22nd December – Threat Intelligence Report
ID: 2a91e89a-bdb7-5bc6-a5fb-471bda532341
STIX ID: report--2a91e89a-bdb7-5bc6-a5fb-471bda532341
Feed Name: Check Point Research
Executive summary: This bulletin outlines multiple high-impact incidents and trending threats: massive data breaches attributed to extortion groups (Pornhub/Mixpanel, SoundCloud, LKQ, University of Sydney), critical remote code execution vulnerabilities with active exploitation (HPE OneView CVE-2025-37164, WatchGuard CVE-2025-14733, Fortinet authentication bypasses), APT activity by Ink Dragon using ShadowPad and a new FinalDraft backdoor, and malware campaigns such as the Node.js–based GachiLoader; it also highlights recruitment of insiders and a surge in AI-enabled phishing and holiday scams.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
