Search Results

data breach
US Aviation System Breach Zoho Fortinet Vulnerability Security Flaw Iranian Hackers

US Aviation org breached through Zoho and Fortinet vulnerabilities

An Iranian state-sponsored threat group have allegedly breached a US aeronautical organisation by exploiting the Zoho and Fortinet vulnerabilities. A joint advisory issued by CISA, FBI, and USCYBERCOM revealed these new hack details. However, these law enforcement agencies have yet to identify the specific operators of the new data breach campaign.   Iran-linked hackers are...
Continue Reading
Hackers Website Breach AI Sourcegraph US Leaked Token Admin Access

Hackers breached Sourcegraph using leaked admin access token

Sourcegraph, an artificial intelligence coding platform, confirmed that unauthorised individuals had breached their website using a leaked site-admin access token. Based on reports, the threat actors utilised the leaked token late last month to generate a new site-admin account and log into the admin dashboard of the firm’s website called Sourcegraph.com. The affected entity’s security...
Continue Reading
Turla Hacker Group Backdoor System Breach Ukraine Systems

The Turla group uses new backdoor to breach Ukrainian systems

The Russian-backed threat group, Turla, targets the Ukrainian and Eastern European defence sector with a new backdoor. Based on reports, the attackers used a dot net-based backdoor dubbed DeliveryCheck that could deliver next-stage payloads. CERT-UA coordinates with other threat intelligence teams to analyse the newly discovered campaign. Their investigations also led to the attribution of...
Continue Reading
SiegedSec Threat Group Stolen Data Critical Data COI Nato

SiegedSec group allegedly stole critical data from COI

The SiegedSec cybercriminal group has allegedly hacked the Communities of Interest Cooperation Portal and stolen information. The COI Cooperation Portal is where military alliances share information and collaborate to support NATO-affiliated organisations and nations. However, the earlier-mentioned hacking group claimed on Telegram that they had successfully stolen hundreds of documents from the NATO-supporting portal. A...
Continue Reading
Royal Ransomware Data Breach Illinois US Hospital Patient Data

Royal ransomware breached an Illinois-based hospital

An Illinois-based healthcare institution has notified individuals that they have suffered a data breach incident after the Royal ransomware group added it to its list of victims. Based on reports, the attack could impact nearly 250,000 people and their personal information. The affected entity is Morris Hospital & Healthcare Centers. It revealed that they had...
Continue Reading
DuoLingo User Data Dark Web Exposed Info Hacking Forum Scraped Data

Millions of DuoLingo users’ data exposed on a hacking forum

A recent incident has leaked the scraped data of more than 2.5 million DuoLingo users on a hacking forum. The event has enabled numerous threat actors to perform targeted phishing campaigns using the leaked information. DuoLingo is one of the most widely used language learning websites globally, with more than 74 million monthly users. However,...
Continue Reading
ALPHV BlackCat Ransomware Hacker Group Data Breach Dark Web Japan Seiko

ALPHV ransomware group breached Japanese firm Seiko

The ALPHV ransomware group (aka BlackCat) has included Seiko on its victim list in its extortion websites. The group claimed responsibility for the disclosed hack of the Japanese firm this month. Seiko is one of the world’s biggest watch manufacturers, home to approximately 12,000 employees. Its annual revenue has exceeded $1.6 billion.   Seiko disclosed...
Continue Reading
Vulnerability Security Flaw Code Data Breach Discord Social Media Fraud Prevention

Vulnerability in code resulted in a breach on Discord.io

A widely used communication platform Discord.io recently experienced a data breach, resulting in a leak of content from their database to unknown actors. The platform’s operators swiftly investigated the breach, forcing them to shut down all services and operations. Initial findings from the ongoing investigation point towards a vulnerability in the website’s code as the...
Continue Reading
NinjaForms Wordpress Plugin Vulnerability Security Flaw Hackers Data Stealing

Ninja Forms plugin vulnerability enables hackers to steal data

Ninja Forms, a widely utilised WordPress plugin, contains multiple bugs that could allow an attacker to achieve escalated privileges and harvest user information. The researchers who identified the flaws already notified the plugin developers last month. The affected version of the plugin is from version 3.6.25 and older. Fortunately, the developers immediately released patch 3.6.25...
Continue Reading
Storm-0558 APT Hacker Group Chinese Hackers Stolen Keys System Breach Azure AD Microsoft Cloud Server

Storm-0558 APT leveraged stolen keys to breach Azure AD

Tech giant Microsoft recently encountered a validation error within its source code, triggering a security breach within Azure Active Directory (Azure AD). This vulnerability became a gateway for the alleged China-based threat group Storm-0558, allowing them to exploit an inactive Microsoft account (MSA) consumer signing key, leading to compromised security for a substantial number of...
Continue Reading
1 24 25 26 27 28 94