May 7, 2025

Weekly Threat Digest: 28 APRIL to 04 MAY 2025

For a detailed threat digest, download the PDF file here


Summary

HiveForce Labs has observed a significant surge in cybersecurity threats, underscoring the growing complexity and frequency of cyber incidents. Over the past week, two major attacks were detected, five critical vulnerabilities were actively exploited, reflecting an alarming escalation in malicious activities.

One such threat is the active exploitation of a high-severity vulnerability (CVE-2025-3928) in Commvault’s Web Server. Authenticated attackers can plant web shells and execute code on Windows and Linux systems, potentially leading to full system compromise. Similarly, active exploits are targeting SonicWall’s SMA 100 Series flaws (CVE-2023-44221 and CVE-2024-38475), enabling command injection and session hijacking.

Adding to the growing list of cyber threats, Hannibal Stealer is a rebranded, advanced malware targeting browsers, cryptocurrency wallets, and communication apps. Evolving from Sharp and TX Stealer, it bypasses modern security measures, blurring the line between financial cybercrime and hacktivist motives, signaling a mounting threat. These developments underscore the increasing sophistication of cyber adversaries and reinforce the urgent need for agile, proactive cybersecurity defenses to navigate an increasingly hostile digital landscape.


Subscribe to receive our weekly threat digests and newsletters directly in your inbox.

Recent Resources

Dive into our library of resources for expert insights, guides, and in-depth analysis on maximizing Uni5 Xposure’s capabilities

Book a demo and find out more about how Hive Pro can double your operational efficiency

Book a Demo