The Breach News

U.S. Recovers $2.3 Million in Ransom Paid to Colonial Pipeline Cybercriminals

In a significant development, the U.S. Department of Justice (DoJ) announced the recovery of 63.7 bitcoins, valued at approximately $2.3 million. This amount was previously paid by Colonial Pipeline to DarkSide ransomware attackers on May 8, under a seizure warrant issued by the Northern District of California. The recovery represents…

Read MoreU.S. Recovers $2.3 Million in Ransom Paid to Colonial Pipeline Cybercriminals

Global Data Breach Exposes Millions Using Vulnerable Passwords: Top 10 Most Common Passcodes to Avoid

Global Data Leak Exposes Millions Still Relying on Weak Passwords In a troubling revelation for cybersecurity, a recent report has found that millions of individuals worldwide are still employing weak and easily hackable passwords as of 2025. The analysis, conducted by Comparitech, examined over two billion passwords that were leaked…

Read MoreGlobal Data Breach Exposes Millions Using Vulnerable Passwords: Top 10 Most Common Passcodes to Avoid

Apple Issues Essential iOS and iPadOS Updates to Address VoiceOver Password Security Flaw

Apple Releases Critical Security Updates Addressing Password Vulnerabilities and Audio Privacy Issues Apple has recently issued important updates for iOS and iPadOS targeting two significant security vulnerabilities. One of these flaws has the potential to expose users’ saved passwords via the VoiceOver assistive technology, raising alarm among cybersecurity experts. The…

Read MoreApple Issues Essential iOS and iPadOS Updates to Address VoiceOver Password Security Flaw

NoxPlayer Supply Chain Attack Possibly Linked to Gelsemium Hackers

Emergence of Gelsemium: A New Player in Supply Chain Cyberattacks A formidable new cyber espionage group, known as Gelsemium, has recently come under scrutiny following its association with a supply chain attack targeting the NoxPlayer Android emulator. This malicious campaign was initially revealed earlier this year and has raised significant…

Read MoreNoxPlayer Supply Chain Attack Possibly Linked to Gelsemium Hackers

Unveiling AI Secrets Hidden in Encrypted Shadows

Recent developments in the realm of artificial intelligence have brought to light a serious vulnerability affecting encrypted communications. Dubbed ‘Whisper Leak,’ this sophisticated side-channel attack, disclosed by Microsoft researchers, has the potential to glean sensitive information from encrypted traffic directed at large language models (LLMs). As outlined in a recent…

Read MoreUnveiling AI Secrets Hidden in Encrypted Shadows

Qualcomm Calls on OEMs to Address Critical DSP and WLAN Vulnerabilities as Exploits Are Underway

Qualcomm has issued security updates responding to nearly two dozen vulnerabilities affecting both proprietary and open-source components. Among these, a particularly severe flaw has been identified, which is reportedly under active exploitation in the field. This high-severity vulnerability, designated as CVE-2024-43047 with a CVSS score of 7.8, has been characterized…

Read MoreQualcomm Calls on OEMs to Address Critical DSP and WLAN Vulnerabilities as Exploits Are Underway