๐ฅ๐๐๐๐-๐๐ ๐๐๐ข๐ฅ๐ฒ ๐๐ฒ๐๐๐ซ ๐๐๐๐ฎ๐ซ๐ข๐ญ๐ฒ ๐ ๐ข๐ง๐๐ข๐ง๐ ๐ฌ-๐๐ ๐๐ฎ๐ฅ๐ฒ ๐๐๐๐๐ฅ
News:
1. 3 threats for Ireland's new maritime security strategy to examine
2. Russia blocks popular US-made internet speed test tool over national security concerns
https://therecord.media/russia-bans-speedtest-ookla
https://www.interfax.ru/russia/1038796
3. ShinyHunters behind Salesforce data theft attacks at Qantas, Allianz Life, and LVMH
4. China flags concerns over potential security risks in Nvidia's H20 chips
5. Canadian cybercriminal sentenced to a year in prison for NFT theft scheme
https://www.justice.gov/usao-edva/pr/canadian-cybercriminal-sentenced-year-prison-nft-theft-scheme
6. Palo Alto Networks agrees to buy CyberArk for $25 billion
https://techcrunch.com/2025/07/30/palo-alto-networks-agrees-to-buy-cyberark-for-25-billion/
7. Users left scrambling for a plan B as Dropbox drops Dropbox Passwords
https://help.dropbox.com/en-us/installs/dropbox-passwords-discontinuation
8. Romania offers cybersecurity support to Moldova ahead of September vote
9. UK Cybersecurity teams under pressure amid rising threats and compliance gaps
10. Romania Warns of Financial Scam Impersonating its Newly Re-Appointed Minister of Finance
https://thecyberexpress.com/romania-financial-scam-finance-minister/
https://www.dnsc.ro/citeste/alerta-campanie-frauduloasa-care-foloseste-identitatea-ministrului-de-finante
---
Tactical Reports with IOCs:
1. Pay2Key: a new player in the RaaS market with an eye to Russia
https://www.f6.ru/blog/pay2key/
2. Attackers abusing Proofpoint & Intermedia link wrapping to deliver phishing payloads
3. Qilin Ransomware and the Hidden Dangers of BYOVD
https://blackpointcyber.com/blog/qilin-ransomware-and-the-hidden-dangers-of-byovd/
4. Unmasking LockBit: A Deep Dive into DLL Sideloading and Masquerading Tactics
https://www.security.com/threat-intelligence/lockbit-ransomware-attack-techniques
5. Black Basta Ransomware โ Active IOCs
https://rewterz.com/threat-advisory/black-basta-ransomware-active-iocs
6. Oyster Malware Targets IT Admins via SEO Poisoning โ Active IOCs
https://rewterz.com/threat-advisory/oyster-malware-targets-it-admins-via-seo-poisoning-active-iocs
7. Hackers Deploy .HTA Files to Spread Red Ransomware โ Active IOCs
https://rewterz.com/threat-advisory/hackers-deploy-hta-files-to-spread-red-ransomware-active-iocs
8. Fake Error Pages Spread Cross-Platform Malware โ Active IOCs
https://rewterz.com/threat-advisory/fake-error-pages-spread-cross-platform-malware-active-iocs
---
APT IOCs:
Lazarus
defianceanalytics.easyhiringtool[.]com
---
Threat Hunting / DFIR / Malware:
1. Using LLMs as a reverse engineering sidekick
https://blog.talosintelligence.com/using-llm-as-a-reverse-engineering-sidekick/
2. Anubis and the Death of Data: A New Era of Ransomware Operations
https://www.bitsight.com/blog/anubis-ransomware-group-overview-and-evolution
3. Under Attack: The Hidden Risks of Ignoring Post-Attack Forensics
4. That's How Stealers Defeat System Recovery
https://www.knowyouradversary.ru/2025/07/211-thats-how-stealers-defeat-system.html
---
Light Reading:
1. Sonatype uncovers North Korean global espionage campaign in open source ecosystems
2. Voice of SecOps Spotlight: AIโs Impact on Financial Services Cybersecurity
3. APT35 (Charming Kitten): A Strategic Intelligence Analysisโ Evolution, Operations, and Threat Outlook (2025)
4. 2025 Unit 42 Global Incident Response Report: Social Engineering Edition
5. Ransomware groups are blurring the line between cybercrime and โhacktivismโ
6. Secrets are leaking everywhere, and bots are to blame
https://www.helpnetsecurity.com/2025/07/31/enterprise-non-human-identity-risk/
7. What Akira Ransomware Gang Taught This Company
https://www.watchguard.com/wgrd-news/blog/what-akira-ransomware-gang-taught-company
8. The real threat on Korean Peninsula: Chinese, North Korean political warfare
---