Latest Internet & Cybersecurity News

📅December 28, 2025 at 1:00 PM
Major 2025 cybersecurity threats include North Korean crypto thefts exceeding $2B, China-linked DNS attacks, INTERPOL's Africa arrests, ransomware surges, and rising third-party risks driving 2026 investments.
1

North Korea-Linked Hackers Steal $2.02 Billion in Crypto Thefts in 2025

Threat actors tied to North Korea have stolen $2.02 billion in cryptocurrency throughout 2025, leading global crypto theft activities. This marks a significant escalation in state-sponsored cybercrime targeting digital assets.Source 1 Thefts highlight North Korea's industrialization of cryptocurrency operations.Source 4

2

China-Linked Evasive Panda Conducts DNS Poisoning for MgBot Malware Delivery

A China-linked APT group ran a DNS poisoning campaign from November 2022 to 2024, targeting Türkiye, China, and India to deploy MgBot backdoor. The evasive operation was highly targeted for cyber espionage.Source 1 Kaspersky attributed the activity to Evasive Panda.Source 1

3

INTERPOL Operation Sentinel Arrests 574 Cybercriminals in Africa, Recovers $3M

INTERPOL's Operation Sentinel from October 27 to November 27, 2025, led to 574 arrests across 19 African countries and $3 million recovery. The effort focused on business email compromise, digital extortion, and cybercrime networks.Source 1Source 4

4

Russia-Linked Hackers Exploit Microsoft 365 Device Code Phishing for Takeovers

Russia-aligned group UNK_AcademicFlare has used device code authentication phishing since September 2025 to steal Microsoft 365 credentials. Attacks leverage compromised government emails for account takeovers.Source 1 Proofpoint tracks the ongoing campaign.Source 1

5

Nigeria Arrests RaccoonO365 Phishing Developer Targeting Microsoft 365

Nigerian authorities arrested three suspects, including the main developer of RaccoonO365 PhaaS, linked to corporate phishing attacks. The Nigeria Police Force collaborated on investigations.Source 1 This disrupts a key Microsoft 365 threat actor.Source 1

6

Kimwolf Botnet Hijacks 1.8 Million Android TVs for Massive DDoS Attacks

The Kimwolf Android botnet has infected 1.8 million TVs, enabling large-scale DDoS attacks. It represents a massive IoT threat vector.Source 1Source 4 The botnet strikes critical infrastructure globally.Source 4

7

Aflac Confirms Data Breach Affecting Over 22 Million Customers

Insurance giant Aflac disclosed a June 2025 breach impacting more than 22 million customers' data. Sensitive information was exposed in the incident.Source 4 This adds to 2025's record breach volumes.Source 3

8

Red Hat GitLab Breach Exposes Data of 21,000 Nissan Customers

Red Hat confirmed a GitLab instance hack leading to data theft of 21,000 Nissan customers. The breach highlights supply-chain vulnerabilities.Source 4 It occurred amid rising third-party risks.Source 6

9

La Poste Services Disrupted by Pro-Russian Noname057 Cyberattack

France's postal service La Poste suffered outages from a cyberattack claimed by pro-Russian group Noname057. Digital banking and online services were hit.Source 4 The incident underscores geopolitical cyber tensions.Source 4

10

Critical n8n Vulnerability CVE-2025-68613 Enables Remote Code Execution

A high-severity flaw in n8n allows arbitrary code execution, with active exploitation warnings issued December 22, 2025. Server takeovers are possible.Source 4 Organizations urged to patch immediately.Source 4

11

Rising Third-Party Risks and Ransomware Drive 2026 Cybersecurity Investments

Experts predict increased investments in 2026 due to escalating third-party risks and ransomware threats. ENISA reports shift to automation amid talent shortages.Source 5Source 6 2025 breaches amplify these trends.Source 3

12

2025 Marked by Unprecedented Cyber Attacks Across Sectors

2025 saw record breach volumes, credential leaks, and supply-chain failures hitting governments, healthcare, finance, and infrastructure. No sector escaped impact.Source 3Source 7 The year proves global vulnerability.Source 3