The Breach News

OT Operators Advised to Map Networks to Avoid Significant Blind Spots

Critical Infrastructure Security, Governance & Risk Management, Operational Technology (OT) Global Cybersecurity Agencies Urge Comprehensive OT Inventories to Mitigate Threats Chris Riotta (@chrisriotta) • September 29, 2025 Image: Shutterstock In a proactive measure, global cybersecurity agencies are advising critical infrastructure operators to take stock of their operational technology environments. While…

Read MoreOT Operators Advised to Map Networks to Avoid Significant Blind Spots

Researchers Warn: Tech-Savvy Stalkers Can Exploit Tile Tracking Tags

Concerns Emerge Over Privacy Risks Linked to Tile Trackers Tile trackers, employed by over 88 million users globally to locate items such as keys and pets, are facing scrutiny following revelations by researchers from the Georgia Institute of Technology. According to a study, design vulnerabilities within Tile’s tracking technology may…

Read MoreResearchers Warn: Tech-Savvy Stalkers Can Exploit Tile Tracking Tags

SEC Takes Action Against Four Companies for Misleading Information on SolarWinds Cyber Attack

In a significant move, the U.S. Securities and Exchange Commission (SEC) has filed charges against four companies—Avaya, Check Point, Mimecast, and Unisys—for failing to provide accurate disclosures about a cyberattack that originated from the SolarWinds breach in 2020. This extensive cyber incident raised alarms across the technology sector and has…

Read MoreSEC Takes Action Against Four Companies for Misleading Information on SolarWinds Cyber Attack

Cisco Addresses Critical ISE Vulnerabilities Allowing Root Command Execution and Privilege Escalation

Cisco Addresses Critical Vulnerabilities in Identity Services Engine Cisco has announced crucial updates to its Identity Services Engine (ISE) software to remedy two significant security vulnerabilities that could empower remote attackers to execute arbitrary commands and gain elevated privileges on targeted devices. These vulnerabilities, if exploited, pose substantial risks to…

Read MoreCisco Addresses Critical ISE Vulnerabilities Allowing Root Command Execution and Privilege Escalation

U.S. Proposes $1 Million Penalty for Colonial Pipeline Over Safety Violations Following Cyberattack

The U.S. Department of Transportation’s Pipeline and Hazardous Materials Safety Administration (PHMSA) has issued a proposed civil penalty nearing $1 million against Colonial Pipeline due to violations of federal safety regulations. This action follows the extensive repercussions of a ransomware attack featured last year that severely disrupted the company’s operations.…

Read MoreU.S. Proposes $1 Million Penalty for Colonial Pipeline Over Safety Violations Following Cyberattack

UK Government Supports Jaguar Land Rover with £1.5 Billion Loan

Cybercrime, Fraud Management & Cybercrime, Geo Focus: The United Kingdom Carmaker Anticipates Phased Restart of Production Akshaya Asokan ( asokan_akshaya) • September 29, 2025 A Jaguar Land Rover signage board outside of the manufacturer’s engine factory in Wolverhampton, United Kingdom. (Image: Richard OD/Shutterstock) The British government is set to guarantee…

Read MoreUK Government Supports Jaguar Land Rover with £1.5 Billion Loan

Harrods Data Breach: 430,000 Customer Records Compromised in Third-Party Attack

Luxury department store Harrods has confirmed a significant data breach, revealing that cybercriminals may have compromised up to 430,000 customer records following an incident involving a third-party IT provider. The retailer has received communications from the “threat actor” but has chosen not to engage, implying a possible ransom demand. This…

Read MoreHarrods Data Breach: 430,000 Customer Records Compromised in Third-Party Attack

Canadian Suspect Arrested in Connection with Snowflake Customer Breach and Extortion Attempts

Canadian law enforcement has apprehended Alexander “Connor” Moucka, a suspect in a series of high-profile cyberattacks linked to the breach of the cloud data warehousing platform Snowflake. The arrest, executed on October 30, 2024, was made under a provisional warrant following a request from U.S. authorities. This incident was initially…

Read MoreCanadian Suspect Arrested in Connection with Snowflake Customer Breach and Extortion Attempts