Weekly Threat Digest: 17 to 23 February 2025
For a detailed threat digest, download the PDF file here

Summary
HiveForce Labs has recently made significant advancements in identifying cybersecurity threats. Over the past week, detected eleven attacks, reported ten vulnerabilities, and identified four active adversaries. These findings underscore the relentless and escalating danger of cyber intrusions.
Additionally, the new NailaoLocker ransomware exploits a Check Point vulnerability, leveraging ShadowPad and PlugX, tools linked to Chinese state-sponsored hackers. The RevivalStone campaign by China-based Winnti Group targeted Japanese companies in March 2024, using advanced malware and stealth tactics to infiltrate networks.
Furthermore, this week, Salt Typhoon has been targeting U.S. telecoms by exploiting Cisco devices, using stolen credentials, CVE-2018-0171, and LOTL techniques to evade detection, with persistent access lasting years. These rising threats pose significant and immediate dangers to users worldwide.
Subscribe to receive our weekly threat digests and newsletters directly in your inbox.