AboutDFIR.com – The Definitive Compendium Project
Digital Forensics & Incident Response

Blog Post

InfoSec News Nuggets 12/31/2025

Two US cyber experts plead guilty to cooperating with notorious ransomware gang

Two U.S. cybersecurity professionals have admitted guilt in federal court for conspiring with the ALPHV/BlackCat ransomware group to extort companies, using their expertise to assist in encryption and ransom demands. This highprofile plea highlights insider misuse of security skills and carries potential prison sentences up to 20 years.

 

80 Hospitals May Have Been Affected by the Oracle Health Data Breach

CISA has issued an alert following confirmation of a breach in Oracle’s legacy cloud environment, with early estimates suggesting possible impact to data tied to roughly 80 U.S. hospitals. While details remain limited, the incident raises concerns about sensitive health information exposure via thirdparty cloud platforms.

 

Lithuanian hacker arrested for KMSAuto malware draining $1.18M from crypto wallets

A Lithuanian national has been extradited to South Korea in connection with a longrunning KMSAuto malware campaign that infected over 2 million Windows systems and siphoned about $1.18 million from victims’ cryptocurrency wallets. The case concludes a multiyear investigation by Korean authorities and underscores international cooperation in prosecuting malware distribution.

 

Vulnerability in SmarterTools Software

Singapore’s national cyber agency published an alert for CVE-2025-52691, a critical SmarterMail vulnerability that could allow unauthenticated arbitrary file upload and potential remote code execution. The advisory lists affected versions (Build 9406 and earlier) and directs administrators to upgrade to Build 9413 immediately.

 

Ransomware attack on Romanian water agency hits over a thousand systems

Romania’s national water management authority (ANAR) reported a ransomware incident affecting around 1,000 systems, including GIS, databases, and Windows servers and workstations. Romanian authorities advised against negotiating, while the agency worked to sustain core hydrotechnical operations despite broad IT disruption.

Related Posts