Security Affairs newsletter Round 562 by Pierluigi Paganini – INTERNATIONAL EDITION
Security Affairs newsletter Round 562 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best security articles from Security Affairs are free in your email box.
Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.
International Press – Newsletter
Cybercrime
ClawdBot Skills Just Ganked Your Crypto
DOJ Reveals Jeffrey Epstein Employed An Elite Hacker With Global Cyber Connections
French headquarters of Elon Musk’s X raided by Paris cybercrime unit
Infostealers without borders: macOS, Python stealers, and platform abuse
X offices raided in France as UK opens fresh investigation into Grok
Joint security advisory from BSI and BfV on phishing via messenger services
Illinois Man Pleads Guilty to Identity Theft and Wire Fraud
Malware
ClawHavoc: 341 Malicious Clawed Skills Found by the Bot They Were Targeting
Malicious dYdX Packages Published to npm and PyPI After Maintainer Compromise
Malicious use of virtual machine infrastructure
Hacking
The Chrysalis Backdoor: A Deep Dive into Lotus Blossom’s toolkit
Metro4Shell: Exploitation of React Native’s Metro Server in the Wild
An AI Toy Exposed 50,000 Logs of Its Chats With Kids to Anyone With a Gmail Account
Dual-Mode Citrix Gateway Reconnaissance: When Residential Proxies Meet Version Hunting
Russian-led cyberattacks on embassies and hotels in Cortina foiled says Tajani (3)
Evaluating and mitigating the growing risk of LLM-discovered 0-days
Intelligence and Information Warfare
Notepad++ Hijacked by State-Sponsored Hackers
APT28 Leverages CVE-2026-21509 in Operation Neusploit
Amaranth-Dragon: Weaponizing CVE-2025-8088 for Targeted Espionage in the Southeast Asia
PlugX Diplomacy: A Mustang Panda Campaign
The Shadow Campaigns: Uncovering Global Espionage
Knife Cutting the Edge: Disclosing a China-nexus gateway-monitoring AitM framework
Cybersecurity
MongoDB Ransom Isn’t Back – It Never Left
2025 Q4 DDoS threat report: A record-setting 31.4 Tbps attack caps a year of massive DDoS assaults
CISA Orders Federal Agencies to Strengthen Edge Device Security Amid Rising Cyber Threats
Data breach at govtech giant Conduent balloons, affecting millions more Americans
Follow me on Twitter: @securityaffairs and Facebook and Mastodon
(SecurityAffairs – hacking, newsletter)
