{"id":252131,"date":"2025-10-26T06:16:09","date_gmt":"2025-10-26T06:16:09","guid":{"rendered":"https:\/\/www.newsbeep.com\/us\/252131\/"},"modified":"2025-10-26T06:16:09","modified_gmt":"2025-10-26T06:16:09","slug":"security-affairs-newsletter-round-547-by-pierluigi-paganini-international-edition","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/us\/252131\/","title":{"rendered":"Security Affairs newsletter Round 547 by Pierluigi Paganini \u2013 INTERNATIONAL EDITION"},"content":{"rendered":"<p>\n\t\t\t\t\t\t\tSecurity Affairs newsletter Round 547 by Pierluigi Paganini \u2013 INTERNATIONAL EDITION\n\t\t\t\t\t\t<\/p>\n<p>\t\t\t\t\t\t\t<img decoding=\"async\" src=\"https:\/\/securityaffairs.com\/wp-content\/themes\/security_affairs\/images\/user-icon.svg\" alt=\"\"\/> <a href=\"https:\/\/securityaffairs.com\/author\/paganinip\" rel=\"nofollow noopener\" target=\"_blank\">Pierluigi Paganini<\/a><br \/>\n\t\t\t\t\t\t\t<img decoding=\"async\" src=\"https:\/\/securityaffairs.com\/wp-content\/themes\/security_affairs\/images\/clock-icon.svg\" alt=\"\"\/> October 26, 2025<\/p>\n<p>\t\t\t\t\t\t<img decoding=\"async\" class=\"img-fluid mb-4\" src=\"https:\/\/www.newsbeep.com\/us\/wp-content\/uploads\/2025\/10\/newsletter.png\" alt=\"\"\/><\/p>\n<p>A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box.<\/p>\n<p>Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.<\/p>\n<p>International Press \u2013 Newsletter<\/p>\n<p>Cybercrime<a\/><\/p>\n<p><a href=\"https:\/\/apnews.com\/article\/scam-centers-cybercrime-myanmar-a2c9fda85187121e51bd0efdf29c81da\" rel=\"nofollow noopener\" target=\"_blank\">Myanmar military shuts down a major cybercrime center and detains over 2,000 people<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/krebsonsecurity.com\/2025\/10\/email-bombs-exploit-lax-authentication-in-zendesk\/\" rel=\"nofollow noopener\" target=\"_blank\">Email Bombs Exploit Lax Authentication in Zendesk<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/www.proofpoint.com\/us\/blog\/threat-insight\/cybercriminals-abuse-ai-website-creation-app-phishing\" rel=\"nofollow noopener\" target=\"_blank\">Cybercriminals Abuse AI Website Creation App For Phishing<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/unit42.paloaltonetworks.com\/cloud-based-gift-card-fraud-campaign\/\" rel=\"nofollow noopener\" target=\"_blank\">Jingle Thief: Inside a Cloud-Based Gift Card Fraud Campaign<\/a><\/p>\n<p><a href=\"https:\/\/therecord.media\/cyber-incidents-texas-tennessee-indiana\" rel=\"nofollow noopener\" target=\"_blank\">Cyber incidents in Texas, Tennessee and Indiana impacting critical government services<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/unit42.paloaltonetworks.com\/global-smishing-campaign\/\" rel=\"nofollow noopener\" target=\"_blank\">The Smishing Deluge: China-Based Campaign Flooding Global Text Messages<\/a>\u00a0<\/p>\n<p>Malware<\/p>\n<p><a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/tiktok-videos-continue-to-push-infostealers-in-clickfix-attacks\/\" rel=\"nofollow noopener\" target=\"_blank\">TikTok videos continue to push infostealers in ClickFix attacks<\/a><\/p>\n<p><a href=\"https:\/\/cloud.google.com\/blog\/topics\/threat-intelligence\/new-malware-russia-coldriver\/\" rel=\"nofollow noopener\" target=\"_blank\">To Be (A Robot) or Not to Be: New Malware Attributed to Russia State-Sponsored COLDRIVER<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/socket.dev\/blog\/malicious-nuget-packages-typosquat-nethereum-to-exfiltrate-wallet-keys\" rel=\"nofollow noopener\" target=\"_blank\">Malicious NuGet Packages Typosquat Nethereum to Exfiltrate Wallet Keys<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/www.koi.ai\/blog\/glassworm-first-self-propagating-worm-using-invisible-code-hits-openvsx-marketplace\" rel=\"nofollow noopener\" target=\"_blank\">GlassWorm: First Self-Propagating Worm Using Invisible Code Hits OpenVSX Marketplace<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/research.checkpoint.com\/2025\/youtube-ghost-network\/\" rel=\"nofollow noopener\" target=\"_blank\">Dissecting YouTube\u2019s Malware Distribution Network October 23, 2025<\/a>\u00a0<\/p>\n<p>Hacking<\/p>\n<p><a href=\"https:\/\/www.securityweek.com\/vulnerability-in-dolby-decoder-can-allow-zero-click-attacks\/\" rel=\"nofollow noopener\" target=\"_blank\">Vulnerability in Dolby Decoder Can Allow Zero-Click Attacks<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/edera.dev\/stories\/tarmageddon\" rel=\"nofollow noopener\" target=\"_blank\">TARmageddon (CVE-2025-62518): RCE Vulnerability Highlights the Challenges of Open Source Abandonware<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/sansec.io\/research\/sessionreaper-exploitation\" rel=\"nofollow noopener\" target=\"_blank\">SessionReaper attacks have started, 3 in 5 stores still vulnerable Sansec by Sansec Forensics Team<\/a><\/p>\n<p><a href=\"https:\/\/slcyber.io\/assetnote-security-research-center\/why-nested-deserialization-is-still-harmful-magento-rce-cve-2025-54236\/\" rel=\"nofollow noopener\" target=\"_blank\">Why nested deserialization is STILL harmful \u2013 Magento RCE (CVE-2025-54236)<\/a>\u00a0 \u00a0<\/p>\n<p><a href=\"https:\/\/www.zerodayinitiative.com\/blog\/2025\/10\/23\/pwn2own-ireland-2025-day-three-and-master-of-pwn\" rel=\"nofollow noopener\" target=\"_blank\">Pwn2Own Ireland 2025: Day Three and Master of Pwn<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/www.huntress.com\/blog\/exploitation-of-windows-server-update-services-remote-code-execution-vulnerability\" rel=\"nofollow noopener\" target=\"_blank\">Exploitation of Windows Server Update Services Remote Code Execution Vulnerability (CVE-2025-59287)<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/www.fox-it.com\/media\/zw5iy13i\/voice-impersonation-and-deepfake-vishing-in-realtime.pdf\" rel=\"nofollow noopener\" target=\"_blank\">Realtime AI-Supported Voice Conversion (Deepfake) and its applications on Vishing and Social Engineering exercises<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/www.adamlogue.com\/microsoft-365-copilot-arbitrary-data-exfiltration-via-mermaid-diagrams-fixed\/\" rel=\"nofollow noopener\" target=\"_blank\">Microsoft 365 Copilot \u2013 Arbitrary Data Exfiltration Via Mermaid Diagrams<\/a>\u00a0<\/p>\n<p>Intelligence and Information Warfare<\/p>\n<p><a href=\"https:\/\/archive.is\/20251019053940\/https:\/www.bloomberg.com\/news\/articles\/2025-10-19\/china-says-it-found-evidence-of-us-cyber-attack-on-state-agency#selection-1165.0-1165.63\" rel=\"nofollow noopener\" target=\"_blank\">China Says It Found Evidence of US Cyber Attack on State Agency<\/a><\/p>\n<p><a href=\"https:\/\/www.dailymail.co.uk\/news\/article-15205213\/Russians-hack-files-EIGHT-MoD-bases-dark-web.html\" rel=\"nofollow noopener\" target=\"_blank\">\u2018Catastrophic\u2019 attack as Russians hack files on EIGHT MoD bases and post them on the dark web<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/www.darktrace.com\/blog\/salty-much-darktraces-view-on-a-recent-salt-typhoon-intrusion\" rel=\"nofollow noopener\" target=\"_blank\">Salty Much: Darktrace\u2019s view on a recent Salt Typhoon intrusion<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/www.group-ib.com\/blog\/muddywater-espionage\/\" rel=\"nofollow noopener\" target=\"_blank\">Unmasking MuddyWater\u2019s New Malware Toolkit Driving International Espionage<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/www.sentinelone.com\/labs\/phantomcaptcha-multi-stage-websocket-rat-targets-ukraine-in-single-day-spearphishing-operation\/\" rel=\"nofollow noopener\" target=\"_blank\">PhantomCaptcha | Multi-Stage WebSocket RAT Targets Ukraine in Single-Day Spearphishing Operation<\/a><\/p>\n<p><a href=\"https:\/\/www.recordedfuture.com\/research\/dark-covenant-3-controlled-impunity-and-russias-cybercriminals\" rel=\"nofollow noopener\" target=\"_blank\">Dark Covenant 3.0: Controlled Impunity and Russia\u2019s Cybercriminals<\/a><\/p>\n<p><a href=\"https:\/\/therecord.media\/facing-anne-keast-decades-gchq\" rel=\"nofollow noopener\" target=\"_blank\">UK facing \u2018most contested and complex\u2019 threat in decades, warns GCHQ director<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/www.welivesecurity.com\/en\/eset-research\/gotta-fly-lazarus-targets-uav-sector\/\" rel=\"nofollow noopener\" target=\"_blank\">Gotta fly: Lazarus targets the UAV sector<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/www.security.com\/blog-post\/toolshell-china-zingdoor\" rel=\"nofollow noopener\" target=\"_blank\">ToolShell Used to Compromise Telecoms Company in Middle East<\/a><\/p>\n<p><a href=\"https:\/\/blog.xlab.qianxin.com\/apt-stealthserver-en\/\" rel=\"nofollow noopener\" target=\"_blank\">StealthServer: A Dual-Platform Backdoor from a South Asian APT Group<\/a><\/p>\n<p>Cybersecurity<\/p>\n<p><a href=\"https:\/\/www.csoonline.com\/article\/4075912\/ai-enabled-ransomware-attacks-cisos-top-security-concern-with-good-reason.html\" rel=\"nofollow noopener\" target=\"_blank\">AI-enabled ransomware attacks: CISO\u2019s top security concern \u2014 with good reason<\/a>\u00a0<\/p>\n<p><a href=\"https:\/\/www.securityweek.com\/nso-ordered-to-stop-hacking-whatsapp-but-damages-cut-to-4-million\/\" rel=\"nofollow noopener\" target=\"_blank\">NSO Ordered to Stop Hacking WhatsApp, but Damages Cut to $4 Million<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/www.microsoft.com\/en-us\/corporate-responsibility\/cybersecurity\/microsoft-digital-defense-report-2025\/\" rel=\"nofollow noopener\" target=\"_blank\">Microsoft Digital Defense Report 2025<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/cybermonitoringcentre.com\/2025\/10\/22\/cyber-monitoring-centre-statement-on-the-jaguar-land-rovercyber-incident-october-2025\/\" rel=\"nofollow noopener\" target=\"_blank\">Cyber Monitoring Centre Statement on the Jaguar Land Rover Cyber Incident \u2013 October 2025<\/a><\/p>\n<p><a href=\"https:\/\/www.recordedfuture.com\/research\/dark-covenant-3-controlled-impunity-and-russias-cybercriminals\" rel=\"nofollow noopener\" target=\"_blank\">Dark Covenant 3.0: Controlled Impunity and Russia\u2019s Cybercriminals<\/a>\u00a0 \u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/www.microsoft.com\/en-us\/corporate-responsibility\/cybersecurity\/microsoft-digital-defense-report-2025\/\" rel=\"nofollow noopener\" target=\"_blank\">Microsoft Digital Defense Report 2025<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/techcrunch.com\/2025\/10\/21\/apple-alerts-exploit-developer-that-his-iphone-was-targeted-with-government-spyware\/\" rel=\"nofollow noopener\" target=\"_blank\">Apple alerts exploit developer that his iPhone was targeted with government spyware<\/a>\u00a0\u00a0<\/p>\n<p><a href=\"https:\/\/therecord.media\/russia-food-safety-agency-rosselkhoznadzor-ddos-attack\" rel=\"nofollow noopener\" target=\"_blank\">Cyberattack on Russia\u2019s food safety agency reportedly disrupts product shipments<\/a>\u00a0\u00a0<\/p>\n<p>Follow me on Twitter:\u00a0<a href=\"https:\/\/twitter.com\/securityaffairs\" rel=\"nofollow noopener\" target=\"_blank\">@securityaffairs<\/a>\u00a0and\u00a0<a href=\"https:\/\/www.facebook.com\/sec.affairs\" rel=\"nofollow noopener\" target=\"_blank\">Facebook<\/a>\u00a0and\u00a0<a href=\"https:\/\/infosec.exchange\/@securityaffairs\" rel=\"nofollow noopener\" target=\"_blank\">Mastodon<\/a><\/p>\n<p><a href=\"http:\/\/www.linkedin.com\/pub\/pierluigi-paganini\/b\/742\/559\" rel=\"nofollow noopener\" target=\"_blank\">Pierluigi\u00a0Paganini<\/a><\/p>\n<p>(<a href=\"http:\/\/securityaffairs.co\/wordpress\/\" rel=\"nofollow noopener\" target=\"_blank\">SecurityAffairs<\/a>\u00a0\u2013\u00a0hacking,\u00a0newsletter)<\/p>\n<p>\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t\t<script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n","protected":false},"excerpt":{"rendered":"Security Affairs newsletter Round 547 by Pierluigi Paganini \u2013 INTERNATIONAL EDITION Pierluigi Paganini October 26, 2025 A new&hellip;\n","protected":false},"author":2,"featured_media":24123,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[4,450,451,3,452,453],"class_list":{"0":"post-252131","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-breaking-news","8":"tag-breaking-news","9":"tag-breakingnews","10":"tag-headlines","11":"tag-news","12":"tag-top-stories","13":"tag-topstories"},"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts\/252131","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/comments?post=252131"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/posts\/252131\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/media\/24123"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/media?parent=252131"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/categories?post=252131"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/us\/wp-json\/wp\/v2\/tags?post=252131"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}