AboutDFIR.com – The Definitive Compendium Project
Digital Forensics & Incident Response

Blog Post

InfoSec News Nuggets 12/24/2025

Ukrainian National Pleads Guilty in Nefilim Ransomware Conspiracy

A 35yearold Ukrainian national admitted guilt in U.S. federal court to conspiracy in deploying Nefilim ransomware against companies in the United States and other countries, causing significant system damage and financial loss. Prosecutors documented how he accessed the ransomware code in exchange for a share of extortion proceeds, and a fugitive coconspirator remains at large with an $11 million reward for information leading to their capture.

 

574 Arrested, $3 Million Seized in Crackdown on African Cybercrime Rings

Interpol coordinated a monthlong operation across 19 African countries that resulted in 574 arrests and the recovery of about $3 million linked to business email compromise, ransomware, extortion, and other cyberfraud networks. Authorities also decrypted six distinct ransomware variants, took down more than 6 000 malicious links, and disrupted major schemes that caused an estimated $21 million in losses.

 

CISA Loses Key Employee Behind Early Ransomware Warnings

The Cybersecurity and Infrastructure Security Agency announced the departure of the employee leading its early ransomware warning program, raising questions about the future of efforts credited with preventing billions in economic damages. The loss comes amid broader organizational changes at the agency and could affect its ransomware threatsharing capabilities.

 

ServiceNow to Acquire Cybersecurity Startup Armis for $7.75B

ServiceNow announced a $7.75 billion allcash acquisition of Armis, a cybersecurity firm known for realtime threat detection and asset management. The deal, one of the largest in the security space this year, signals continued consolidation and investment in integrated cyber defense platforms amid rising enterprise threats.

 

New Research Shows AI Fueling Unprecedented Cloud Security Risks

A recent report from Palo Alto Networks highlights a sharp increase in cloud security risks as AI adoption grows, with misconfigurations and poorly governed identities cited as major drivers of incidents. The study found that identityrelated issues led to the majority of recent cloud breaches, emphasizing the need for stronger governance around AI and cloud integration.

Related Posts