The Breach News

Cyber Insurers Provide Strong Guidance, But Take-Up Rates Need Improvement

As cybersecurity threats become increasingly sophisticated, businesses are increasingly turning to insurers for effective strategies on proactive protection and prevention. Recent findings from Traveler’s latest Risk Index reveal that an impressive 86% of business leaders express confidence in the cybersecurity guidance offered by insurance carriers, surpassing their trust in third-party…

Read MoreCyber Insurers Provide Strong Guidance, But Take-Up Rates Need Improvement

CISA Alerts on Craft CMS Vulnerability CVE-2025-23209 Amid Ongoing Attacks

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has escalated attention to a critical vulnerability affecting the Craft content management system (CMS) by incorporating it into its Known Exploited Vulnerabilities (KEV) catalog. This action is prompted by confirmed instances of active exploitation associated with this flaw. Identified as CVE-2025-23209, this…

Read MoreCISA Alerts on Craft CMS Vulnerability CVE-2025-23209 Amid Ongoing Attacks

Vulnerabilities in Emergency Alert System Could Allow Attackers to Send Fake Messages

The U.S. Department of Homeland Security (DHS) has issued an urgent alert regarding significant security flaws found in Emergency Alert System (EAS) encoder and decoder devices. Such vulnerabilities, if not addressed, may allow malicious entities to generate fake emergency alerts across various broadcasting mediums, including television, radio, and cable networks.…

Read MoreVulnerabilities in Emergency Alert System Could Allow Attackers to Send Fake Messages

Feds Link ‘Scattered Spider’ Pair to $115 Million in Ransom Payments – Krebs on Security

In a significant legal development, U.S. prosecutors recently filed criminal charges against Thalha Jubair, a 19-year-old from the U.K., in connection with his alleged involvement as a central figure in Scattered Spider, a notorious cybercrime organization implicated in extortion schemes totaling over $115 million. These accusations, which emerged as Jubair…

Read MoreFeds Link ‘Scattered Spider’ Pair to $115 Million in Ransom Payments – Krebs on Security

Supermicro Server Motherboards Vulnerable to Permanent Malware Infections

Critical Vulnerabilities Found in Supermicro Motherboards Expose Servers to Exploits Recent security findings have revealed significant vulnerabilities in servers powered by motherboards sold by Supermicro. These high-severity flaws enable attackers to remotely install malicious firmware that operates prior to the system’s operating system, resulting in infections that are challenging to…

Read MoreSupermicro Server Motherboards Vulnerable to Permanent Malware Infections

Aikido Security Acquires Allseek and Haicker: A Major Move in Security Systems News

Aikido Security Expands Reach with Acquisition of Allseek and Haicker Aikido Security has recently announced its acquisition of Allseek and Haicker, two firms known for their advancements in cybersecurity solutions. This move is significant as it positions Aikido to strengthen its offerings in an increasingly competitive landscape. The integration of…

Read MoreAikido Security Acquires Allseek and Haicker: A Major Move in Security Systems News

Cisco Confirms Salt Typhoon’s Exploitation of CVE-2018-0171 to Attack U.S. Telecom Networks

Cisco has disclosed that a Chinese threat actor, identified as Salt Typhoon, successfully infiltrated major U.S. telecommunications companies by exploiting a known vulnerability labeled CVE-2018-0171 and utilizing stolen login credentials. This targeted operation reflects the sophisticated methods employed by adversaries focusing on critical infrastructure. According to Cisco Talos, the group…

Read MoreCisco Confirms Salt Typhoon’s Exploitation of CVE-2018-0171 to Attack U.S. Telecom Networks

Meta Intensifies Efforts Against Cyber Espionage Operations Misusing Facebook in South Asia

Meta Platforms, the parent company of Facebook, has reported the dismantling of two sophisticated cyber-espionage campaigns targeting individuals across South Asia, utilizing its platforms as channels for malware dissemination. The operations, conducted by groups identified as Bitter APT and Transparent Tribe, showcase evolving tactics aimed at exploiting social media for…

Read MoreMeta Intensifies Efforts Against Cyber Espionage Operations Misusing Facebook in South Asia

Secret Service Neutralizes NY Telecom Threat During UN Meeting

Critical Infrastructure Security, Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime U.S. Secret Service Disrupts Network of Telecom Devices Targeting Government Officials Chris Riotta (@chrisriotta) • September 23, 2025 Equipment seized by the U.S. Secret Service prior to the United Nations General Assembly. (Image: U.S. Secret Service) The U.S. Secret…

Read MoreSecret Service Neutralizes NY Telecom Threat During UN Meeting