April 9, 2025

Weekly Threat Digest: 31 MARCH to 06 APRIL 2025

For a detailed threat digest, download the PDF file here




HiveForce Labs has observed a significant surge in cybersecurity threats, underscoring the growing complexity and frequency of cyber incidents. Over the past week, eleven major attacks were detected, four critical vulnerabilities were actively exploited, and three threat actor groups were closely monitored, reflecting an alarming escalation in malicious activities.

CrushFTP, a widely used file transfer server software, has come under intense scrutiny due to a newly discovered critical vulnerability CVE-2025-31161. What makes this threat particularly alarming is its active exploitation in the wild, with over 1,500 known instances still left unpatched and open to compromise. Meanwhile, the elusive China-linked APT group known as Earth Alux is stirring the cyberespionage landscape with almost undetectable intrusions. This group has set its sights on strategically vital sectors across the Asia-Pacific and Latin American regions.

Adding to the growing list of cyber threats, Ivanti has revealed a severe security flaw CVE-2025-22457 that has been actively exploited since mid-March. Suspected Chinese threat actors have been leveraging this vulnerability to deliver custom-built malware strains, signaling a coordinated and persistent campaign. These escalating threats highlight the increasing sophistication of cyber adversaries and reinforce the urgent need for proactive, resilient cybersecurity measures to combat the rapidly evolving global threat landscape.



Subscribe to receive our weekly threat digests and newsletters directly in your inbox.

Recent Resources

Dive into our library of resources for expert insights, guides, and in-depth analysis on maximizing Uni5 Xposure’s capabilities

Book a demo and find out more about how Hive Pro can double your operational efficiency

Book a Demo