"Internal documents from a Chinese artificial intelligence (AI) company indicated that China has been using the technology to intervene in foreign elections, including propaganda targeting Taiwan’s local elections next year and presidential elections in 2028"
A threat actor modified the installer download link for the EmEditor for four days between Dec 19 and 22
Password vaults stolen from LastPass at the end of 2022 were cracked and used to steal cryptocurrency as recently as this year, with the stolen funds being laundered through Russia-based cryptocurrency exchanges
Christmas Eve miracle: Fortinet admits new exploitation of a 2020 bug https://www.fortinet.com/blog/psirt-blogs/product-security-advisory-and-analysis-observed-abuse-of-fg-ir-19-283
The IBM X-Force Exchange, the company's in-house vulnerability database that was founded even before the CVE program, appears to have been abandoned
David Stern, the CISA official behind the agency's Pre-Ransomware Notification Initiative (PRNI), has quit the agency after he was forced to relocate to FEMA's Boston office by the new DHS leadership https://www.cybersecuritydive.com/news/cisa-ransomware-warning-program-key-employee-left/808589/
Intrinsec believes a threat actor known as Fly is likely the administrator of Russian Market, an underground portal for selling credentials stolen via infostealers