Increasingly active phishing groups and escalating cybercrime-as-a-service operations have fueled cyber extortion, with Orange Cyberdefense noting that the number of victims has risen by 45% from October 2024 to September 2025, Infosecurity Magazine reports.
Online credentials obtained by information-stealing malware have been leveraged to breach business websites, which were then tapped for distributing other illicit payloads, highlighting an attack cycle that converts victims into oblivious cybercrime accomplices, according to Cyber Security News.
The U.S. Treasury Department has reversed Biden-era sanctions imposed on executives Sara Hamou, Merom Harpaz, and Andrea Gambazzi, who had been subjected to punitive action due to their association with spyware vendor Intellexa, whose Predator spyware had been leveraged by governments and other threat actors for cyberespionage, reports The Record, a news site by cybersecurity firm Recorded Future.
OpenVSX extensions target macOS with GlassWorm malware Three new malicious extensions on the OpenVSX marketplace, one of which claims to be the customizable code formatter Prettier Pro, have sought to compromise macOS devices as part of the fourth wave of attacks involving the self-replicating Glassworm malware, reports Cybernews.
Windows Defender purportedly circumvented by novel AI-boosted metamorphic crypter Newly emergent sophisticated AI-powered metamorphic crypter InternalWhisper x Impact Solutions has been claimed by threat actor ImpactSolutions to be fully undetectable by Windows Defender and other leading endpoint security tools, according to Cyber Security News.
Pakistan-linked threat group APT36, also known as Transparent Tribe, has used illicit Windows LNK files to compromise Indian government, strategic, and academic organizations as part of an advanced cyberespionage campaign, GBHackers News reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.