MSP cybersecurity news digest, December 22, 2025
ID: 47ef30f9-2a65-5722-b7de-48ef6f42e751
STIX ID: report--47ef30f9-2a65-5722-b7de-48ef6f42e751
Feed Name: TRU Security by Acronis
Executive summary: This bulletin reports several high-risk developments — a confirmed compromise of French Interior Ministry email via Microsoft 365 device-code phishing enabling account takeover and downstream BEC activity; the GhostPoster campaign that injects malicious JavaScript into Firefox extension logo assets to enable tracking and credential theft; RansomHouse’s evolution to a multistage encryptor increasing extortion resilience; and disclosure/patching of a maximum-severity RCE (CVE-2025-37164) in HPE OneView — together indicating active, multi-vector threats against government and enterprise infrastructure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
