Retail & Hospitality ISAC Announces New Board Members and Officers

VIENNA, VA (11 December 2025) — The Retail & Hospitality Information Sharing and Analysis Center (RH-ISAC) today announced the results of the 2025 Board of Directors elections. Chris McFarland (Abercrombie & Fitch), Michael South (Dick’s Sporting Goods), and Lena Taylor (Crocs) were elected as new members of the board. Steve Bonilla (Wynn Las Vegas) and Brett…

Read More

High Severity Vulnerabilities in React and Next.js Allow Unauthenticated RCE

Summary A  vulnerability with a CVSS score of 10.0, tracked as CVE-2025-55182 in React and CVE-2025-66478 in Next.js, has been publicly disclosed, enabling unauthenticated remote code execution (RCE). The flaw resides in how React Server Components (RSC) decode payloads sent to Server Function endpoints, allowing attackers to execute arbitrary JavaScript on the server via specially crafted HTTP requests. Sector Impact…

Read More

Retail & Hospitality ISAC Announces Winners of the Inaugural EMEA Sharing & Collaboration Challenge

VIENNA, VA (14 November 2025) – The Retail & Hospitality Information Sharing and Analysis Center (RH-ISAC) announced the winners of the first-ever EMEA Sharing and Collaboration Challenge during the organization’s CISO Forum, held in Amsterdam on November 11, 2025. The awards recognize outstanding companies and individuals who have demonstrated exceptional dedication to RH-ISAC’s mission of…

Read More

DDoS Trends, Metrics, and Landscape for Retail & Hospitality

Retail and hospitality organizations are facing a surge in distributed denial-of-service (DDoS) attacks. As adversaries adopt new tools, leverage APIs, and exploit transactional endpoints, layered defenses and edge-based mitigation have become critical to maintaining uptime and customer trust through the peak holiday season. What We’re Seeing In the past year, DDoS activity targeting retail and…

Read More

Cybercriminals Exploit RMM Tools to Infiltrate Shipping and Logistics Networks

Summary A financially motivated threat cluster has been actively targeting the freight and logistics industry since at least June 2025 in a cyber-enabled cargo theft campaign, according to a new report from Proofpoint. The primary goal of the campaign is to gain remote access to logistics networks to steal high-value physical goods, mainly food and beverage…

Read More

RH-ISAC Releases 2025 Holiday Season Cyber Threat Trends Report

VIENNA, VA (November 3, 2025) – The Retail & Hospitality Information Sharing and Analysis Center (RH-ISAC) today released its 2025 Holiday Season Cyber Threat Trends report, highlighting a sharp rise in fraud and automated bot attacks expected to align with peak seasonal shopping demand across the retail, hospitality, and travel sectors. The report analyzes threat…

Read More

F5 BIG-IP Source Code Leak Tied to UNC5221 Utilizing BRICKSTORM Backdoor

Summary The China-nexus threat cluster known as UNC5221 is actively exploiting F5 BIG-IP appliances following a confirmed breach of F5’s internal network that resulted in the theft of BIG-IP source code and vulnerability data, according to a new report from Resecurity. UNC5221 utilizes a custom-built, highly sophisticated toolkit centered on the BRICKSTORM backdoor to exploit F5 BIG-IP devices….

Read More

F5 States Threat Actors Accessed Undisclosed BIG-IP Flaws and Source Code, Provides Mitigations

Summary Cybersecurity firm F5 publicly disclosed a breach by an unnamed nation-state actor who gained long-term access to the company’s product development environment, including the engineering platforms for its flagship BIG-IP product. The attackers exfiltrated a portion of the BIG-IP source code, information about undisclosed security vulnerabilities, and configuration/implementation details for a limited number of customers….

Read More

EvilAI Malware Impersonating AI Tools to Target Manufacturing & Retail and Hospitality Organizations

Summary A highly capable threat campaign, codenamed EvilAI by Trend Micro, is using seemingly legitimate, digitally signed AI-enhanced productivity software, such as PDF editors, to secretly deliver various malware strains globally. These applications, which appear functional, serve as initial access conduits to perform reconnaissance, exfiltrate browser data, and prepare systems for secondary payloads. The campaign has…

Read More

RH-ISAC Supports Launch of National Strategy to Prevent Scams

Fraud and scams are no longer isolated incidents—they’re a national crisis. Every day, criminals steal an estimated $430 million from Americans, exploiting digital platforms, financial systems, and communication networks. These scams fund transnational criminal organizations and erode trust in our economy and institutions. To address this growing threat, the Aspen Institute Financial Security Program has released the proposed National Strategy to…

Read More