logo

22nd December – Threat Intelligence Report

ID: 2a91e89a-bdb7-5bc6-a5fb-471bda532341

STIX ID: report--2a91e89a-bdb7-5bc6-a5fb-471bda532341

Feed Name: Check Point Research

Threat Score
85/100

Date Published: 2025-12-22

Date Updated: 2026-04-27

Author: lorenf

...
...

Executive summary: This bulletin outlines multiple high-impact incidents and trending threats: massive data breaches attributed to extortion groups (Pornhub/Mixpanel, SoundCloud, LKQ, University of Sydney), critical remote code execution vulnerabilities with active exploitation (HPE OneView CVE-2025-37164, WatchGuard CVE-2025-14733, Fortinet authentication bypasses), APT activity by Ink Dragon using ShadowPad and a new FinalDraft backdoor, and malware campaigns such as the Node.js–based GachiLoader; it also highlights recruitment of insiders and a surge in AI-enabled phishing and holiday scams.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.