For a detailed threat digest, download the PDF file here
HiveForce Labs has observed a significant surge in cybersecurity threats, underscoring the growing complexity and frequency of cyber incidents. Over the past week, eleven major attacks were detected, and two critical vulnerabilities were publicly disclosed, reflecting an alarming escalation in malicious activities.
Microsoft’s September 2025 Patch Tuesday addresses 86 security vulnerabilities, including 8 critical flaws, affecting widely used products such as Windows SMB, Microsoft Office, SQL Server, and graphics components. Among the most concerning is CVE-2025-55234, a privilege escalation vulnerability in Windows SMB that has been publicly disclosed, increasing its risk profile. The update also resolves CVE-2024-21907, a serious flaw in Newtonsoft.Json, a third-party component used in SQL Server, which attackers could exploit to trigger a denial-of-service.
Recent threats, such as the Cephalus and The Gentlemen ransomware campaigns, demonstrate how cybercriminals are leveraging advanced tactics and targeting critical systems. This underscores the growing importance of proactive security updates and robust monitoring to defend against sophisticated, rapidly evolving attacks.
These rising threats represent an immediate and global cybersecurity risk.
Subscribe to receive our weekly threat digests and alerts directly in your inbox.