**Risky Business #819**

### Venezuela Blames USA for Wiper Attack Amid Rising Cyber Threats

In the latest development in the ongoing cyber threat landscape, Venezuela's state oil company has claimed that the United States is behind a recent wiper attack on its systems. This shocking accusation comes as various sectors around the world are facing a surge in malware and ransomware attacks.

#### React2Shell Attacks Expand Widely Across Multiple Sectors

Meanwhile, cybersecurity experts have sounded the alarm over the rapid spread of React2Shell attacks across multiple industries. These sophisticated attacks exploit vulnerabilities in software applications to gain unauthorized access to sensitive systems.

#### Browser-Native ClickFix Hijacks OAuth Grants

In related news, researchers have flagged a new vulnerability in browser-native functionality that allows hackers to hijack OAuth grants. This flaw could lead to the theft of sensitive user credentials and other malicious activities.

#### New Patches Released for Critical Flaws

The tech giant, React, has issued new patches to address security concerns raised by researchers. The updated patches aim to fix multiple critical flaws in its software, reducing the risk of exploitation by malicious actors.

### NSA Leadership in Flux as Trump Administration Seeks New Candidate

As tensions rise between nations over cyber threats, the leadership at the National Security Agency (NSA) is undergoing a shake-up. The search for a new deputy director has sparked controversy, with some questioning the qualifications of the current frontrunner.

#### No. 2 at NSA Won't Get the Job Amid Deep State and Anti-Trump Ties

According to reports, the Trump administration's pick for NSA's No. 2 position will not get the job due to their perceived ties to the "deep state" and anti-Trump sentiments. This move has sparked debate over the politicization of national security positions.

#### Cyber Command Leadership Set to Change Hands

In a separate development, a senior official at Indo-Pacific Command is expected to take over as leader of Cyber Command and NSA. This leadership change comes amid growing concerns about cyber threats from nation-state actors and terrorist groups.

### DOJ Takes Action Against Russian State-Sponsored Hacking Groups

The US Department of Justice (DOJ) has announced measures to combat two Russian state-sponsored hacking groups. The move aims to disrupt the activities of these malicious actors, which have been linked to attacks on critical infrastructure and sensitive data.

#### Russia-Linked Attacks Target Meat Processing Plants and Nuclear Regulatory Entities

In a worrying trend, experts warn that Russia-linked attacks are targeting key sectors, including meat processing plants and nuclear regulatory entities. These attacks pose significant risks to national security and public safety.

### German Parliament Suffers Suspected Cyber Attack During Zelenskyy Visit

A suspected cyber attack has hit the German parliament during a visit by Ukrainian President Volodymyr Zelenskyy. The incident has raised concerns about the vulnerability of critical infrastructure to cyber threats.

#### vx-underground Reveals Compromise of Government Network

In a separate revelation, vx-underground reported that a government network had been compromised due to a simple and easily avoidable mistake.

### Other Noteworthy Developments:

* A US court has indicted a state-sponsored threat actor named Victoria Eduardovna Dubranova for her alleged involvement in cyber attacks. * The German parliament has summoned the Russian ambassador over concerns about election disinformation and a suspected cyber attack during President Zelenskyy's visit. * A Dutch water treatment facility was compromised by a Russian hacking group, highlighting the vulnerability of critical infrastructure to cyber threats.

#### Most Parked Domains Now Serving Malicious Content

According to recent research, most parked domains are now serving malicious content. This disturbing trend highlights the ease with which hackers can exploit vulnerabilities in domain registration systems.

### Cybersecurity News Roundup:

* The US government has charged a senior manager at a government contractor for his alleged involvement in a cybersecurity fraud scheme. * Microsoft is set to kill an obsolete cipher that has been a target for hackers due to its widespread use over the years. * A vulnerability in the Traefik web server has been patched after security researchers flagged additional flaws.