Supply Chain
NEWS ROUNDUP – 31st December 2025
Digital Forensics Magazine’s latest 48-hour roundup tracks active exploitation alerts, significant breach disclosures, and enforcement actions shaping DFIR priorities. Highlights include ESA’s confirmed breach investigation, supplier-linked Oracle EBS impacts affecting aviation, and renewed attention on MongoDB and legacy edge weaknesses. We also cover kernel-mode APT tradecraft, supply-chain infostealer delivery, and the growing policy pressures from insurance and governance expectations.
NEWS ROUNDUP – 7th November 2025
Global coverage from 05–07 Nov 2025: SonicWall attributes its breach to a state-backed actor, while the Washington Post confirms exposure via Oracle-linked software. Android’s “Landfall” spyware zero-day and Monsta FTP RCE headline new exploits. ENISA warns of DDoS waves on public services as CISA releases fresh ICS advisories and NCSC announces Mail/Web Check retirement.
NEWS ROUNDUP – 22nd October 2025
Global DFIR highlights include 34 zero-days chained at Pwn2Own Ireland and active Oracle E-Business Suite exploitation confirmed by CISA. Microsoft detailed Blob Storage attack chains, while Muji and Verisure faced major breaches. UK police secured major online abuse convictions. NIST and the EU advanced supply-chain and cybersecurity certification initiatives, signalling rising compliance expectations.
NEWS ROUNDUP – 6th October 2025
Oracle E-Business Suite zero-day (CVE-2025-61882) is being actively exploited, prompting global CERT advisories and extortion attempts linked to Clop. Asahi resumes operations after a ransomware-driven week-long outage. CISA adds a Meteobridge flaw to KEV. Europol spotlights cross-border data access gaps, while ETSI and ISO open security conferences shaping future compliance standards.
NEWS ROUNDUP – 3rd October 2025
The past 48 hours saw Oracle customers targeted with extortion emails, Asahi shipments in Japan disrupted by ransomware, and CISA expanding its KEV list. DFIR teams investigated child data leaks and PHI exposures, while Dutch teens faced arrest for Europol spying. Policy updates span U.S. awareness campaigns, FCC reviews, and EU/UK compliance shifts.
