February 17, 2025

Weekly Threat Digest: 10 February to 16 February 2025

For a detailed threat digest, download the PDF file here


Summary

HiveForce Labs has identified a surge in cybersecurity threats, highlighting the increasing complexity and frequency of cyber incidents. Over the past week, seven major attacks were detected, seven critical vulnerabilities were actively exploited, and two threat actor groups were closely monitored, reflecting a relentless rise in malicious activities.

Apple recently patched CVE-2025-24200, a zero-day vulnerability in iOS and iPadOS that was actively exploited in highly sophisticated cyberattacks. Meanwhile, the Sandworm cyber-espionage group, linked to the Russian military, targets Windows users in Ukraine by embedding malware into trojanized Microsoft KMS activators and fake Windows updates.

Adding to the growing cyber threats, Abyss Locker, a ransomware group, primarily targets VMware ESXi servers and corporate networks by exploiting VPN appliance vulnerabilities and SSH weaknesses. On the defensive front, Microsoft’s February 2025 Patch Tuesday addresses 63 security flaws, including two actively exploited zero-days. These escalating threats underscore the increasing sophistication of cyber adversaries and the urgent need for proactive, resilient cybersecurity measures to combat the rapidly evolving global threat landscape.

Subscribe to receive our weekly threat digests and newsletters directly in your inbox.

Recent Resources

Dive into our library of resources for expert insights, guides, and in-depth analysis on maximizing Uni5 Xposure’s capabilities

Book a demo and find out more about how Hive Pro can double your operational efficiency

Book a Demo