Latest Internet & Cybersecurity News

📅December 21, 2025 at 1:00 AM
2025 marks record cyber breaches, North Korean crypto thefts surge to $2B+, Microsoft Teams outage disrupts globally, critical vulnerabilities exploited in Cisco and Fortinet, amid rising ransomware and state attacks.
1

North Korean Hackers Steal $2.02 Billion in Crypto in 2025

North Korean hackers stole $2.02 billion in cryptocurrency in 2025, a 51% increase year-over-year, pushing their total to $6.75 billion.Source 1Source 10 Chainalysis analysis highlights this as the leading global crypto theft driver.Source 1 Amazon data supports insights into DPRK cyber activities.Source 7

2

2025 Worst Year on Record for Global Cyber Breaches

Cyberattacks in 2025 hit unprecedented scale, breaching US Treasury, federal agencies, and nuclear systems by Chinese and Russian hackers.Source 3 Clop ransomware exploited Oracle flaw for mass extortion; UK retail and Jaguar Land Rover hacks caused £1.5B damage.Source 3 South Korea faced monthly breaches at telecoms and Coupang.Source 3

3

Worldwide Microsoft Teams Outage Causes Message Delays

Microsoft Teams suffered a major disruption on December 20, 2025, with global messaging delays and functionality issues tracked as TM1200517.Source 2Source 6 Microsoft is investigating root causes while monitoring recovery.Source 2 Businesses reliant on Teams faced disrupted collaboration.Source 2

4

Russian Group BlueDelta Targets UKR.NET Users

Russian state-sponsored BlueDelta (APT28) runs persistent credential-harvesting against Ukrainian UKR.NET webmail.Source 1 Insikt Group urges phishing-resistant MFA adoption.Source 1 Campaign highlights need for enhanced authentication.Source 1

5

Amazon IDs Russian Campaign Targeting Global Infrastructure

Russian threats targeted Western critical infrastructure, especially energy, from 2021-2025 via edge devices.Source 1 Amazon Threat Intelligence notes tactic evolution; recommends NCSC forensics guidance.Source 1 CJ Moses summarizes initial access methods.Source 1

6

Cisco Zero-Day CVE-2025-20393 Exploited in Attacks

Cisco Talos warns of ongoing campaign exploiting CVE-2025-20393 (improper input validation) in Secure Email appliances.Source 5Source 7 Added to CISA KEV catalog with one-week mitigation deadline; no patch yet.Source 5 Targets internet-exposed Spam Quarantine features.Source 5

7

FortiGate FortiCloud SSO Vulnerabilities Exposed

Over 25,000 Fortinet devices vulnerable via FortiCloud SSO; Arctic Wolf observed malicious logins from Dec 12.Source 5Source 6 CVE-2025-59718 added to CISA KEV with Dec 23 deadline.Source 5 Users urged to disable feature until patched.Source 5

8

Silver Fox Uses SEO Poisoning for Backdoor Distribution

Silver Fox campaign employs SEO poisoning for backdoors in 20+ apps, targeting Chinese users since July 2025.Source 1 False-flag op with Cyrillic names; victims across Asia, Europe, NA.Source 1 ReliaQuest confirms broader infrastructure.Source 1

9

Google Sues to Seize Sites of Cybersecurity Threat Group

Google lawsuit seeks to seize websites used by a threat group, gaining legal standing to hamper operations.Source 1 NBC reports aim to disrupt group activities via US courts.Source 1 Part of broader infrastructure defenses.Source 1

10

December 2025 Android Security Bulletin Patches 100+ Flaws

Google's bulletin addresses over 100 vulnerabilities, including two zero-days in Android platform and vendors.Source 9 Critical fixes for core components to counter active exploits.Source 9 Users urged to update promptly.Source 9

11

Mitchell County Ransomware Incident Exposes Health Data

Ransomware hit Mitchell County network Oct 20, 2025; unauthorized access Oct 16-20 stole protected health info.Source 4 County engaged forensics, law enforcement, and state task force.Source 4 Affects social services recipients.Source 4

12

Cloud Atlas Exploits Office Flaws in Ongoing Campaign

Cloud Atlas group targets Eastern Europe/Asia with Office exploits for silent compromises, decade-long ops.Source 6 Sophisticated chains evade detection.Source 6 Continues espionage focus.Source 6

Latest Internet & Cybersecurity News | DeckBook AI