Recent cybersecurity news covers a wide range of topics, including the evolving threat landscape, regulatory changes, and the persistent risks associated with misconfigurations and legacy systems. Notable highlights include urgent warnings from CISA and other agencies about the Akira ransomware's new, faster variant targeting critical infrastructure, and the release of the updated OWASP Top 10 Web Application Risks for 2025, which now includes "software supply chain failures" as a key concern. Additionally, Microsoft Exchange servers face heightened risk due to the end of support for Exchange 2016 and 2019, with CISA and NSA urging organizations to follow best practices to mitigate imminent threats. In Brazil, banking Trojans such as Coyote and Maverick are actively targeting users, particularly through WhatsApp, resulting in hundreds of organizations being affected.
On the regulatory front, the UK has introduced a new Cyber Security and Resilience Bill to strengthen protections for critical sectors, mandating rapid incident reporting and imposing significant penalties for non-compliance. Kenya has launched the "Code Nation" initiative to train over a million tech workers, including cybersecurity specialists, as part of its digital transformation. Meanwhile, industry commentary highlights the growing risks of misconfigurations in platforms like Salesforce, the challenges posed by non-human and AI identities, and the ongoing debate over privacy and surveillance in the EU. These developments underscore the complexity and interconnectedness of today's cybersecurity environment, with organizations urged to stay vigilant and adapt to rapidly changing threats and regulations.

See the reporting duties and controls this puts on the clock.
4 events from the most recent confirmed update back to the earliest known activity.
CISA advised organizations to strengthen and refresh their protections against Akira ransomware as concern over the threat continued. The guidance was presented as a current defensive response to active ransomware risk.
Security reporting described Coyote and Maverick banking trojans as actively operating at scale in Brazil, indicating an ongoing escalation in regional banking malware activity. The coverage pointed to these malware families as a significant current threat to Brazilian users and institutions.
CISA warned that organizations remained at risk because Cisco fixes had been applied incompletely, while a China-linked threat group was actively exploiting the affected systems. The alert emphasized that partial remediation was insufficient.
CISA issued an alert urging organizations to act immediately to secure on-premises Microsoft Exchange environments, warning they were under imminent threat. The warning highlighted the need for urgent defensive action by administrators.
Vulnerabilities, threat actors, malware, products, organizations, breaches, and observables Mallory has linked to this story. Indicator values are masked here and available in full in the app.
Indicator values are masked on this page. See the values in Mallory Domains, IPs, hashes, and URLs are exportable to your SIEM.
See what this changes for your reporting obligations and which controls it puts on the clock.
4 references tracked. Mallory keeps watching after this page renders.
tenable.com
Open sourcethehackernews.com
Open sourcedarkreading.com
Open sourcedarkreading.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.