April 14, 2025

Weekly Threat Digest: 07 to 13 APRIL 2025

For a detailed threat digest, download the PDF file here




HiveForce Labs has recently made significant advancements in identifying cybersecurity threats. Over the past week, detected four attacks, reported eight vulnerabilities, and identified three active adversaries. These findings underscore the relentless and escalating danger of cyber intrusions.

Microsoft’s April 2025 Patch Tuesday resolves 126 security flaws, including a critical zero-day (CVE-2025-29824) in the Windows CLFS driver. Meanwhile, over 6,500 Kubernetes clusters are exposed due to IngressNightmare, a set of four critical flaws in the NGINX Ingress Controller allowing unauthenticated RCE and full cluster takeover with a single crafted request.

In addition, the ToddyCat APT exploited CVE-2024-11859 in ESET’s command-line scanner by using DLL proxying and a custom tool (TCESB) to stealthily load malicious code and manipulate kernel structures. Similarly, the UAC-0226 campaign targets Ukrainian entities with phishing emails, deploying GIFTEDCROOK malware to steal browser data and exfiltrate it via Telegram, thus compromising security. These rising threats pose significant and immediate dangers to users worldwide.



Subscribe to receive our weekly threat digests and newsletters directly in your inbox.

Recent Resources

Dive into our library of resources for expert insights, guides, and in-depth analysis on maximizing Uni5 Xposure’s capabilities

Book a demo and find out more about how Hive Pro can double your operational efficiency

Book a Demo