The Breach News

Fortra Addresses Critical RCE Vulnerability in FileCatalyst Transfer Tool

Critical Security Flaw Discovered in Fortra FileCatalyst Exposes Servers to Remote Code Execution Fortra has disclosed a significant security vulnerability affecting its FileCatalyst file transfer solution, which could enable unauthenticated attackers to execute malicious code on vulnerable servers. This vulnerability, assigned the identifier CVE-2024-25153, has received a high severity rating…

Read MoreFortra Addresses Critical RCE Vulnerability in FileCatalyst Transfer Tool

Ukrainian Police Detain Creator of the World’s Largest Phishing Service, U-Admin

In a significant crackdown on cybercrime, Ukrainian law enforcement, in collaboration with agencies from the United States and Australia, has dismantled one of the most extensive phishing operations globally. This service targeted financial institutions across 11 countries, resulting in substantial financial losses, reportedly exceeding tens of millions of dollars. The…

Read MoreUkrainian Police Detain Creator of the World’s Largest Phishing Service, U-Admin

OpenAI API User Data Compromised in Mixpanel Breach; ChatGPT Remains Unaffected

OpenAI has confirmed a third-party data breach through Mixpanel, a third-party analytics service, which exposed limited user metadata such as names, email addresses, and browser information. Importantly, OpenAI’s core systems remain secure, and no passwords, API keys, chats, or payment details were compromised. This incident stems from a breach of…

Read MoreOpenAI API User Data Compromised in Mixpanel Breach; ChatGPT Remains Unaffected

Akira’s SonicWall Exploits Targeting Major Corporations

Fraud Management & Cybercrime, Network Firewalls, Network Access Control, Ransomware Experts Warn: Companies Acquiring SSL VPNs During M&A Are Vulnerable Mathew J. Schwartz (euroinfosec) • November 26, 2025 Image: Shutterstock/ISMG A recent surge in ransomware attacks has led to a concerning trend where cybercriminals target SSL VPN devices typically used…

Read MoreAkira’s SonicWall Exploits Targeting Major Corporations

Access Restricted

Access Denied: A Growing Concern in Cybersecurity In an alarming turn of events, a breach involving the OpenAI API has come to light. According to reports, sensitive customer details were inadvertently exposed due to a vulnerability linked to data analytics firm Mixpanel. This incident highlights the ongoing challenges facing organizations…

Read MoreAccess Restricted

APIs Fuel Most Internet Traffic—And Cybercriminals are Exploiting This Vulnerability

Application Programming Interfaces (APIs) serve a crucial role in digital transformation by facilitating data exchange between applications and databases. According to the recent State of API Security in 2024 Report published by Imperva, a Thales company, API calls accounted for a staggering 71% of internet traffic in 2023. Enterprises witnessed…

Read MoreAPIs Fuel Most Internet Traffic—And Cybercriminals are Exploiting This Vulnerability

Unprotected Adobe Server Exposes Data of 7.5 Million Creative Cloud Users

Adobe Suffers Significant Data Breach Affecting Millions of Users Earlier this month, Adobe Systems Incorporated, a prominent player in the computer software industry and headquartered in the United States, experienced a substantial security breach that jeopardized the personal information of its Creative Cloud subscribers. This incident comes at a time…

Read MoreUnprotected Adobe Server Exposes Data of 7.5 Million Creative Cloud Users