Weekly Threat Digest : 14 to 20 JULY 2025
For a detailed threat digest, download the PDF file here

HiveForce Labs has recently made significant advancements in identifying cybersecurity threats. Over the past week, detected eight attacks and reported four vulnerabilities. These findings underscore the relentless and escalating danger of cyber intrusions.
Recent, a critical flaw (CVE-2025-47812) in Wing FTP Server allows attackers to execute code via a null byte login exploit, with active attacks and a public PoC emerging just a day after disclosure. CVE-2025-25257 is a critical unauthenticated SQL injection flaw in Fortinet FortiWeb that allows attackers to execute SQL commands and achieve RCE; a public PoC is available, making immediate patching essential.
Additionally, NordDragonScan is a new .NET-based info-stealer spreading via malicious HTA scripts and deceptive links, designed to covertly harvest sensitive data in targeted cyber-espionage attacks. Interlock ransomware now uses a PHP-based RAT via fake CAPTCHA lures and Cloudflare Tunnel, enabling stealthy system access and advanced intrusion tactics. These rising threats pose significant and immediate dangers to users worldwide.
Subscribe to receive our weekly threat digests and alerts directly in your inbox.