React Servers are vulnerable if patches are not installed. The “React2Shell” attacks started in 2025 but are still occurring.
AI Deepfake sophistication of executives and owners is exploding. The bad actors clone executives and or employees’ voices in real time on calls and video conferences. They then use these AI fakes to ask other managers and directors to make urgent disbursements, execute NDA’s, or M&A activity even through nonstandard channels like encrypted apps or personal email accounts they may have been hacked. You must train staff to recognize this is happening and require an out-of-band verification for big decisions or high value payments
Iran is linked to cyber activity and is focused on gaining covert access rather than large scale destructive operations or ransomware attacks. They are focusing on credential theft to get control of workspaces, email accounts, bank accounts, etc., but so far their focus has been on governments, telecommunications, critical infrastructure, energy, transportation, and education. Continue to train staff in Phishing defense, IT must ensure Patch management, limit an exposed VPN, and make sure all data systems and servers are backed up offsite daily.
Be careful when installing Add Ins like OpenClaw Agentic Agents or other AI Apps that can read text, calls, and help make other tasks more efficient. The AI tools have full access to your data so if hackers gain access to the product, they will have access to all your data and compromise your systems thru malicious skills, and full scale breach or ransomware attacks. Staff should not allowed to download these AI agents without permission. It must be a trusted product and new is not always best.
New Cyber tools on the horizon. Anthropic’s newly unveiled Claude Mythos advance AI product is designed for cybersecurity analysis. According to Anthropic, Mythos has discovered thousands of high severity zero day vulnerabilities across major operating systems and web browsers. The product will only be available to approved or specific cybersecurity firms initally. There are third party vendors like Arctic Wolf that can provide cybersecurity monitoring and vulnerability testing year-round.
Stay vigilant but also purchase standalone Cyber Insurance to cover the costs associated with attacks and business interruption. Contact us for more information or a quote.
