Ivanti has confirmed a serious vulnerability (CVE-2025-0282) in its Connect Secure VPN appliances, which has been exploited in Japan since late 2024. Cybersecurity researchers have identified a variant of the SPAWN malware family, named “SPAWNCHIMERA”, which uses the flaw and deploys a self-contained fix to keep other threats out. The malware has evolved from previous versions, providing persistent access, movement, traffic interception, and stealthier operations.

M&S issues update as crippling nationwide IT outage still ongoing – The Sun
Marks & Spencer (M&S) halted online orders in the UK and Ireland following a cyber attack, leading to a 5% drop in share price. Physical