Weekly Security Sprint EP 125. Hostile Events, AI driven Ransomware, and more!
Description
In this week's Security Sprint, Dave and Andy covered the following topics:
Main Topics:
Annunciation Catholic Church Attack
• Minneapolis Suspect Knew Her Target, but Motive Is a Mystery
• Shooter who opened fire on Minneapolis Catholic school posted rambling videos
• Robin Westman: Minneapolis gunman was son of church employee
• Robin Westman posted a manifesto on YouTube prior to Annunciation Church shooting
• Minneapolis school shooter wrote “I am terrorist” and “Kill yourself” in Russian on weapon magazines and listened to Russian rappers
• Minneapolis Catholic Church shooter mocked Christ in video before attack
• Minneapolis school shooter 'obsessed with idea of killing children', authorities say
• Minnesota Mass Shooter Steeped in Far-Right Lore, White Nationalist Murderers
• In Secret Diaries, the Church Shooter’s Plans for Mass Murder
• Minneapolis church shooting search warrants reveal new details and evidence
• 'There is no message': The search for ideological motives in the Minneapolis shooting
• Minneapolis Church Shooting: Understanding the Suspect’s Video
• More Of Minnesota Shooter’s Writings Uncovered: ‘Gender And Weed F***ed Up My Head’
• Classmates say Minnesota school shooter gave Nazi salutes and idolized school shootings back in middle school
Hoax Active Shooter Reports
• More than a dozen universities have been targeted by false active shooter reports
• This Is the Group That's Been Swatting US Universities
• FBI urges students to be vigilant amid wave of swatting hoaxes
AI & Cyber Threats
• The Era of AI-Generated Ransomware Has Arrived
• Researchers flag code that uses AI systems to carry out ransomware attacks & First known AI-powered ransomware uncovered by ESET Research
• Anthropic: Detecting and countering misuse of AI: August 2025
• A quick look at sextortion at scale: 1,900 messages and 205 Bitcoin addresses spanning four years
Countering Chinese State-Sponsored Actors Compromise of Networks Worldwide to Feed Global Espionage System
• FBI warns Chinese hacking campaign has expanded, reaching 80 countries
• Allied spy agencies blame 3 Chinese tech companies for Salt Typhoon attacks
• UK NCSC: UK and allies expose China-based technology companies for enabling global cyber campaign against critical networks
Quick Hits:
• Storm-0501’s evolving techniques lead to cloud-based ransomware
• Why Hypervisors Are the New-ish Ransomware Target
• FBI Releases Use-of-Force Data Update
• Denmark summons US envoy over report on covert American ‘influence operations’ in Greenland
• Falsos Amigos
• Surge in coordinated scans targets Microsoft RDP auth servers
• Vulnerabilities impacting Citrix NetScaler ADC and NetScaler Gateway - CVE-2025-7775, CVE-2025-7776 and CVE-2025-8424
• Citrix patches trio of NetScaler bugs – after attackers beat them to it
• U.S., Japan, and ROK Join Mandiant to Counter North Korean IT Worker Threats
• US sanctions fraud network used by North Korean ‘remote IT workers’ to seek jobs and steal money
• H1 2025 Malware and Vulnerability Trends
• The FDA just overhauled its COVID vaccine guidance. Here’s what it means for you
• 25 August 2025 NCSC, AFOSI, ACIC, NCIS, DCSA, FBI, ED, NIST, NSF bulletin
• DOGE Put Critical Social Security Data at Risk, Whistle-Blower Says
• Blistering Wyden letter seeks review of federal court cybersecurity, citing ‘incompetence,’ ‘negligence’
• Email Phishing Scams Increasingly Target Churches