Threats & incidents
-
NCSC warns on Russian router targeting
The NCSC and allied agencies say Russian FSB-linked actors are exploiting weakly configured routers and network devices across critical sectors.
-
UK and EU sanction Russian cyber networks
The coordinated package targets Russian state-linked cyber operators, criminal proxies, Lumma Stealer actors, and information operations tied to attacks across Europe.
-
Passkey vishing targets Entra users
Okta says vishing actors are using fake Microsoft Entra passkey enrolment flows, showing how attackers are adapting to passwordless authentication.
-
Fake payment SDKs target developer secrets
Malicious npm and PyPI packages impersonating Paysafe, Skrill, and Neteller SDKs show how payment-brand trust is being used to reach developer credentials and cloud tokens.
-
OpenMandriva case exposes maintainer risk
OpenMandriva says it faced attempted distribution sabotage, putting maintainer privilege, repository control, and recovery discipline back into software supply chain focus.
-
Accenture incident raises supplier secrets risk
Accenture has acknowledged an isolated security matter after a threat actor claimed to have stolen source code, keys, Azure tokens, and configuration files.
-
Fortinet exposure keeps edge risk in focus
The NCSC has urged UK organisations using Fortinet firewalls and VPN gateways to investigate potential compromise after a global credential targeting campaign.
-
Spain arrests alleged hacktivist collaborator
Spanish police have arrested a man accused of supporting pro-Russian hacktivist groups, including CARR and Z-Pentest, in a case involving FBI cooperation and alleged logistical support.
-
Ransomware groups target software supply chains
Sophos researchers say Vect and TeamPCP have linked supply chain credential theft with ransomware deployment, putting developer ecosystems in the extortion path.
-
Nidec ransomware tests manufacturing resilience
Nidec has disclosed ransomware damage at a Taiwanese subsidiary, with production, shipping, information leakage, and financial impact still under investigation.








