The Breach News

Facebook Bug Exposes Photos of 6.8 Million Users to Third-Party Apps

Facebook has recently disclosed a significant security vulnerability that had exposed the private photos of approximately 6.8 million users to third-party developers. This breach occurred due to a programming error that inadvertently granted access to nearly 1,500 applications linked to 876 developers. The flaw specifically enabled these developers to access…

Read MoreFacebook Bug Exposes Photos of 6.8 Million Users to Third-Party Apps

BNY Collaborates with Google to Launch AI Platform for Financial Services

Agentic AI, Artificial Intelligence & Machine Learning, Next-Generation Technologies & Secure Development Google Unveils Gemini Enterprise AI Model for Banking Sector Jennifer Lawinski • December 10, 2025 BNY is integrating Google Cloud’s Gemini Enterprise agentic artificial intelligence platform into its proprietary enterprise AI platform, Eliza. (Image: Shutterstock) In a significant…

Read MoreBNY Collaborates with Google to Launch AI Platform for Financial Services

World Estimating Strengthens Data Security Measures – Lelezard

World Estimating Strengthens Data Security Measures In an effort to bolster its defenses against increasing cyber threats, World Estimating has announced enhancements to its data security practices. This development comes at a time when numerous organizations face persistent vulnerabilities and the risk of significant data breaches. The company, which operates…

Read MoreWorld Estimating Strengthens Data Security Measures – Lelezard

URGENT: GitLab Update Required – Critical Flaw in Workspace Creation Enables File Overwrite

GitLab has once again addressed a significant security vulnerability in both its Community Edition (CE) and Enterprise Edition (EE). This flaw, designated as CVE-2024-0402, poses a serious risk, allowing authenticated users to write files to arbitrary locations on the server while creating a workspace. The vulnerability, which received a critical…

Read MoreURGENT: GitLab Update Required – Critical Flaw in Workspace Creation Enables File Overwrite

Hackers-for-Hire Group Unveils New ‘PowerPepper’ In-Memory Malware

Cybersecurity Experts Uncover New Windows Backdoor Tied to DeathStalker Group Cybersecurity researchers announced on Thursday the discovery of an in-memory Windows backdoor, named “PowerPepper,” linked to a hacker-for-hire collective. This sophisticated malware is capable of executing malicious code remotely and extracting sensitive information from targets across Asia, Europe, and the…

Read MoreHackers-for-Hire Group Unveils New ‘PowerPepper’ In-Memory Malware

Twitter Reveals Possible State-Sponsored Attack Following Minor Data Breach

Twitter Faces Data Breach Linked to Suspected State-Sponsored Attack Twitter has recently experienced a minor data breach that the company attributes to a possible state-sponsored attack. In a blog post released on Monday, Twitter disclosed that during an investigation into a vulnerability affecting one of its customer support forms, it…

Read MoreTwitter Reveals Possible State-Sponsored Attack Following Minor Data Breach

Hospice Provider and Eye Care Clinic Alert 520,000 About Data Breaches

Recent Data Breaches Target Specialty Medical Providers, Compromising Sensitive Patient Information Marianne Kolbasuk McGee (HealthInfoSec) • December 9, 2025 VITAS Hospice is among the medical specialty providers reporting significant hacking incidents. (Image: VITAS Hospice) In recent developments, two specialty healthcare providers—VITAS Hospice Services based in Florida and Tri Century Eye…

Read MoreHospice Provider and Eye Care Clinic Alert 520,000 About Data Breaches

Nearly 200,000 Affected by Tri-Century Eye Care Data Breach – SC Media

Data Breach at Tri-Century Eye Care Affects Nearly 200,000 Individuals A significant data breach has recently unfolded at Tri-Century Eye Care, impacting approximately 200,000 individuals. The breach, which has raised alarms among cybersecurity experts, involves unauthorized access to sensitive personal information held by the company. This incident highlights the imperative…

Read MoreNearly 200,000 Affected by Tri-Century Eye Care Data Breach – SC Media

New Glibc Vulnerability Provides Attackers with Root Access on Major Linux Distributions

A critical vulnerability affecting the widely used GNU C Library (glibc) has come to light, enabling local malicious actors to gain full root access on Linux systems. This flaw is tracked as CVE-2023-6246, with a CVSS rating of 7.8, indicating a high level of severity. The vulnerability is located in…

Read MoreNew Glibc Vulnerability Provides Attackers with Root Access on Major Linux Distributions