IT Security Newsletter - 6/19/2025
Iran-Israel War Triggers a Maelstrom in Cyberspace
As they trade missile strikes, Iran and Israel have also faced heavy waves of cyberattacks this past week. On June 13, Israel initiated a military offensive it called "Operation Rising Lion," aimed at crippling Iran's nuclear weapons program. The two countries' covert war has become overt since then, shifting power in the region and causing dozens of civilian deaths in Israel and hundreds in Iran along the way. READ MORE...
Billions of logins for Apple, Google, Facebook, Telegram, and more found exposed online
When organizations, good or bad, start hoarding collections of login credentials the numbers quickly add up. Take the 184 million logins for social media accounts we reported about recently. Now try to imagine 16 billion! Researchers at Cybernews have discovered 30 exposed datasets containing from several millions to over 3.5 billion records each. In total, the researchers uncovered an unimaginable 16 billion records. READ MORE...
Healthcare SaaS firm says data breach impacts 5.4 million patients
Episource warns of a data breach after hackers stole health information of over 5 million people in the United States in a January cyberattack. Episource is an American healthcare services company that provides risk adjustment, medical coding, data analytics, and technology solutions to health plans and providers. They help insurers optimize payments and compliance in government programs like Medicare Advantage. READ MORE...
Krispy Kreme Confirms Data Breach After Ransomware Attack
Donut and coffee retail chain Krispy Kreme has confirmed that the ransomware attack that came to light in late 2024 resulted in a data breach. Krispy Kreme revealed being hit by a cyberattack on December 11, saying that the incident had led to operational disruptions. Roughly one week later, the Play ransomware group took credit for the attack, claiming to have stolen personal information, client documents, financial information, and more. READ MORE...
How the cyberattack against UNFI affected 4 independent grocers
United Natural Foods, Inc. is continuing to rely on manual procedures to receive and fulfill orders from customers as it works to recover from a cyberattack that compelled the grocery wholesaler to entirely shut down its online platform on June 6, a UNFI spokesperson said Monday. UNFI has not indicated when it expects to resume processing orders online but said that it has "made significant progress toward safely restoring our electronic ordering systems." READ MORE...
Russian Hackers Bypass Gmail MFA With App-Specific Password Ruse
A professional hacking team linked to the Russian government has been caught wielding a new, low-and-slow phishing trick that beats two-factor authentication by exploiting Google's little-known "app-specific password" feature. According to documentation from Google's Threat Intelligence Group, the operation ran from April into early June and impersonated US State Department officials in email threads with flawless English and copied to four bogus @state.gov colleagues. READ MORE...
Researchers urge vigilance as Veeam releases patch to address critical flaw
Researchers are urging Veeam Backup & Replication users to make sure their systems are fully upgraded to the latest version after the company released a patch Tuesday to address a critical remote code execution flaw. The vulnerability, tracked as CVE-2025-23121, allows an authenticated domain user to run code on a backup server. Researchers at watchTowr and Code White GmbH previously disclosed that a patch to address a prior vulnerability, tracked as CVE-2025-23120, could be bypassed. READ MORE...
Minecraft cheaters never win ... but they may get malware
Trojanized Minecraft cheat tools hosted on GitHub have secretly installed stealers that siphon credentials, crypto wallets, and other sensitive data when executed by players. According to Check Point Research, which spotted the Minecraft mod malware, about 500 GitHub repositories were part of this operation targeting gamers and about 70 accounts gave the malicious repos 700 stars. Upwards of 1,500 devices may have been infected to date. READ MORE...
Ransomware gang busted in Thailand hotel raid
In a dramatic raid at a hotel in central Pattaya this week, Thai police have unearthed a criminal gang that was operating a ransomware and illicit gambling operation. At 11:30pm local time on Monday 16 June, authorities conducted a floor-by-floor search of the eight-story Antai Holiday Hotel, after it had been tipped off about suspected illegal activity. What they found was six Chinese nationals who were distributing links to companies designed to infect them with ransomware. READ MORE...
GPS tracker detection made easy with off-the-shelf hardware
Cyberstalkers are increasingly turning to cheap GPS trackers to secretly monitor people in real time. These devices, which often cost less than $30 and run on 4G LTE networks, are small, easy to hide under a bumper or in a glovebox, and can go undetected for months. A new paper from researchers at NYU, You Can Drive But You Cannot Hide, presents an affordable, practical method for detecting these hidden cellular GPS trackers using off-the-shelf hardware. READ MORE...
CISA warns of attackers exploiting Linux flaw with PoC exploit
CISA has warned U.S. federal agencies about attackers targeting a high-severity vulnerability in the Linux kernel's OverlayFS subsystem that allows them to gain root privileges. This local privilege escalation security flaw (CVE-2023-0386) is caused by a Linux kernel improper ownership management weakness and was patched in January 2023 and publicly disclosed two months later. READ MORE...
- ...in 1865, Union Major General Gordon Granger proclaims the end of slavery in Texas, two years after the Emancipation Proclamation. This is celebrated today as Juneteenth.
- ...in 1910, the first Father's Day is celebrated in Spokane, Washington.
- ...in 1949, the first ever NASCAR race is held at Charlotte Motor Speedway.
- ...in 1978, Jim Davis's "Garfield", the world's most widely syndicated comic strip, makes its debut.