MSP cybersecurity news digest, October 21, 2025
Here is the MSP cybersecurity news digest for October 21, 2025 from the Acronis Threat Research Unit (TRU).













Threat Research Unit is a dedicated Acronis unit composed of experienced cybersecurity experts. Our team includes cross-functional experts in cybersecurity, AI, and threat intelligence. We are empowering IT teams with intelligence-driven cyberthreat research and reporting.
Here is the MSP cybersecurity news digest for October 21, 2025 from the Acronis Threat Research Unit (TRU).
Urgent WSUS RCE flaw actively exploited! Plus: Fake LastPass inheritance emails steal vaults, Iran's MuddyWater APT targets government entities and a new RedTiger Discord infostealer.
The Acronis Cyberthreats Update covers current cyberthreat activity and trends, as observed by Acronis Threat Research Unit (TRU) and Acronis sensors. Figures presented here were gathered in September 2025 and reflect threats that Acronis detected, as well as news stories from the public domain.
Medusa exploits GoAnywhere MFT, Discord data leaks via Zendesk, plus Vampire Bot and Qilin ransomware attacks. Get the critical MSP cybersecurity news and defense actions now.
Harrods breach tied to supplier compromise leaks 430,000 records, MatrixPDF toolkit weaponizes PDFs for phishing and malware delivery, and more. Here are the latest threats to MSP security.
Here is the Acronis Threat Research Unit (TRU) MSP cybersecurity news digest, September 29, 2025
Here is the weekly digest with news from Acronis TRU for the week of September 23, 2025
The Acronis Cyberthreats Update covers current cyberthreat activity and trends, as observed by Acronis Threat Research Unit (TRU) and Acronis sensors. Figures presented here were gathered in August 2025 and reflect threats that Acronis detected, as well as news stories from the public domain.
Stay informed on the latest cyber threats: The Orange Belgium data breach affects 850,000 customers. The Warlock ransomware gang targets UK telecom Colt Technology Services, auctioning stolen documents. A Miljödata attack disrupts services for hundreds of Swedish municipalities. Learn about the ZipLine campaign targeting US supply chain manufacturers with MixShell Malware, and the ShadowSilk data exfiltration group.
Microsoft patches 107 vulnerabilities, including Windows Kerberos zero day, PEAR ransomware gang leaks 1.26TB of Alt Vision data, and more. Here are the latest threats to MSP security.
Clinical data stolen in cyberattack on dialysis provider DaVita, Chanel, Pandora, Google and Cisco suffer data breaches, and more. Here are the latest threats to MSP security.
Scattered Spider group disrupted, but imitators carry on, Fake OAuth apps and Tycoon phishing kit used to hijack Microsoft 365 accounts, and more. Here are the latest threats to MSP security.