Nation-State Teams Tied to Grain Sector Targeting, Plus More Joined-Up Operations Russia's nation-state hacking groups have returned to pummeling Ukrainian targets with destructive, wiper malware, including in apparent attempts to disrupt its economically valuable grain sector, alongside the repeat targeting of allied European nations, researchers report.
Also: SBF Appeals Conviction, PHP Exploits Fuel Cryptomining Every week, Information Security Media Group rounds up cybersecurity incidents in digital assets. This week, Europol's 600 million euro fraud network bust, Sam Bankman-Fried conviction appeal, PHP exploits fueled cryptomining campaigns and sentencing set for Samourai Wallet founders.
Statewide Breach Hit 60 Agencies Before Ransomware Was Deployed A threat actor infiltrated Nevada’s statewide systems undetected for months, ultimately disrupting at least 60 agencies by deleting backups and launching ransomware that forced a full rebuild of core infrastructure and triggered a multimillion-dollar emergency response.
The state government of Nevada did not pay a ransom to cybercriminals who took down critical government systems in August, the state said in a post-mortem review of the attack.
A vulnerability identified as critical has been detected in Apple watchOS. This impacts an unknown function. The manipulation leads to memory corruption.
This vulnerability is uniquely identified as CVE-2023-40452. Local access is required to approach this attack. No exploit exists.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in Apple tvOS. Affected is an unknown function. The manipulation results in memory corruption.
This vulnerability was named CVE-2023-40452. The attack needs to be approached locally. There is no available exploit.
The affected component should be upgraded.
A vulnerability marked as critical has been reported in Apple macOS. Affected by this vulnerability is an unknown functionality. This manipulation causes memory corruption.
The identification of this vulnerability is CVE-2023-40452. The attack can only be executed locally. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability described as critical has been identified in Apple iOS and iPadOS. Affected by this issue is some unknown functionality. Such manipulation leads to permission issues.
This vulnerability is referenced as CVE-2023-40454. The attack can only be performed from a local environment. No exploit is available.
Upgrading the affected component is recommended.
A vulnerability classified as critical has been found in Apple watchOS. This affects an unknown part. Performing manipulation results in permission issues.
This vulnerability is identified as CVE-2023-40454. The attack is only possible with local access. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Apple tvOS. This vulnerability affects unknown code. Executing manipulation can lead to permission issues.
This vulnerability is tracked as CVE-2023-40454. The attack is restricted to local execution. No exploit exists.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, has been found in Apple macOS. This issue affects some unknown processing. The manipulation leads to permission issues.
This vulnerability is listed as CVE-2023-40454. The attack must be carried out locally. There is no available exploit.
It is advisable to upgrade the affected component.
A vulnerability, which was classified as critical, was found in Apple iOS and iPadOS. Impacted is an unknown function of the component App Handler. The manipulation results in improper access controls.
This vulnerability is cataloged as CVE-2023-40456. The attack must be initiated from a local position. There is no exploit available.
You should upgrade the affected component.
A vulnerability has been found in Apple watchOS and classified as critical. The affected element is an unknown function of the component App Handler. This manipulation causes improper access controls.
This vulnerability is registered as CVE-2023-40456. The attack needs to be launched locally. No exploit is available.
The affected component should be upgraded.
A vulnerability was found in Apple tvOS and classified as critical. The impacted element is an unknown function of the component App Handler. Such manipulation leads to improper access controls.
This vulnerability is documented as CVE-2023-40456. The attack needs to be performed locally. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability was found in Apple iOS and iPadOS. It has been classified as critical. This affects an unknown function. Performing manipulation results in improper access controls.
This vulnerability is reported as CVE-2023-40520. The attack requires a local approach. No exploit exists.
Upgrading the affected component is recommended.
A vulnerability was found in Apple watchOS. It has been declared as critical. This impacts an unknown function. Executing manipulation can lead to improper access controls.
This vulnerability appears as CVE-2023-40520. The attack requires local access. There is no available exploit.
It is recommended to upgrade the affected component.
A vulnerability marked as critical has been reported in Apple macOS 13. This issue affects some unknown processing. The manipulation leads to permission issues.
This vulnerability is traded as CVE-2023-40455. An attack has to be approached locally. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability marked as problematic has been reported in Cisco Identity Services Engine Software. The affected element is an unknown function of the component Web-based Management Interface. Performing manipulation results in cross site scripting.
This vulnerability was named CVE-2025-20304. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
Currently trending CVE - Hype Score: 16 - The issue was addressed with improved checks. This issue is fixed in iOS 26.1 and iPadOS 26.1, Safari 26.1, visionOS 26.1. Visiting a malicious website may lead to address bar spoofing.