KEV
NEWS ROUNDUP – 24th October 2025
CISA issues new ICS advisories, Pwn2Own researchers reveal 34 zero-days, and Microsoft warns of AI-driven cyberattacks. Global investigations continue into SharePoint ToolShell exploitation and healthcare data breaches. Law enforcement seizes $14 billion in cryptocurrency, while NIST and ISO release new cybersecurity standards shaping compliance, risk management, and DFIR priorities for enterprises worldwide.
NEWS ROUNDUP – 22nd October 2025
Global DFIR highlights include 34 zero-days chained at Pwn2Own Ireland and active Oracle E-Business Suite exploitation confirmed by CISA. Microsoft detailed Blob Storage attack chains, while Muji and Verisure faced major breaches. UK police secured major online abuse convictions. NIST and the EU advanced supply-chain and cybersecurity certification initiatives, signalling rising compliance expectations.
NEWS ROUNDUP – 13th October 2025
Ransomware, data leaks, and zero-days dominated the past 48 hours. Qantas confirmed customer data was posted online, while Texas officials battled a municipal network breach. Healthcare ransomware rose 30%, and Apple doubled its top bug bounty. Germany’s rejection of EU “chat control” rules underscores encryption’s central role as DFIR teams confront escalating third-party and exploit risks.
NEWS ROUNDUP – 10th October 2025
A sweeping 48-hour snapshot reveals Oracle E-Business Suite exploitation driving global extortion, Discord’s vendor breach exposing 70,000 IDs, and new CISA KEV and ICS advisories. Law enforcement seized BreachForums’ latest domain, while Clearview AI lost a key UK tribunal case. ENISA’s 2025 threat report underscores accelerating vulnerability exploitation and ransomware persistence worldwide.
NEWS ROUNDUP – 8th October 2025
CISA expands its Known Exploited Vulnerabilities list as Microsoft investigates active GoAnywhere MFT attacks. Japan’s Asahi Group faces a ransomware claim, while UK police arrest teens behind the Kido Nurseries breach. New NCSC guidance urges observability and proactive threat hunting. Global DFIR teams should prioritise patching, token hygiene, and compliance readiness amid rising cross-sector intrusions.
