Latest Internet & Cybersecurity News

📅December 31, 2025 at 1:00 AM
Major 2025 cybersecurity incidents include massive data breaches at University of Phoenix, TransUnion, and aviation firms, active exploits of MongoDB and FortiOS flaws, ransomware surges, and rising AI threats.
1

University of Phoenix Data Breach Affects 3.5 Million

Attackers exploited a zero-day in Oracle E-Business Suite (CVE-2025-61882), stealing names, SSNs, DOBs, and bank details from students, staff, and suppliers between August 13-22, 2025. Linked to Cl0p ransomware, it's part of a campaign hitting over 100 organizations including Harvard.Source 1Source 2 No data released publicly yet.Source 2

2

TransUnion Third-Party Breach Exposes 4 Million Customers

Hackers breached a third-party application, exposing millions of US customers' data at the credit reporting agency. Details on compromised information remain limited but highlight supply chain risks.Source 3 This adds to 2025's record breaches.Source 3

3

MongoDB 'Heartbleed' Vulnerability Actively Exploited

High-severity MongoDB Server flaw (CVE-2025-14847), dubbed 'MongoBleed,' emerged over Christmas with PoCs and is now under active exploit per CISA. Poses major risks as a frequent attack vector for malicious actors.Source 10 Patch immediately.Source 10

4

FortiOS CVE-2020-12812 Still Exploited for 2FA Bypass

Five-year-old improper authentication flaw in FortiGate SSL VPN allows attackers to bypass 2FA via username case mismatch with LDAP. Fortinet warns of ongoing wild exploitation under specific configs.Source 1Source 2 Update systems urgently.Source 2

5

French La Poste DDoS Attack Disrupts Services

Central systems at France's national postal service knocked offline by DDoS on December 24, blocking deliveries and payments. Highlights vulnerabilities in critical infrastructure.Source 1 Recovery ongoing.Source 1

6

Malicious NPM Package 'lotusbail' Steals WhatsApp Data

Fake WhatsApp Web API package with 56,000 downloads intercepts messages, contacts, and credentials via WebSocket to attacker servers. Exemplifies rising software supply chain threats.Source 2 Remove and scan dependencies.Source 2

7

Korean Air Data Breach via Subsidiary KC&D

Hackers stole data of 30,000 employees in breach at former subsidiary; investigation took over a year. Part of aviation sector's 2025 vulnerabilities.Source 1 Impacts ongoing.Source 1

8

Two Americans Plead Guilty in ALPHV BlackCat Ransomware

US defendants admitted targeting victims with BlackCat ransomware on December 30, 2025. Part of DOJ actions against cybercrime.Source 5 Signals law enforcement progress.Source 5

9

Global Banking Network Breach Hits 20 Million Customers

March 2025 attack via third-party software exploited by Eastern European hackers stole account data from over 100 banks. Led to identity theft and regulatory scrutiny.Source 4 Lessons on vendor security.Source 4

10

Russian Lynx Group Breaches UK MoD Contractor

October 2025: Stole 4TB sensitive data from Dodd Group. Underscores nation-state threats to defense supply chains.Source 6 Data potentially leaked.Source 6

11

Cybercrime Surge Across Africa 2023-2025

GI-TOC report shows sharp growth in cybercrime outpacing security measures continent-wide. Includes BEC, ransomware networks dismantled in Senegal, Ghana, Benin, Cameroon.Source 1Source 9 Continued vigilance needed.Source 9

12

AI Deepfake Nudes Prompt Global Regulations

Rising non-consensual AI nudes lead to US bills like Take It Down Act, EU AI Act fines, and lawsuits in San Francisco. Poses business and ethical risks.Source 7 Enforcement challenges persist.Source 7