News & Updates

Russian Alcohol Giant Novabev Group Discloses Ransomware Incident

Ransomware actors have breached a subsidiary of Russian alcohol company Novabev Group, affecting its business operations.

“Novabev Group pays great attention to cybersecurity, regularly improving the protection of its infrastructure: from daily monitoring and eliminating vulnerabilities to employee training,” the company says in a note on its press room page. “Thanks to this, the company has managed to repel previous attacks.”

“However, on July 14, the group was subjected to an unprecedented c

News & Updates

Radiology Associates of Richmond Confirms Data Breach Affecting 1.4 Million Patients

A cyberattack against Virginia-based Radiology Associates of Richmond compromised sensitive information of over a million individuals.

Ruthless cyberattack hits radiology practice

Radiology Associates of Richmond (RAR), a Virginia-based radiology provider with over a century of service, has revealed a major data breach affecting 1.4 million people.

The breach, traced back to unauthorized access between April 2 and April 6 of last year, exposed both personal and medical information stored in

Threats

CVE-2025-53770 Detection: Microsoft SharePoint Zero-Day Vulnerability Is Actively Exploited for RCE Attacks

CVE-2025-53770 Detection

This summer saw a surge of critical vulnerabilities impacting Microsoft products. A new RCE vulnerability in Windows, tracked as CVE-2025-33053, had been actively weaponized by the Stealth Falcon APT group. At the same time, another severe flaw, dubbed EchoLeak (CVE-2025-32711), was uncovered in Microsoft Copilot, enabling silent data exfiltration via email with no user interaction […]

The post CVE-2025-53770 Detection: Microsoft SharePoint Zero-Day Vulnerability Is Actively Exploited for RCE Attacks appeared first on SOC Prime.

News & Updates

⚡ Weekly Recap: SharePoint 0-Day, Chrome Exploit, macOS Spyware, NVIDIA Toolkit RCE and More

Even in well-secured environments, attackers are getting in—not with flashy exploits, but by quietly taking advantage of weak settings, outdated encryption, and trusted tools left unprotected.
These attacks don’t depend on zero-days. They work by staying unnoticed—slipping through the cracks in what we monitor and what we assume is safe. What once looked suspicious now blends in, thanks to
News & Updates

Assessing the Role of AI in Zero Trust

By 2025, Zero Trust has evolved from a conceptual framework into an essential pillar of modern security. No longer merely theoretical, it’s now a requirement that organizations must adopt. A robust, defensible architecture built on Zero Trust principles does more than satisfy baseline regulatory mandates. It underpins cyber resilience, secures third-party partnerships, and ensures uninterrupted
News & Updates

Microsoft issues emergency patches for SharePoint zero-days exploited in “ToolShell” attacks

Microsoft patched an exploited SharePoint flaw (CVE-2025-53770) and disclosed a new one, warning of ongoing attacks on on-prem servers. Microsoft released emergency SharePoint updates for two zero-day flaws, tracked as CVE-2025-53770 and CVE-2025-53771, exploited since July 18 in attacks dubbed “ToolShell.” Both vulnerabilities only impact on-premises SharePoint Servers, threat actors could chain them for unauthenticated, […]
Cybersecurity Tools

How One Weak Password Destroyed a 158-Year-Old Company

This evening’s episode of Panorama on BBC One, Fighting Cyber Criminals, examines the 2023 ransomware attack on KNP Logistics, as well as the recent attacks on Marks & Spencer, the Co-op and Harrods. KNP, a Northamptonshire haulage group that included the 158-year-old transport company Knights of Old, lost access to all its data after the Russian Akira group accessed an employee account by exploiting a weak password. Despite reportedly complying with industry standards and holding insurance against cyber attacks, the company couldn’t recover its data and entered administration. The BBC reported at the time that 730 employees would be made

The post How One Weak Password Destroyed a 158-Year-Old Company appeared first on IT Governance Blog.

Scroll to Top