Cybersecurity news last week included Russian cybercriminals exploiting a vulnerability in the 7-Zip tool, the discovery of malware on App Store and Google Play that extract cryptowallets’ seed recovery phrases, and problems being faced by financially-related algorithms due to poor data hygiene. Despite these, more victims are refusing to pay ransoms and hitherto overlooked cybersecurity staff issues are being addressed. A new open source zero trust protocol has been released and organizations are improving cybersecurity resourcing.

Botnet campaign hits unpatched TP-Link Archer AX-21 routers
The “Ballista” botnet campaign is exploiting a high-level security flaw to infect unpatched TP-Link routers. Detected by Cato CTRL researchers in January 2025, it has