Asahi, Major Japanese Brewer, Halts Orders and Deliveries Following Cyberattack

379/68 Thursday, October 2, 2025 Asahi Group Holdings, Ltd., Japan’s leading beer producer and owner of the iconic Asahi Super Dry brand, has announced a temporary suspension of operations in Japan after its systems were hit by a cyberattack. The incident has disrupted order processing, product deliveries, and customer services provided through call centers and […]

ThaiCERT

October 2, 2025

Researchers Warn of New Android Trojan “Datzbro” Targeting Seniors via Travel Event Scams on Facebook

378/68 Thursday, October 2, 2025 Cybersecurity researchers have issued a warning about a new Android banking Trojan called “Datzbro”, which is being used in a scam campaign targeting elderly victims. The campaign lures seniors through Facebook groups and ads promoting travel activities or social gatherings. According to ThreatFabric, the campaign was first observed in August […]

ThaiCERT

October 2, 2025

DarkCloud Infostealer Version 4.2 Returns, Spreading via Phishing Emails to Steal Passwords, Crypto, and Transaction Data

377/68 Wednesday, October 1, 2025 Researchers from the eSentire Threat Response Unit (TRU) have reported the resurgence of the DarkCloud Infostealer with version 4.2, discovered in phishing attack attempts targeting the manufacturing sector in September 2025. The malware has been completely rewritten in VB6, after previously being sold on the cybercrime forum XSS.is (shut down […]

ThaiCERT

October 1, 2025

Researchers Discover First Malicious MCP Server in Rogue Postmark-MCP Package Used to Steal User Emails

376/68 Wednesday, October 1, 2025 A research team from Koi Security has disclosed the first-ever discovery of a Malicious Model Context Protocol (MCP) Server being used in the wild, posing a significant risk of a software supply chain attack. The malicious npm package, named “postmark-mcp”, was uploaded on September 15, 2025, by a developer identified […]

ThaiCERT

October 1, 2025

Interpol Dismantles Romance Scam and Sextortion Rings Across Africa

375/68 Wednesday, October 1, 2025 Interpol announced on Friday that Operation Contender 3.0, a two-week international operation conducted across 14 African countries, resulted in the arrest of 260 cybercrime suspects. The dismantled networks were involved in romance scams and sextortion schemes, extorting money through intimate images. The total estimated damage was around USD 2.8 million, […]

ThaiCERT

October 1, 2025

Medusa Ransomware Group Claims Theft of 834 GB of Comcast Data, Demands $1.2 Million Ransom

374/68 Tuesday, September 30, 2025 The Medusa ransomware group has claimed responsibility for an attack on the systems of Comcast Corporation, a major U.S. media and technology company with core businesses in broadband, television, and film. The group alleges it has stolen more than 834.4 gigabytes of data and is demanding a ransom of $1.2 […]

ThaiCERT

September 30, 2025

Cyberattack on Co-op Causes Over $275 Million in Losses, 6.5 Million Member Records Stolen

373/68 Tuesday, September 30, 2025 The cyberattack against Co-op in April had widespread consequences, leaving store shelves empty, exposing customer data, and causing the company to suffer over $275 million (approx. £206 million) in lost revenue. The food division was hit the hardest, with prolonged product shortages lasting several weeks. While Co-op was able to […]

ThaiCERT

September 30, 2025

Akira Ransomware Bypasses SonicWall VPN with MFA, Exploits Stolen Old Passwords

372/68 Tuesday, September 30, 2025 The ongoing cyberattacks by the Akira ransomware group, targeting SonicWall SSL VPN appliances, have become increasingly concerning due to their sophistication. Researchers recently discovered that attackers could successfully log into accounts even when Multi-Factor Authentication (MFA) with OTP codes was enabled. Initially, the attacks were suspected to involve a zero-day […]

ThaiCERT

September 30, 2025

ForcedLeak Vulnerability in Salesforce Agentforce Risks CRM Data Exposure via Prompt Injection

371/68 Monday, September 29, 2025 Researchers from Noma Labs have disclosed a critical vulnerability in Salesforce Agentforce, dubbed “ForcedLeak” (CVSS 9.4), which could be exploited through indirect prompt injection attacks to gain access to sensitive CRM data. The flaw affects organizations that have enabled the Web-to-Lead feature, stemming from insufficient AI context validation, over-compliance with […]

ThaiCERT

September 29, 2025
1 7 8 9 53