A broad set of cyber incidents affected critical infrastructure, consumer platforms, public institutions, and emerging AI services. The most disruptive case cited was a ransomware attack that crippled the largest gas pipeline in the United States, while other breaches exposed user data at firms including Upstox, IIMJobs, and the World Anti-Doping Agency. In another case, an exposed Moltbook database reportedly allowed anyone to take control of any AI agent on the site, highlighting how insecure backend systems can turn application flaws into full account or service compromise.
The references also describe politically motivated and opportunistic attacks alongside evolving malware activity. Hackers reportedly defaced airport screens in Iran with anti-government messages, and Anonymous-linked hacktivists leaked 1TB of data from a Russian law firm. Separately, a new Mirai variant, Murdoc_Botnet, was reported exploiting IoT devices to build a botnet for DDoS attacks, while Hong Kong moved to revive privacy legislation that would require companies to report data breaches, reflecting regulatory pressure created by the steady drumbeat of intrusions and leaks.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
9 events from the most recent confirmed update back to the earliest known activity.
Hong Kong authorities were reported to be planning revival of a privacy law that would require firms to report data breaches. The move marked a policy development aimed at strengthening breach disclosure obligations.
Researchers or reporters disclosed that an exposed Moltbook database could let anyone seize control of any AI agent on the platform. The issue represented a serious access-control and data exposure vulnerability affecting the site.
A new Mirai variant dubbed Murdoc_Botnet was reported conducting DDoS attacks by exploiting vulnerable IoT devices. The disclosure highlighted fresh technical activity and exploitation methods tied to the botnet.
Anonymous-affiliated hacktivists reportedly released 1TB of data stolen from a prominent Russian law firm. The leak represented a major politically motivated data exposure tied to the Russia-related hacktivist campaign.
A major ransomware attack hit Colonial Pipeline, described as the largest gas pipeline operator in the United States, severely disrupting operations. The incident became a significant critical infrastructure cyber event in the U.S.
The ShinyHunters group reportedly dumped part of the database belonging to Indian broker firm Upstox. The event marked a public disclosure of stolen customer-related data from the company.
IIMJobs was reported hacked, with its database exposed online. The disclosure indicated a breach affecting user data from the Indian job portal.
Attackers reportedly took over airport display screens in Iran and replaced normal content with anti-government messages. The incident was disclosed as a politically motivated defacement affecting airport systems.
The World Anti-Doping Agency's site was reportedly compromised, and thousands of user accounts were exposed. The incident was publicly reported as a website hack involving leaked account data.
8 references tracked. Mallory keeps watching after this page renders.
404media.co
Open sourcehackread.com
Open sourcehackread.com
Open sourcehackread.com
Open sourcehackread.com
Open sourcehackread.com
Open sourcehackread.com
Open sourcehackread.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.