CyberSecurity Knuggets

Dec 26, 2025

Subject: Risky Bulletin: Georgia arrests ex-security chief over bribes from scam call centers

Hello,

Here’s a summary of key cybersecurity and cybercrime news from the week as featured in Risky Business:

  • Georgia Arrests: The former head of Georgia’s State Security Service, Grigol Liluashvili, was arrested for accepting bribes to overlook scam call center operations in Tbilisi.
  • Global Cyber Incidents:
  • UK Foreign Office hacked by suspected Chinese group Storm-1849.
  • Romania’s water agency hit by ransomware affecting over 1,000 systems.
  • France fined companies Mobius (€1M) and Nexpublica (€1.7M) over data leaks and failures to patch software vulnerabilities.
  • US Government & Corporate Actions:
  • New nomination announced for head of NSA & Cyber Command.
  • US Department of Justice charges 54 individuals with ATM jackpotting malware attacks related to the Tren de Aragua cartel.
  • CISA faces internal suspension and loss of key staff amid investigations.
  • Malware and Threat Research:
  • EmEditor software compromised in a supply chain attack distributing info-stealer malware.
  • The BlackHawk malware loader used in Romanian spear phishing campaigns, spreading AgentTesla infostealer.
  • Legal and Policy Updates:
  • Italy fines Apple over App Tracking Transparency anti-competitive conduct (€98M).
  • New York’s RAISE Act requires AI firms with $500M+ revenue to publicly report safety incidents within 72 hours, with substantial fines for non-compliance.
  • Germany’s highest court halts compulsory DNS query logging by telcos citing cost and privacy concerns.
  • International Cyber Enforcement:
  • Interpol and multiple countries detain 574 suspects involved in ransomware, business email compromise, and extortion.
  • Nigerian authorities arrest operator of RaccoonO365 phishing service.
  • Cybersecurity Industry News:
  • Docker’s hardened server images are now freely available to developers.
  • ServiceNow agrees to acquire IoT security firm Armis for $7.75 billion.
  • Major security conferences such as Black Hat Europe, BSides Cape Town, and BSides Lisbon have published 2025 talks on YouTube.

For detailed reports and additional updates, please visit the Risky Business website and listen to the latest Risky Business and Seriously Risky Business podcasts.

Stay vigilant,

Risky Business Team


This newsletter will be on editorial break until January 12, 2026. Wishing you safe and secure holidays!

Read full Risky Bulletin

Listen to the latest podcast episodes

Stay Well!

summy
summy