Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

May 27, 2025 Cyber Threat Intelligence Briefing

This week’s briefing covers: Joint Cybersecurity Advisory released on KTA007 (APT28) A joint advisory has been released warning of Russian-attributed threat actors targeting western logistics entities and technology companies since 2022. Microsoft leads global action to disrupt LUMMASTEALER Microsoft’s Digital Crimes Unit has recently seized and facilitated the takedown, suspension, and blocking of approximately 2,300 malicious domains that formed the backbone of LUMMASTEALER infrastructure.

Now Available: AI-Powered Data Loss Prevention for Microsoft Exchange Online

Organizations investing in Microsoft 365 E5 licensing expect enterprise-grade email protection. Yet despite premium security features, customer feedback reveals persistent challenges with Microsoft Purview DLP across Exchange Online environments. Microsoft deployment specialists report seeing clients deploy Purview on their own, discover a wealth of false positives, and turn off the policies or set them to audit mode. Policies never become useful.

Achieving PCI DSS v4.0.1 Certification: A Comprehensive Overview of Cato Networks' PCI Journey

As previously noted, we achieved PCI DSS v4.0.1 compliance certification, becoming the first SASE platform provider to do so. This milestone reflects our commitment to the highest security standards, ensuring enhanced protection for sensitive data. Throughout the assessment, we collaborated with an external Qualified Security Assessor (QSA) from USD AG to ensure all requirements were thoroughly evaluated.

From Crypto-Curious to Crypto-Confident: How PSPs Are Embracing Digital Assets

Three years ago, we put together a slide showing how we believed stablecoin payments would evolve within businesses. The premise was simple: Fast forward to today, and we’re watching this play out in real time. The shift to stablecoins isn’t theoretical anymore—it’s happening. In the last twelve months, we have moved from sporadic exploration to massive experimentation, and now, implementation. Let’s double-click on the journey that PSPs are going through.

Gearing Up for Prime Time: Introducing Fireblocks Business Continuity Module (BCM)

In today’s financial system, stability isn’t optional—it’s the baseline. With banks embracing digital asset rails, stablecoins moving at scale, and regulation turning into a green light, the demand for enterprise-grade continuity has never been higher. According to our recent State of Stablecoins report: Yet despite this momentum, many institutions still face a major blocker: ensuring continuity and compliance standards that match the rigor of traditional financial systems.

Data Security Monitoring for Jira Admins

Managing Jira Cloud empowers and challenges administrators at the same time. Especially when dealing with critical data security and recovery issues. The complexity of tasks like project migrations, account transitions, or backup restores can often lead to unforeseen data loss or operational disruptions. In this article, you’ll explore how Jira admins can boost data security and prevent pitfalls. Especially while maintaining control over data during backups and migrations.

TLS Certificate Validity Cut from 398 to 47 Days: Why Automation Is Now Essential for IoT Security. The alternative is the cost of human error.

In a significant shift for digital identity management, the maximum lifespan of public TLS certificates is set to be reduced to just 47 days, following a new policy from Apple’s Root Program. With Google expected to follow suit, the clock is ticking faster than ever on certificate validity and that has profound implications for businesses relying on manual processes.

LimaCharlie Leaps Ahead With Endpoint Protection

The newest extension to LimaCharlie’s SecOps Cloud Platform (SCP) offers users advanced control over Windows endpoint protection at scale. This powerful new capability allows security service providers to easily manage free instances of Microsoft Defender Antivirus (previously Windows Defender) on all Windows endpoints through a single unified interface.

Proxmox vs. OpenStack: Choosing Your Virtualization Platform

Making the right choice between Proxmox and OpenStack affects every aspect of your organization’s virtualization capabilities and daily operations. These two platforms take different approaches to virtual infrastructure management, with each offering unique advantages and limitations. Small server setups and extensive cloud deployments require careful consideration of platform features to match specific needs.

CRUD API vs REST API - Beyond the Basics to Strategic Security Implications

The conversation around API design often defaults to technical preferences—developers choosing CRUD APIs for simplicity or REST APIs for structure. However, for enterprise leaders responsible for risk, compliance, and digital resilience, the implications of this choice are far more profound. The CRUD vs. REST debate is not merely architectural; it’s strategic.