MSP cybersecurity news digest, March 24, 2025
ID: 2deb9792-54b4-5411-95f7-bc858956bfab
STIX ID: report--2deb9792-54b4-5411-95f7-bc858956bfab
Feed Name: TRU Security by Acronis
This report aggregates multiple active incidents: a supply-chain compromise via LES Automotive injected ‘ClickFix’ code that distributed SectopRAT to over 100 car dealership websites; HellCat’s claimed Jira breach of Swiss telecom Ascom with ~44GB of stolen data; discovery of StilachiRAT, a sophisticated RAT targeting credentials and crypto wallet extensions; Cl0p’s exploitation of Cleo file transfer vulnerabilities leading to Western Alliance Bank customer data theft; and targeted Microsoft 365 account compromises using malicious OAuth apps posing as Adobe/DocuSign—collectively highlighting supply-chain risk, large data leaks, credential- and wallet-stealing malware, and active exploitation of third-party services.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
