2025 State of the Internet: Notable Incidents
ID: f1687901-6c12-5d46-9f4c-583fd9846d8f
STIX ID: report--f1687901-6c12-5d46-9f4c-583fd9846d8f
Feed Name: Censys Blog
Date Published: 2025-07-24
Date Updated: 2026-04-27
Author: Ivonne Francia; Silas Cutler; Principal Security Researcher
This Censys Rapid Response review analyzes major 2024–2025 incidents: widespread exploitation of critical Cleo file-transfer flaws by CL0P/Termite leading to numerous ransomware breaches and data leak site postings, a FortiOS/FortiProxy auth-bypass (CVE-2024-55591) tied to DragonForce activity evidenced by exposed PoCs and credential lists, and law-enforcement disruption of cracked Cobalt Strike (Operation Morpheus); the report highlights exposed hosts, timelines of exploitation and disclosure, and forensic indicators for defenders.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
