025, with gangs using AI to automate reconnaissance, phishing, and leak-site operations. February was the worst month with 955 cases; organizations should harden credentials, back up immutably, and prepare for faster, multi‑channel extortion.

Source: Help Net Security


Popular password managers found vulnerable to clickjacking data theft

A researcher showed multiple leading password managers could be coerced via clickjacking into autofilling credentials and payment data into attacker-controlled frames. Until patches land or settings improve, users and admins should disable autofill where possible, require explicit user action, and enforce strong origin isolation.

Source: SecurityWeek


You May Also Be Interested In...

Smuggling Requests with Chunked Extensions: A New HTTP Desync Trick (Imperva)

US cops wrap up RapperBot, one of world’s biggest DDoS‑for‑hire rackets (The Register)

Hundreds Targeted in New Atomic macOS Stealer Campaign (SecurityWeek)

Cybersecurity — August 22, 2025 | Briefing24