Two significant cybersecurity threats have emerged. The first is a critical security vulnerability in Ivanti Connect Secure appliances, exploited as a zero-day since mid-December 2024, potentially allowing unauthenticated remote code execution. The second is an active exploit of a recently disclosed security flaw impacting GFI KerioControl firewalls potentially leading to remote code execution. Threat actor groups, such as UNC5337, might be exploiting these vulnerabilities. Top news includes Microsoft’s legal action against a hacking group.

M&S issues update as crippling nationwide IT outage still ongoing – The Sun
Marks & Spencer (M&S) halted online orders in the UK and Ireland following a cyber attack, leading to a 5% drop in share price. Physical