Amazon Uncovers Years-Long GRU Cyber Campaign Targeting Energy and Cloud Infrastructure

Amazon has revealed details of a long-running cyber espionage campaign linked to Russia’s military intelligence agency, the GRU. According to Amazon’s threat intelligence team, the campaign remained active for several years, roughly from 2021 to 2025. It mainly targeted energy companies, critical infrastructure operators, and cloud-based network systems across Western countries. The activity has been … Continued

Fortinet FortiGate Devices Under Active Exploitation via SAML SSO Bypass

Threat actors have begun actively exploiting two recently disclosed critical vulnerabilities affecting Fortinet FortiGate devices, just days after the flaws were made public. Cybersecurity firm Arctic Wolf reported observing live intrusion attempts on December 12, 2025, involving unauthorized single sign-on (SSO) access to FortiGate appliances. The attacks abuse two authentication bypass vulnerabilities tracked as CVE-2025-59718 … Continued

VolkLocker Ransomware Contains Flaw Allowing Free File Decryption

A new ransomware strain known as VolkLocker has been discovered with a major encryption flaw that allows victims to recover their files without paying a ransom, according to research by SentinelOne. VolkLocker is operated by the pro-Russian hacktivist group CyberVolk (also known as GLORIAMIST) and emerged in August 2025. The ransomware targets both Windows and … Continued

South Korean Police Raid Coupang After Massive Data Breach; CEO Resigns

South Korea’s largest e-commerce company, Coupang, is facing a major crisis after one of the country’s biggest data breaches. The company confirmed that personal information of more than 33 million users was leaked. This incident has raised nationwide concern about digital safety. Public pressure increased quickly after the news became official. Coupang announced that its … Continued

Japanese Firms Face Long-Lasting Damage After Major Ransomware Attacks

Japanese companies are experiencing long-lasting damage after a recent wave of ransomware attacks that disrupted operations across manufacturing, retail, and logistics. Instead of recovering within days, many firms are dealing with problems that have stretched into weeks and months, showing how severe and persistent these attacks have become. Experts now say this long recovery period … Continued

Android Malware FvncBot, SeedSnatcher and ClayRat Gain Stronger Data-Theft Features

Cybersecurity researchers have recently analyzed three Android malware families that have gained stronger data-stealing abilities. These threats FvncBot, SeedSnatcher, and ClayRat have all received upgraded features that allow attackers to control devices more deeply. The discoveries were made by well-known security research teams who warned that these malware families are becoming more advanced. Their new … Continued

Top Cybersecurity Events in Asia in 2026

Cyber threats across Asia are accelerating rapidly, with attackers becoming more coordinated and more focused on stealing valuable data. According to the 2025 APAC Threat Landscape Report by SOCRadar, public administration (16.45%), finance (9.28%), and information services (8.91%) are currently the most targeted sectors on the dark web, driven largely by credential theft and database … Continued

Major Cloudflare Disruption Knocks Multiple Websites Offline Worldwide

Cloudflare faced a major outage that caused many websites around the world to stop loading properly. Users began seeing “500 Internal Server Error” messages on several platforms. Some websites opened as completely blank pages, making them appear offline. The issue spread quickly because Cloudflare supports a huge portion of global internet traffic. The disruption created … Continued

GoldFactory Hits Southeast Asia with Modified Banking Apps, Leading to 11,000+ Infections

A major cyber fraud operation has been discovered targeting mobile banking users across Southeast Asia. A criminal group known as GoldFactory has been distributing modified versions of real banking apps that look completely genuine. These fake apps contain hidden malware designed to steal financial information from victims. More than 11,000 devices in Indonesia, Thailand, and … Continued

Critical Angular Vulnerability (CVE-2025-66412) Exposes Web Applications to Code Execution Attacks

A newly disclosed vulnerability in the popular Angular web framework has raised significant concern across the developer and cybersecurity communities. The flaw — tracked as CVE-2025-66412 — affects Angular’s template compiler, enabling attackers to execute malicious code by weaponizing SVG animation attributes. This issue is especially dangerous because of how commonly SVG files are used … Continued

Newsletter line