The Breach News

Dutch Data Protection Authority Releases Report on Personal Data Breaches – Lexology

Dutch Data Protection Authority Reports on Personal Data Breaches The Dutch Data Protection Authority (DPA) has recently released a comprehensive report detailing significant breaches of personal data involving various organizations. This assessment highlights vulnerabilities and threats that business entities must address to enhance their cybersecurity frameworks. The report identifies that…

Read MoreDutch Data Protection Authority Releases Report on Personal Data Breaches – Lexology

New Critical SAP NetWeaver Vulnerability Exploited to Deploy Web Shell and Brute Ratel Framework

Recent findings indicate that threat actors are exploiting a critical vulnerability in SAP NetWeaver, allowing them to upload JSP-based web shells for unauthorized file uploads and code execution. This development poses a significant risk to enterprises relying on SAP solutions, especially given that many of the affected systems were already…

Read MoreNew Critical SAP NetWeaver Vulnerability Exploited to Deploy Web Shell and Brute Ratel Framework

Google Reports Troubling Increase in Russian Cyber Attacks Targeting Ukraine

In a significant escalation of cyber warfare, a joint report by Google’s Threat Analysis Group (TAG) and Mandiant reveals that Russian cyber attacks against Ukraine surged by 250% in 2022 compared to two years prior. This dramatic increase coincided with Russia’s military invasion of Ukraine in February 2022, focusing on…

Read MoreGoogle Reports Troubling Increase in Russian Cyber Attacks Targeting Ukraine

EU Court Upholds EU-US Data Privacy Framework

Data Privacy, Data Security EU General Court Upholds Trans-Atlantic Data Transfer Framework Akshaya Asokan (asokan_akshaya) • September 3, 2025 Underwater scenery in the Atlantic Ocean. (Image: Johan Holmdahl/Shutterstock) The European Union General Court has ruled against a French politician’s attempt to annul the legal structure facilitating commercial data transfers between…

Read MoreEU Court Upholds EU-US Data Privacy Framework

Threats to the Internet from Misissued Certificates for 1.1.1.1 DNS Service

Potential Security Breach Due to Misissued TLS Certificates A recent alarming security discovery has raised concerns about the vulnerabilities inherent in the public key infrastructure (PKI) supporting internet trust. The precise details surrounding the organization or individual responsible for acquiring unauthorized credentials remain unclear, as representatives from Fina have not…

Read MoreThreats to the Internet from Misissued Certificates for 1.1.1.1 DNS Service

Researchers Identify 46 Key Vulnerabilities in Solar Power Systems from Sungrow, Growatt, and SMA

Cybersecurity researchers have revealed 46 critical security vulnerabilities in products provided by three prominent solar power system manufacturers: Sungrow, Growatt, and SMA. These vulnerabilities may allow malicious actors to commandeer affected devices or execute remote code, posing significant risks to electrical grid stability. Designated as SUN:DOWN by Forescout Vedere Labs,…

Read MoreResearchers Identify 46 Key Vulnerabilities in Solar Power Systems from Sungrow, Growatt, and SMA

Zscaler Reveals Data Breach After Compromise of Salesforce Instance

Cybersecurity firm Zscaler has reported a significant data breach that has compromised customer contact information. This breach occurred when unauthorized individuals gained access to Zscaler’s Salesforce database utilizing compromised credentials from a third-party application. The incident is part of a wider campaign that specifically targeted Salesloft Drift, a marketing automation…

Read MoreZscaler Reveals Data Breach After Compromise of Salesforce Instance