A sophisticated backdoor targeting major Russian organizations was discovered in April 2025. It disguises itself as legitimate ViPNet software updates, enabling data theft and deployment of additional malware. The attack utilizes a path substitution technique for execution and connects to command and control servers for file exfiltration. Experts urge organizations to verify updates and enhance security measures amid rising cyber espionage threats.

NS Power customers’ personal information taken in ‘cyber incident’ – CTV News
NS Power reported a cyber incident that compromised customers’ personal information. The utility company informed affected customers about the breach, emphasizing that it takes such