The Breach News

Hackers Exploit Zero-Day Vulnerability in cnPilot Routers to Deploy AIRASHI DDoS Botnet

Cybersecurity experts have reported that attackers are taking advantage of an undisclosed zero-day vulnerability in Cambium Networks cnPilot routers to deploy a new variant of the AISURU botnet, known as AIRASHI. This botnet is primarily orchestrating distributed denial-of-service (DDoS) attacks, which have reportedly been ongoing since June 2024. Research conducted…

Read MoreHackers Exploit Zero-Day Vulnerability in cnPilot Routers to Deploy AIRASHI DDoS Botnet

Hackers Exploit Mitel Devices to Enhance DDoS Attacks by 4 Billion Percent

Recent cybersecurity research has unveiled the utilization of a potent reflection/amplification attack method by malicious actors to execute prolonged distributed denial-of-service (DDoS) attacks, sustaining these assaults for as long as 14 hours and achieving an unprecedented amplification ratio of 4,294,967,296 to 1. This attack vector, known as TP240PhoneHome (CVE-2022-26143), has…

Read MoreHackers Exploit Mitel Devices to Enhance DDoS Attacks by 4 Billion Percent

Hackers Target Job Boards, Compromising Millions of Resumes and Personal Information

A new cybersecurity threat actor, identified as ResumeLooters, has emerged, targeting employment agencies and retail companies predominantly in the Asia-Pacific (APAC) region since early 2023. This group aims to compromise sensitive data, focusing on job search platforms and the unauthorized collection of resumes. According to research from Group-IB, a cybersecurity…

Read MoreHackers Target Job Boards, Compromising Millions of Resumes and Personal Information

Cisco Addresses Severe Privilege Escalation Vulnerability in Meeting Management (CVSS 9.9)

Cisco has announced essential software updates in response to a severe security vulnerability affecting its Meeting Management platform. This flaw potentially enables a remote, authenticated attacker to escalate privileges to an administrator level on vulnerable systems. The vulnerability, designated as CVE-2025-20156, has garnered a CVSS score of 9.9 out of…

Read MoreCisco Addresses Severe Privilege Escalation Vulnerability in Meeting Management (CVSS 9.9)

Emotet Botnet Makes a Comeback, Infecting Over 100,000 Computers

The Emotet botnet, notorious for its insidious operations, resurged in November 2021 after a significant period of inactivity, accumulating over 100,000 compromised hosts. The botnet’s activities have demonstrated a steady increase, indicating a troubling return to form for this malware. According to researchers from Lumen’s Black Lotus Labs, since its…

Read MoreEmotet Botnet Makes a Comeback, Infecting Over 100,000 Computers

Midnight Blizzard and Cloudflare-Atlassian Cybersecurity Incidents: Key Insights You Need to Know

The recent cybersecurity incidents involving Midnight Blizzard and Cloudflare-Atlassian have brought significant attention to the vulnerabilities affecting major Software as a Service (SaaS) platforms. These breaching events reveal the considerable risks associated with SaaS environments, where safeguarding sensitive data and application integrity poses ongoing challenges. The incidents highlight common attack…

Read MoreMidnight Blizzard and Cloudflare-Atlassian Cybersecurity Incidents: Key Insights You Need to Know