The Breach News

Urgent: CISA Issues Warning on Ongoing ‘Roundcube’ Email Attacks – Update Your Patches Immediately

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) reported on Monday the addition of a significant security vulnerability pertaining to Roundcube email software to its Known Exploited Vulnerabilities (KEV) catalog. This extension is based on confirmed instances of active exploitation. Identified as CVE-2023-43770 with a CVSS score of 6.1, the…

Read MoreUrgent: CISA Issues Warning on Ongoing ‘Roundcube’ Email Attacks – Update Your Patches Immediately

AutoHotkey Password Stealer Targeting US and Canadian Bank Users

Recent cybersecurity research has unveiled a sophisticated credential-stealing malware, implemented using AutoHotkey (AHK), targeting financial institution clients across the US and Canada. This campaign, ongoing since early 2020, emphasizes the alarming trend of cybercriminals employing customized tools for data theft. Among the victims are customers of several prominent banks, including…

Read MoreAutoHotkey Password Stealer Targeting US and Canadian Bank Users

Introducing an Anonymous Phone Carrier That Only Requires Your Zip Code for Signup

Emerging Privacy Solutions in Telecommunications Raise Questions About Cybersecurity In the evolving landscape of telecommunications, a new venture named Phreeli is gaining attention for its promise of enhanced privacy for users. Wilcox, an advocate for consumer privacy, reflects on his long-standing efforts to maintain anonymity in an age of data…

Read MoreIntroducing an Anonymous Phone Carrier That Only Requires Your Zip Code for Signup

Citrix Data Breach: Iranian Hackers Exfiltrate 6TB of Confidential Information

Massive Data Breach Exposed at Citrix, Targeting U.S. Government and Corporate Networks In a concerning revelation last weekend, Citrix, a prominent provider of enterprise software that serves the U.S. military, the FBI, and various governmental agencies, announced a significant data breach of its internal network. The intrusion, attributed to “international…

Read MoreCitrix Data Breach: Iranian Hackers Exfiltrate 6TB of Confidential Information

Live Webinar | Addressing Emerging AI Security Challenges: A Cloud-Centric Approach with Accenture and Cloudflare

Amit Chaudhry Takes Charge at Cloudflare Leading Innovation in Product and Solutions Marketing Amit Chaudhry has recently assumed the role of Product and Solutions Marketing Leader at Cloudflare, bringing over 25 years of extensive experience in enterprise AI and product marketing. His career has spanned key positions at industry giants…

Read MoreLive Webinar | Addressing Emerging AI Security Challenges: A Cloud-Centric Approach with Accenture and Cloudflare

Final Countdown: Claim Your Share of AT&T’s $177 Million Data Breach Settlement of Up to $7,500 in Less Than 2 Weeks – PCMag UK

Title: Urgent Action Required: Claim Your Share of AT&T’s $177 Million Data Breach Settlement Before Time Runs Out In a recent significant development, AT&T has announced a substantial settlement of $177 million related to a major data breach that exposed sensitive customer information. Business owners and individuals affected by this…

Read MoreFinal Countdown: Claim Your Share of AT&T’s $177 Million Data Breach Settlement of Up to $7,500 in Less Than 2 Weeks – PCMag UK

Microsoft Reports SolarWinds Hackers Gained Access to Certain Source Code

Microsoft Confirms Source Code Access in SolarWinds Attack On Thursday, Microsoft disclosed that threat actors linked to the SolarWinds supply chain attack successfully accessed a limited number of internal accounts within the company. This unauthorized access allowed these sophisticated, nation-state actors to escalate their reach inside Microsoft’s internal network, although…

Read MoreMicrosoft Reports SolarWinds Hackers Gained Access to Certain Source Code

Round 4: Hacker Lists 26 Million New Accounts for Sale on Dark Web

A hacker operating under the alias Gnosticplayers has surfaced once again, now offering a new trove of stolen data. This latest release includes records from six previously unreported websites, adding to his extensive inventory of compromised information that, to date, involves details of approximately 890 million online accounts harvested from…

Read MoreRound 4: Hacker Lists 26 Million New Accounts for Sale on Dark Web