The Breach News

Travel Sector Advised to Intensify Digital Transformation Amid Rising Cyber Breaches – The Manila Times

Travel Industry Urged to Accelerate Digital Transformation Amid Rising Cybersecurity Incidents In light of escalating cyber breaches, experts are advising the travel sector to intensify its digital transformation efforts. A recent report highlights that the industry continues to face a significant threat landscape, making robust cybersecurity measures more crucial than…

Read MoreTravel Sector Advised to Intensify Digital Transformation Amid Rising Cyber Breaches – The Manila Times

Analysis of SystemBC Malware’s C2 Server Reveals Payload Delivery Techniques

Recent cybersecurity investigations have unveiled significant insights into the functioning of a notorious malware family known as SystemBC. This malware operates through a command-and-control (C2) server setup that has been analyzed by researchers at Kroll, revealing its availability for purchase on various underground marketplaces. Kroll’s analysis indicates that purchasers receive…

Read MoreAnalysis of SystemBC Malware’s C2 Server Reveals Payload Delivery Techniques

Enhanced Kimsuky Module Amplifies North Korean Spyware Capabilities

Recent developments have revealed that a North Korean state-sponsored hacking group, known as Kimsuky, has enhanced its repertoire of spyware tools. This scrutiny follows a US government advisory, highlighting their ongoing “global intelligence gathering mission.” Kimsuky, also referred to as Black Banshee or Thallium, is believed to have been operational…

Read MoreEnhanced Kimsuky Module Amplifies North Korean Spyware Capabilities

Concerns Grow in Congress Regarding Expanded US Wiretap Authority

Recent discussions have revealed significant concerns regarding the expansion of government surveillance capabilities, particularly in how commercial landlords may be compelled to assist in these efforts. This development raises alarm for privacy advocates, as these landlords control buildings where millions of Americans engage in their daily work activities. Unlike major…

Read MoreConcerns Grow in Congress Regarding Expanded US Wiretap Authority

US Postal Service Exposed Data of 60 Million Users for Over a Year

The United States Postal Service (USPS) has recently addressed a significant security vulnerability that compromised the personal data of over 60 million customers. This breach allowed unauthorized access to sensitive information for anyone possessing a USPS.com account, raising serious concerns about data security and user privacy. As an independent entity…

Read MoreUS Postal Service Exposed Data of 60 Million Users for Over a Year

Russian Ring Exploits Ex-Immigrant Data for Fraudulent ID Sales

Finance & Banking, Fraud Management & Cybercrime, Fraud Risk Management Telegram-Driven Marketplace Exploits US Gaps in Tracking Former Visa Holders Suparna Goswami (gsuparna) • December 11, 2025 David Maimon, head of fraud insights at SentiLink, and professor at Georgia State University A Russian-operated darknet marketplace is taking advantage of significant…

Read MoreRussian Ring Exploits Ex-Immigrant Data for Fraudulent ID Sales

TriZetto Provider Solutions Alerts Healthcare Clients to Data Breach – The HIPAA Journal

Data Breach Alert: TriZetto Provider Solutions Informs Healthcare Clients TriZetto Provider Solutions recently disclosed a data breach affecting its healthcare provider clients, bringing to light the ongoing risks associated with cybersecurity vulnerabilities in the healthcare sector. This incident underscores the pressing issues that businesses face in safeguarding sensitive information in…

Read MoreTriZetto Provider Solutions Alerts Healthcare Clients to Data Breach – The HIPAA Journal

Critical Cisco Vulnerability Allows Remote Takeover of Unified Communication Systems

Cisco Addresses Critical Security Vulnerability in Unified Communications Products Cisco has recently issued important patches to mitigate a serious security vulnerability affecting multiple products within its Unified Communications and Contact Center Solutions range. This flaw, identified as CVE-2024-20253, is rated critically high with a CVSS score of 9.9. It poses…

Read MoreCritical Cisco Vulnerability Allows Remote Takeover of Unified Communication Systems

New ModPipe POS Malware Alert: Targeting Restaurants and Hotels

Cybersecurity researchers have recently unveiled a new modular backdoor malware named “ModPipe,” targeting Oracle’s point-of-sale (POS) restaurant management software with the intent of stealing sensitive payment information. The discovery highlights a growing trend in cyber threats towards payment processing systems where attackers exploit vulnerabilities to access critical data. ModPipe specifically…

Read MoreNew ModPipe POS Malware Alert: Targeting Restaurants and Hotels