The Breach News

Microsoft to Retire Decades-Old Obsolete Cipher That Has Caused Widespread Issues

Microsoft has disclosed its ongoing efforts to phase out the RC4 cryptographic algorithm, a challenge that has persisted for over a decade. According to Steve Syfuhs, who leads the Windows Authentication team at Microsoft, eliminating an algorithm that has been a part of operating systems for the last 25 years…

Read MoreMicrosoft to Retire Decades-Old Obsolete Cipher That Has Caused Widespread Issues

T-Mobile Data Breach: 2 Million Customers’ Personal Information Compromised

T-Mobile Confirms Data Breach Affecting Up to 2 Million Customers T-Mobile has announced a significant security breach on its U.S. servers, revealing that sensitive personal information for nearly 2 million customers may have been compromised. The incident occurred on August 20, and T-Mobile disclosed that the exposed data includes names,…

Read MoreT-Mobile Data Breach: 2 Million Customers’ Personal Information Compromised

16TB MongoDB Database Leaks 4.3 Billion Lead Generation Records – Hackread – Cybersecurity News, Data Breaches, AI, and More

In a significant revelation that raises alarms for professionals regarding online privacy, cybersecurity researcher Bob Diachenko, in collaboration with nexos.ai, uncovered an unsecured MongoDB database on November 23, 2025. This massive dataset, consisting of approximately 16 terabytes (TB) of information, was left exposed on the internet, revealing an astonishing 4.3…

Read More16TB MongoDB Database Leaks 4.3 Billion Lead Generation Records – Hackread – Cybersecurity News, Data Breaches, AI, and More

GitHub Scanner for React2Shell (CVE-2025-55182) Revealed as Malware – Hackread: Cybersecurity News, Data Breaches, AI, and More

Malicious GitHub Repository Impersonating CVE-2025-55182 Scanner Exposed A GitHub repository masquerading as a vulnerability scanner for CVE-2025-55182, commonly known as “React2Shell,” was recently uncovered as a source of malware. The project, titled React2shell-scanner, was associated with the GitHub user niha0wa but has been removed from the platform after community alerts…

Read MoreGitHub Scanner for React2Shell (CVE-2025-55182) Revealed as Malware – Hackread: Cybersecurity News, Data Breaches, AI, and More

New Report Analyzes COVID-19’s Effect on Cybersecurity

Cybersecurity professionals have been well aware that cybercriminals would exploit the uncertainty surrounding the COVID-19 pandemic to enhance their cyberattacks. Malicious communications have frequently incorporated COVID-19 themes, leveraging public fear to increase their effectiveness. Though anecdotal evidence has suggested various forms of pandemic-related cyberattacks, concrete data regarding their true impact…

Read MoreNew Report Analyzes COVID-19’s Effect on Cybersecurity

Elastic Offers On-Demand Free Training for Open Source

Elastic Expands Security Training with Modular, Accessible Learning Elastic, a company rooted in open-source technology, has recently unveiled enhancements to its training offerings, emphasizing modular learning and practical skill development. This initiative aligns with Elastic’s commitment to transparency and free access to knowledge, reinforcing its foundational principles as it makes…

Read MoreElastic Offers On-Demand Free Training for Open Source

ICO Issues Public Reprimand to Post Office Instead of Fine for Data Breach – IT Security Guru

Data Breach Sparks Public Reprimand for Postal Service Instead of Fine In a significant development within the realm of data security, the Information Commissioner’s Office (ICO) has issued a public reprimand to a national postal service, following an extensive investigation into a serious data breach. Instead of imposing a fine,…

Read MoreICO Issues Public Reprimand to Post Office Instead of Fine for Data Breach – IT Security Guru

Severe RCE Vulnerability Discovered in Juniper SRX Firewalls and EX Switches

In a significant development for cybersecurity, Juniper Networks has announced critical updates designed to address a severe remote code execution (RCE) vulnerability affecting its SRX Series firewalls and EX Series switches. Identified as CVE-2024-21591, this flaw has garnered a high CVSS rating of 9.8, indicating its potential for exploitation. The…

Read MoreSevere RCE Vulnerability Discovered in Juniper SRX Firewalls and EX Switches