Officials at Puerto Rico's Department of Transportation have cancelled all upcoming driver's license, permit, and vehicle registration appointments at the Centros de Servicios al Conductor agency following a cyberattack discovered earlier this week, according to The Record, a news site by cybersecurity firm Recorded Future.
Activity of botnets has increased by 26% and 24% during the first and second half of 2025, respectively, with the escalation primarily driven by U.S.-based bots and nodes, as well as the ongoing evolution of the Mirai malware, according to HackRead.
BleepingComputer reports that the newly emergent Torg Grabber information-stealing malware, which is being spread through the ClickFix technique, has been targeting 850 browser extensions, most of which are for cryptocurrency wallets.
Threat actors have used a multi-stage framework deploying a remote access trojan and a fake information-stealing Google Docs Offline extension for Chrome in yet another twist to the GlassWorm campaign, The Hacker News reports.
Intrusions harnessing the PolyShell exploit impacting Adobe Commerce and Magento Open Source instances have already compromised 56.7% of all vulnerable e-commerce stores since widespread exploitation commenced last week, reports BleepingComputer.
Infosecurity Magazine reports that multiple malicious npm packages with downloader capability have shown bogus installation logs to stealthily inject cryptocurrency wallet and sensitive information-stealing malware as part of the new Ghost campaign that commenced in early February.
Intrusions weaponizing searches for illicit tax-related documents to spread trojanized ConnectWise ScreenConnect installers that facilitate a bring your own vulnerable driver attack have been launched against individuals across the U.S. as part of a widespread malvertising campaign that has been underway since January, The Hacker News reports.
BleepingComputer reports that U.S. education technology firm Infinite Campus has disclosed a data breach stemming from the hack of an employee's Salesforce account after the ShinyHunters threat operation threatened to leak data purportedly pilfered from the popular K-12 student information system provider on March 25.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.