
The Cyber Bulletin:
April 2025
Brought to you by DP Solutions
Welcome to DP Solutions' Cyber Bulletin!
This monthly cyber recap, curated by our Cybersecurity Team, lists recent significant cybersecurity events, news, and breaches to keep you in-the-know on current cyber-incidents and provide recommendations.
These articles are meant to be informative, and we encourage everyone to do their own research.
Scroll down to read this month's cyber bulletin! ↓
Subscribe to the Cyber Bulletin
WhatsApp flaw can let attackers run malicious code on Windows PCs
A vulnerability in WhatsApp would allow hackers to send malicious code to Windows devices. Meta has since fixed the spoofing issue in the latest WhatsApp version.
Police detains Smokeloader malware customers, seizes servers
Law enforcement is continuing to locate customers of major malware loader, Smokeloader, using servers seized in 2024 during Operation Endgame. Customers participated in a variety of cybercriminal activities and now face consequences such as house searches and arrests.
Phishing platform 'Lucid' behind wave of iOS, Android SMS attacks
Lucid, a phishing-as-a-service platform, alleges to send 100,000 smishing messages to Apple and Android devices daily, often spoofing shipping notifications, tax alerts, or tolls payments. If you receive a message, do not click on the link; log in to the service platform directly to check the legitimacy of the bill instead.
U.S. seized $8.2 million in crypto linked to 'Romance Baiting' scams
Threat actors manipulated victims into investing money into fraudulent investment platforms that falsely displayed substantial returns. Using blockchain intelligence, the FBI was able to trace funds, seize the assets, and identify victims.
E-ZPass toll payment texts return in massive phishing wave
There has been an increase in smishing messages impersonating toll agencies in order to steal personal information and credit card numbers. If you receive a message like this, do not click the link and block and report the number. Always navigate to a service platform's site directly to check your account.