The U.S. and its allies have linked Russian hackers, identified as Cadet Blizzard and Enber Bear, to Russia's GRU military intelligence, specifically Unit 29155. These hackers have been carrying out cyberattacks on critical infrastructure worldwide, focusing on NATO members and nations in North America, Europe, Latin America, and Central Asia since 2020. In 2022, their operations shifted toward disrupting aid efforts for Ukraine. A joint advisory reveals that these junior GRU officers, coordinated by Unit 29155 leadership, have conducted cyber sabotage, espionage, and assassination attempts across Europe. The group is also linked to the WhisperGate malware attack in Ukraine in January 2022, and further investigation ties them to the Havana Syndrome incidents. The FBI has detected more than 14,000 instances of domain scanning aimed at 26 NATO members and several EU nations. The U.S. State Department is offering a $10 million reward for information leading to five GRU officers believed to be involved in these cyberattacks. Critical infrastructure organizations are strongly advised to enhance their security by applying system updates, patching known vulnerabilities, and implementing phishing-resistant multifactor authentication (MFA) for all external services. Additional security measures such as network segmentation are recommended to contain malicious activity. In a related effort to combat Russian disinformation, the U.S. seized 32 web domains linked to Russian propaganda efforts aimed at influencing the upcoming 2024 presidential election. The advisory highlights the ongoing risk of cyberattacks and the importance of proactive defense.
A TOCTOU (time-of-check/time-of-use) race condition in the Windows Cloud Files minifilter driver (cldflt.sys), tracked as CVE-2025-55680, permits local authenticated users to creat...
The Jenkins project has released a major security advisory disclosing 14 vulnerabilities across multiple plugins, including several rated high severity. The most critical, CVE-2025...
The Internet Systems Consortium (ISC) has issued a security advisory regarding a high-severity denial-of-service (DoS) vulnerability in the Kea DHCPv4 server, tracked as CVE-2025-1...