The Breach News

Google Researcher Unveils iOS Exploit—Potentially Paving the Way for iOS 11 Jailbreak

Significant iOS Exploit Discovered, Impacting 64-bit Devices In a recent development that has raised concerns among cybersecurity professionals, Ian Beer, a researcher from Google’s Project Zero, has publicly disclosed a critical exploit targeting nearly all 64-bit Apple devices operating on iOS 11.1.2 or earlier. This exploit enables the creation of…

Read MoreGoogle Researcher Unveils iOS Exploit—Potentially Paving the Way for iOS 11 Jailbreak

Google awards $250K for discovery of Linux vulnerability enabling guest VM escapes.

A recently identified vulnerability in the Linux kernel has raised significant concerns within the cybersecurity community, particularly for cloud service providers. Known as CVE-2026-53359, this flaw permits untrusted virtual machines (VMs) to escalate their privileges, potentially gaining root access to host systems. The security risk was discovered in KVM (Kernel-based…

Read MoreGoogle awards $250K for discovery of Linux vulnerability enabling guest VM escapes.

Court Filing Reveals Windows Device ID Aided FBI in Tracking Alleged Scattered Spider Hacker

Alleged Hacker Linked to High-Profile Jewelry Store Breach U.S. prosecutors have identified a 19-year-old Estonian-American hacker as a key player in a breach at a luxury jewelry retailer, utilizing a persistent Windows device ID to track his activities during the incident. This information emerged from a recently unsealed federal complaint…

Read MoreCourt Filing Reveals Windows Device ID Aided FBI in Tracking Alleged Scattered Spider Hacker

ROBOT Attack: The Reemergence of the 19-Year-Old Bleichenbacher Attack on Encrypted Websites

A recently re-emerged vulnerability, known as the ROBOT (Return of Bleichenbacher’s Oracle Attack), has affected the RSA implementations from at least eight vendors, including prominent names like F5, Citrix, and Cisco. This weakness, which has remained present for nearly two decades, enables man-in-the-middle attackers to gain unauthorized access to encrypted…

Read MoreROBOT Attack: The Reemergence of the 19-Year-Old Bleichenbacher Attack on Encrypted Websites

OnlyFans Models Are Unintentionally Causing Hacked Government Websites to Vanish

Title: Surge in Content Theft Impacts Adult Creators, Highlighting Cybersecurity Vulnerabilities Laura Lux, a prominent content creator known for her work in the adult entertainment industry, has spent nearly two decades sharing images and videos online. While her primary platform is now OnlyFans, she has previously engaged with Patreon and…

Read MoreOnlyFans Models Are Unintentionally Causing Hacked Government Websites to Vanish

Zero-Day Remote ‘Root’ Exploit Uncovered in AT&T DirecTV WVB Devices

Unpatched Zero-Day Exposure in AT&T DirecTV Vulnerability Poses Significant Risk Security researchers have unveiled a critical zero-day vulnerability in the firmware of the AT&T DirecTV Wireless Video Bridge (WVBR0-25), sparking concerns over the potential exploitation of millions of DirecTV users. The research has illuminated a flaw that attackers could leverage…

Read MoreZero-Day Remote ‘Root’ Exploit Uncovered in AT&T DirecTV WVB Devices

Armored Likho Targets Government and Energy Sectors Using BusySnake Stealer

Kaspersky’s latest findings reveal a newly identified threat group, dubbed Armored Likho, which is currently engaged in a sophisticated spear-phishing campaign. This operation predominantly targets government entities and energy sectors across Russia, Kazakhstan, and Brazil. Armored Likho has developed an extensive malware arsenal designed to extract credentials, confidential documents, and…

Read MoreArmored Likho Targets Government and Energy Sectors Using BusySnake Stealer

Pre-Installed Password Manager on Windows 10 Exposes Your Passwords to Hackers

Critical Vulnerability Discovered in Windows 10 Pre-installed Password Manager Recent findings reveal a significant security flaw in a commonly bundled password manager app, “Keeper,” that is shipped with some Windows 10 systems. As part of the Windows 10 Anniversary Update (Version 1607), Microsoft implemented the Content Delivery Manager, which allows…

Read MorePre-Installed Password Manager on Windows 10 Exposes Your Passwords to Hackers

Hackers Can Exploit 9 Popular AI Tools to Build Powerful Botnets

In the evolving landscape of artificial intelligence security, prompt injection has quickly emerged as a significant threat. Large language models (LLMs) struggle to differentiate between valid user commands and malicious inputs that may be embedded within emails, source code, and other third-party content. This vulnerability allows attackers to easily introduce…

Read MoreHackers Can Exploit 9 Popular AI Tools to Build Powerful Botnets