admin
NEWS ROUNDUP – 20th October 2025
Envoy Air and Prosper breaches dominate this 48-hour cycle, alongside China’s cyber-espionage allegations against the U.S. and new F5 patches issued after a major breach. GDPR enforcement, sanctions on scam networks, and NCSC’s annual review add regulatory weight. DFIR teams face converging challenges across extortion, compliance, and state-linked threat activity.
NEWS ROUNDUP – 15th October 2025
Microsoft’s October Patch Tuesday, new CISA KEVs, and Oracle’s emergency ERP fixes headline a high-intensity 48-hour cycle. Law enforcement advanced with major crypto-fraud indictments and the UK ICO’s £14 million Capita fine. Global advisories from the NCSC and ISO refreshed defence and privacy standards, underscoring the convergence of regulatory accountability, ERP exploitation risk, and industrial system resilience.
NEWS ROUNDUP – 13th October 2025
Ransomware, data leaks, and zero-days dominated the past 48 hours. Qantas confirmed customer data was posted online, while Texas officials battled a municipal network breach. Healthcare ransomware rose 30%, and Apple doubled its top bug bounty. Germany’s rejection of EU “chat control” rules underscores encryption’s central role as DFIR teams confront escalating third-party and exploit risks.
NEWS ROUNDUP – 10th October 2025
A sweeping 48-hour snapshot reveals Oracle E-Business Suite exploitation driving global extortion, Discord’s vendor breach exposing 70,000 IDs, and new CISA KEV and ICS advisories. Law enforcement seized BreachForums’ latest domain, while Clearview AI lost a key UK tribunal case. ENISA’s 2025 threat report underscores accelerating vulnerability exploitation and ransomware persistence worldwide.
NEWS ROUNDUP – 6th October 2025
Oracle E-Business Suite zero-day (CVE-2025-61882) is being actively exploited, prompting global CERT advisories and extortion attempts linked to Clop. Asahi resumes operations after a ransomware-driven week-long outage. CISA adds a Meteobridge flaw to KEV. Europol spotlights cross-border data access gaps, while ETSI and ISO open security conferences shaping future compliance standards.