The Breach News

Cisco Alerts Users to Vulnerability in IOS and IOS XE Software Following Exploitation Attempts

Cisco Warns of Remote Code Execution Vulnerability in IOS and IOS XE Software Cisco has issued a warning regarding a significant vulnerability affecting its IOS Software and IOS XE Software, which could allow an authenticated remote attacker to execute arbitrary code on compromised systems. This medium-severity security flaw, designated as…

Read MoreCisco Alerts Users to Vulnerability in IOS and IOS XE Software Following Exploitation Attempts

GandCrab Ransomware and Ursnif Virus Distributing Through MS Word Macros

Security researchers have identified two distinct malware campaigns targeting systems through phishing strategies, one distributing both the Ursnif data-stealing trojan and GandCrab ransomware, while the other focuses solely on Ursnif. These threats originate from two separate cybercriminal groups but exhibit several operational similarities. Both campaigns initiate through phishing emails containing…

Read MoreGandCrab Ransomware and Ursnif Virus Distributing Through MS Word Macros

ChatGPT Faces New Data-Exploitation Attack, Highlighting Ongoing AI Challenges

OpenAI’s ChatGPT Undergoes Adjustments Following Cyber Vulnerability Exploit In a recent development, OpenAI has implemented critical changes to its AI language model, ChatGPT, to guard against a sophisticated exploitation known as ShadowLeak. The adjustments are aimed at limiting the model’s capability to open or modify URLs, effectively blocking the attack…

Read MoreChatGPT Faces New Data-Exploitation Attack, Highlighting Ongoing AI Challenges

Verizon Seeks $1 Billion Reduction on Yahoo Acquisition Deal Amid Recent Scandals

The saga surrounding Yahoo is far from over, as the company faces fresh scrutiny amidst a series of alarming revelations. Verizon, which had previously committed to acquiring Yahoo for $4.8 billion, is now requesting a substantial discount of $1 billion on the deal, according to recent reports. The demand arises…

Read MoreVerizon Seeks $1 Billion Reduction on Yahoo Acquisition Deal Amid Recent Scandals

Orca and Wiz Resolve Legal Disputes Over Cloud Security Patents

Cloud Security, Litigation, Security Operations Patent Board Ruling Invalidates Three Orca Patents, Resulting in Dismissal of Legal Disputes Michael Novinson (MichaelNovinson) • January 7, 2026 In a significant development within the cloud security sector, Orca Security and Wiz have mutually agreed to dismiss their competing patent infringement lawsuits, with an…

Read MoreOrca and Wiz Resolve Legal Disputes Over Cloud Security Patents

OpenRefine’s Zip Slip Vulnerability Poses Risk of Malicious Code Execution by Attackers

A critical security vulnerability has been uncovered in OpenRefine, an open-source tool for data cleaning and transformation, potentially enabling arbitrary code execution on affected systems. The flaw, designated as CVE-2023-37476, holds a CVSS score of 7.8 and is categorized as a Zip Slip vulnerability. It affects versions 3.7.3 and earlier,…

Read MoreOpenRefine’s Zip Slip Vulnerability Poses Risk of Malicious Code Execution by Attackers

Europol Takes Action Against Individuals Purchasing DDoS-for-Hire Services

Recent law enforcement efforts reveal that individuals who engaged with DDoS-for-hire services may now be facing serious repercussions. Following the takedown of the world-renowned DDoS-for-hire platform Webstresser.org in April 2018, authorities are now focusing on the clients who utilized this service to orchestrate millions of cyber attacks against a range…

Read MoreEuropol Takes Action Against Individuals Purchasing DDoS-for-Hire Services