The Breach News

CISA Alert: Akira Ransomware Targeting Cisco ASA/FTD Vulnerability

On Thursday, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) included a recently patched security vulnerability affecting Cisco’s Adaptive Security Appliance (ASA) and Firepower Threat Defense (FTD) software in its Known Exploited Vulnerabilities (KEV) catalog. This update comes in response to indications that the flaw is being actively exploited in…

Read MoreCISA Alert: Akira Ransomware Targeting Cisco ASA/FTD Vulnerability

Hackers Behind SolarWinds Attack Also Breached U.S. Justice Department Email Server

The U.S. Department of Justice (DoJ) has confirmed that its internal network was compromised amid the extensive SolarWinds supply chain attack. This acknowledgment positions the DoJ as the latest government entity to confront the ramifications of this alarming breach. According to DoJ spokesperson Marc Raimondi, the Office of the Chief…

Read MoreHackers Behind SolarWinds Attack Also Breached U.S. Justice Department Email Server

‘Signalgate’ Inspector General Report Recommends Only One Change to Prevent Future Debacles

Inspector General Report Raises Concerns Over Sensitive Messaging Practices by Secretary of Defense A recently released Inspector General report highlights serious cybersecurity concerns involving Secretary of Defense Pete Hegseth, indicating potential risks posed to U.S. troops and military operations. The report, shared with Congress earlier this week, reveals that Hegseth…

Read More‘Signalgate’ Inspector General Report Recommends Only One Change to Prevent Future Debacles

New York, Canada, and Ireland Initiate Investigations into Facebook Privacy Violations

Recently, Facebook has faced increasing scrutiny as multiple governmental authorities launch investigations into its handling of user data. The company has already earmarked $5 billion to address potential fines stemming from a Federal Trade Commission (FTC) inquiry regarding privacy violations. This amount appears to be merely the initial sum Facebook…

Read MoreNew York, Canada, and Ireland Initiate Investigations into Facebook Privacy Violations

UK Government Weighs Revision of Computer Misuse Act

Geo Focus: The United Kingdom, Geo-Specific, Legislation Security Minister Dan Jarvis Advocates for Protection of Security Researchers Akshaya Asokan (asokan_akshaya) • December 4, 2025 Minister for Security’s official portrait, July 2024. (Image: UK Home Office/CC BY 2.0) The U.K. government is contemplating revisions to its Computer Misuse Act, originally enacted…

Read MoreUK Government Weighs Revision of Computer Misuse Act

Attackers Leverage ScreenConnect and Microsoft 365 for Security Breaches

Barracuda’s latest cybersecurity report highlights a concerning rise in the unauthorized use of trusted tools, notably ScreenConnect, for remote access, coupled with a notable increase in Microsoft 365 login attempts from unfamiliar locations. The findings suggest that attackers are leveraging popular legitimate software and stolen credentials to infiltrate business networks…

Read MoreAttackers Leverage ScreenConnect and Microsoft 365 for Security Breaches

Russian-Linked Hackers Exploit Roundcube Vulnerabilities to Target Over 80 Organizations

A recent report by Recorded Future has revealed a sophisticated cyber espionage campaign attributed to threat actors with ties to Belarus and Russia. This operation has reportedly taken advantage of cross-site scripting (XSS) vulnerabilities in Roundcube webmail servers, targeting over 80 organizations predominantly based in Georgia, Poland, and Ukraine. The…

Read MoreRussian-Linked Hackers Exploit Roundcube Vulnerabilities to Target Over 80 Organizations

Warning: North Korean Hackers Launching Attacks on South Korea Using RokRat Trojan

A recent cybersecurity incident has revealed a North Korean hacking group employing the RokRat Trojan in a targeted spear-phishing campaign aimed at the South Korean government. This attack has been attributed to the advanced persistent threat group known as APT37, which is also referred to as Starcruft, Ricochet Chollima, or…

Read More

Warning: North Korean Hackers Launching Attacks on South Korea Using RokRat Trojan

Qilin Ransomware Allegedly Breaches Church of Scientology’s Data Security

Recently, Qilin ransomware has claimed responsibility for a breach involving the Church of Scientology, asserting their actions by posting 22 screenshots on their dark web leak site. While they have not specified the extent of the data compromised or the methods employed to achieve the breach, the implications are significant.…

Read MoreQilin Ransomware Allegedly Breaches Church of Scientology’s Data Security