Cyber Dispatch™️
363 subscribers
18 photos
1 video
44 links
The definitive source for critical cybersecurity news. When a major threat breaks, we dispatch.

#CyberDispatch #CyberSecurity #InfoSec #ThreatIntelligence #ZeroDay #DataBreach #SecurityNews
Download Telegram
A previously unknown threat actor has been quietly targeting Ukraine since at least August 2025.

GREYVIBE uses spear-phishing, fake CAPTCHA pages, and fraudulent websites to deliver custom malware to military, government, civilian, and business targets.
Two new Android NFC relay malware families — DevilNFC and NFCMultiPay — are targeting banking customers in Europe and Latin America.

These tools, developed with possible AI assistance, steal card PINs. DevilNFC even locks victims in a fake interface using Kiosk Mode while relaying card data.
Tool, called "Cali365," tricks users into entering a code on the official Microsoft authentication page, enabling attackers to access emails, messages, and stored files.
Cyber breach impacts Israeli Holocaust victims’ support center:

- Hacker group “Handala” has unauthorized access to the national support center
- Over 2 million files (~1 TB) reportedly exfiltrated, including databases, emails, and internal communications
- Group released details on document contents and links to affiliated entities

#TGITM @TheGhostITM
1
Yossi Kardi, head of Israel’s National Cyber Directorate, concluded a week-long U.S. visit focused on strengthening cybersecurity and digital defense cooperation.

Discussions also referenced recent cyber incidents, including the breach of personal emails of Kash Patel, claimed by the “Handala” group.

#TGITM @TheGhostITM
👎1
US charges Google security engineer with Polymarket insider trading.
ChatGPhish Vulnerability Turns ChatGPT Web Summaries Into a Phishing Surface.
ShinyHunters adds Charter to trophy shelf after 4.9M customer records leak.
Malicious Sicoob NuGet Steals Banking Credentials as npm Packages Target Cloud Secrets.
New BTMOB Android Malware Enables Full Device Takeover.
Signal users targeted in backup-stealing phishing attacks.
JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS Malware.
CVE-2025-61622: PyFory – Insecure Pickle Deserialization to Remote Code Execution.
Hackers exploit FortiClient EMS flaw to push infostealer malware.
Carnival Data Breach Exposes Personal Data of Nearly 6 Million Customers.
Nvidia and Microsoft unveil the first Windows computers equipped with Nvidia chips.
Israeli government cyber resilience under scrutiny:

- 500% surge in cyberattacks targeting Israeli missions abroad during wartime
- 65% of Israeli ministries ignored security warnings for months on a known vulnerable tool
- Sensitive salary data of hundreds of employees exposed