The Breach News

US Postal Service Exposed Data of 60 Million Users for Over a Year

The United States Postal Service (USPS) has recently addressed a significant security vulnerability that compromised the personal data of over 60 million customers. This breach allowed unauthorized access to sensitive information for anyone possessing a USPS.com account, raising serious concerns about data security and user privacy. As an independent entity…

Read MoreUS Postal Service Exposed Data of 60 Million Users for Over a Year

Russian Ring Exploits Ex-Immigrant Data for Fraudulent ID Sales

Finance & Banking, Fraud Management & Cybercrime, Fraud Risk Management Telegram-Driven Marketplace Exploits US Gaps in Tracking Former Visa Holders Suparna Goswami (gsuparna) • December 11, 2025 David Maimon, head of fraud insights at SentiLink, and professor at Georgia State University A Russian-operated darknet marketplace is taking advantage of significant…

Read MoreRussian Ring Exploits Ex-Immigrant Data for Fraudulent ID Sales

TriZetto Provider Solutions Alerts Healthcare Clients to Data Breach – The HIPAA Journal

Data Breach Alert: TriZetto Provider Solutions Informs Healthcare Clients TriZetto Provider Solutions recently disclosed a data breach affecting its healthcare provider clients, bringing to light the ongoing risks associated with cybersecurity vulnerabilities in the healthcare sector. This incident underscores the pressing issues that businesses face in safeguarding sensitive information in…

Read MoreTriZetto Provider Solutions Alerts Healthcare Clients to Data Breach – The HIPAA Journal

Critical Cisco Vulnerability Allows Remote Takeover of Unified Communication Systems

Cisco Addresses Critical Security Vulnerability in Unified Communications Products Cisco has recently issued important patches to mitigate a serious security vulnerability affecting multiple products within its Unified Communications and Contact Center Solutions range. This flaw, identified as CVE-2024-20253, is rated critically high with a CVSS score of 9.9. It poses…

Read MoreCritical Cisco Vulnerability Allows Remote Takeover of Unified Communication Systems

New ModPipe POS Malware Alert: Targeting Restaurants and Hotels

Cybersecurity researchers have recently unveiled a new modular backdoor malware named “ModPipe,” targeting Oracle’s point-of-sale (POS) restaurant management software with the intent of stealing sensitive payment information. The discovery highlights a growing trend in cyber threats towards payment processing systems where attackers exploit vulnerabilities to access critical data. ModPipe specifically…

Read MoreNew ModPipe POS Malware Alert: Targeting Restaurants and Hotels

Uber Hit with $1.1 Million Fine by UK and Dutch Regulators for 2016 Data Breach

In a significant enforcement action, British and Dutch data protection regulators have collectively fined Uber approximately $1.17 million for its failure to adequately safeguard customer data during a 2016 cyber incident that compromised the personal information of millions of users. The penalties levied stem from a breach that exposed the…

Read MoreUber Hit with $1.1 Million Fine by UK and Dutch Regulators for 2016 Data Breach

Harness Secures $240M Funding at $5.5B Valuation to Propel DevSecOps Innovation

Advanced SOC Operations / CSOC, API Security, Next-Generation Technologies & Secure Development Goldman Sachs-Led Round Fuels Harness’s Expansion into AI Security and Automation Michael Novinson (MichaelNovinson) • December 11, 2025 Harness, a San Francisco-based AI software delivery platform, has secured $240 million in funding aimed at enhancing its capabilities in…

Read MoreHarness Secures $240M Funding at $5.5B Valuation to Propel DevSecOps Innovation

India Becomes the Top Cyber Target in APAC

Cyble Inc. has published its APAC Threat Landscape Report for 2025, indicating that India remains a primary target for cyberattacks within the region. The report emphasizes a disturbing increase in ransomware incidents, data breaches, and illicit cyber activities aimed specifically at Indian organizations. Throughout the APAC region, Cyble recorded a…

Read MoreIndia Becomes the Top Cyber Target in APAC

Chinese APT Hackers Target Government Entities in Southeast Asia

Title: Targeted Cyber Espionage Operation Linked to Chinese APT Group Uncovered in Southeast Asia Cybersecurity experts have recently disclosed a sophisticated and targeted espionage campaign aimed at government sector entities in Southeast Asia, believed to have been orchestrated by a Chinese Advanced Persistent Threat (APT) group since at least 2018.…

Read MoreChinese APT Hackers Target Government Entities in Southeast Asia