The Breach News

Exploitation of WordPress Hunk Companion Plugin Vulnerability Leads to Stealthy Installation of Insecure Plugins

A critical vulnerability in the WordPress Hunk Companion plugin has been identified, allowing malicious actors to install additional vulnerable plugins and create pathways for attacks. This flaw, designated as CVE-2024-11972 with a CVSS score of 9.8, impacts all versions preceding 1.9.0 and affects over 10,000 active installations, heightening security risks…

Read MoreExploitation of WordPress Hunk Companion Plugin Vulnerability Leads to Stealthy Installation of Insecure Plugins

34 Cybercriminals Busted in Spain for Multi-Million Dollar Online Fraud

In a recent crackdown, Spanish authorities have arrested 34 individuals linked to a sophisticated cybercrime syndicate responsible for orchestrating a range of online scams, resulting in approximately €3 million (around $3.2 million) in illicit profits. This operation highlights the increasing threat posed by organized cybercriminal networks targeting unsuspecting individuals and…

Read More34 Cybercriminals Busted in Spain for Multi-Million Dollar Online Fraud

The Surge in Airline Data Breaches: Understanding the Reasons Behind It

Cybercriminals have increasingly turned their attention to airlines, drawn by the vast amounts of personal data these companies collect. Among the most sought-after information are passports and government identification, which pose a significant risk for long-term identity theft. According to Incogni, a company specializing in data privacy and removal, leaks…

Read MoreThe Surge in Airline Data Breaches: Understanding the Reasons Behind It

Researchers Discover Symlink Vulnerability Facilitating TCC Bypass in iOS and macOS

A critical security vulnerability affecting Apple’s iOS and macOS has recently been reported and subsequently patched. This flaw allowed potential exploitation of the Transparency, Consent, and Control (TCC) framework, posing a significant risk of unauthorized access to sensitive user data. Designated as CVE-2024-44131 with a CVSS score of 5.3, the…

Read MoreResearchers Discover Symlink Vulnerability Facilitating TCC Bypass in iOS and macOS

New BLISTER Malware Leverages Code-Signing Certificates to Bypass Detection

Recent research has unveiled an advanced malware campaign characterized by its use of legitimate code signing certificates to elude cybersecurity measures. This stealthy approach aims to deploy notorious payloads such as Cobalt Strike and BitRAT across compromised systems. The loader, identified as “Blister” by Elastic Security experts, exhibits an alarming…

Read MoreNew BLISTER Malware Leverages Code-Signing Certificates to Bypass Detection

SimonMed Imaging Data Breach Exposes Sensitive Information of Over 1.2 Million Patients – CPO Magazine

Sensitive Patient Information Compromised in SimonMed Imaging Data Breach In a recent cybersecurity incident, SimonMed Imaging has reported a significant data breach affecting the personal information of over 1.2 million individuals. The breach necessitates urgent attention from healthcare providers and business owners alike, as it underscores the vulnerabilities prevalent in…

Read MoreSimonMed Imaging Data Breach Exposes Sensitive Information of Over 1.2 Million Patients – CPO Magazine