The Breach News

Volvo Data Breach: An In-Depth Analysis of Technical and Organizational Shortcomings

Volvo North America Confirms Employee Data Breach Due to Ransomware Attack on Third-Party Provider Volvo North America has publicly acknowledged a significant data breach that has compromised employee records. This breach was triggered by a ransomware attack on Miljödata, a third-party provider that handles HR software for Volvo. Notably, the…

Read MoreVolvo Data Breach: An In-Depth Analysis of Technical and Organizational Shortcomings

Juniper Session Smart Routers Flaw Could Allow Attackers to Bypass Authentication

Juniper Networks has issued urgent security updates in response to a critical vulnerability affecting its Session Smart Router, Session Smart Conductor, and WAN Assurance Router products. This flaw could potentially allow unauthorized access, enabling attackers to seize control of affected devices. The vulnerability, designated as CVE-2025-21589, has been assigned a…

Read MoreJuniper Session Smart Routers Flaw Could Allow Attackers to Bypass Authentication

State-Sponsored Hackers Target Journalists in Extensive Espionage Efforts

In an alarming uptick in cyber warfare, state-sponsored hacking groups linked to China, Iran, North Korea, and Turkey have increasingly targeted journalists for espionage and malware distribution since early 2021. These coordinated efforts focus on infiltrating the communications of media personnel, which presents a unique opportunity for gathering sensitive information.…

Read MoreState-Sponsored Hackers Target Journalists in Extensive Espionage Efforts

Newly Discovered Chinese Espionage Hacking Group Exposed

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime, Network Firewalls, Network Access Control ‘RedNovember’ Engages Organizations Across the US, Asia, and Europe Akshaya Asokan (asokan_akshaya) • September 25, 2025 Image: Shutterstock/ISMG A recently identified hacking group, linked to extensive compromises of edge devices, has been confirmed as state-aligned with China,…

Read MoreNewly Discovered Chinese Espionage Hacking Group Exposed

U.S. Accuses Chinese Hacker of Exploiting Zero-Day Vulnerability in 81,000 Sophos Firewalls

The U.S. government has recently unsealed charges against a Chinese individual, Guan Tianfeng, linked to a significant cybersecurity breach in which thousands of Sophos firewall devices were compromised worldwide in 2020. Guan, who allegedly worked for Sichuan Silence Information Technology Company, Limited, is facing accusations of conspiracy to commit computer…

Read MoreU.S. Accuses Chinese Hacker of Exploiting Zero-Day Vulnerability in 81,000 Sophos Firewalls

Chinese Hackers Target US Agency with Chopper Attack

Recent cyber activity has revealed significant vulnerabilities and breaches affecting U.S. federal agencies and corporations, highlighting the ongoing threats in the cybersecurity landscape. The Cybersecurity and Infrastructure Security Agency (CISA) reported that hackers exploited a known vulnerability in an open-source geospatial data server, leading to the deployment of a web…

Read MoreChinese Hackers Target US Agency with Chopper Attack

Critical OpenSSH Vulnerabilities Allow Man-in-the-Middle and DoS Attacks — Update Immediately

Recent discoveries by the Qualys Threat Research Unit have unveiled two significant security vulnerabilities within the OpenSSH suite, an essential tool for secure networking. These vulnerabilities, if exploited, could enable attackers to perform a man-in-the-middle (MitM) attack and instigate a denial-of-service (DoS) attack, threatening the security and availability of affected…

Read MoreCritical OpenSSH Vulnerabilities Allow Man-in-the-Middle and DoS Attacks — Update Immediately

FBI Recovers $500,000 in Ransomware Payments and Cryptocurrency from North Korean Hackers

The U.S. Department of Justice (DoJ) has successfully seized $500,000 in Bitcoin connected to a group of North Korean hackers who employed a ransomware variant known as Maui to extort digital payments from various organizations. This operation illustrates an increasing trend in cyber extortion tactics aimed at multiple sectors, including…

Read MoreFBI Recovers $500,000 in Ransomware Payments and Cryptocurrency from North Korean Hackers

Feds Secure Cisco Firewalls to Combat ‘Arcane Door’ Threat

Network Firewalls, Network Access Control, Security Operations CISA Issues Emergency Directive Following Ongoing Exploits of Cisco Devices Chris Riotta (@chrisriotta) • September 25, 2025 Image: Anucha Cheechang/Shutterstock The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning regarding an ongoing cyberattack campaign that targets Cisco firewalls, exploiting zero-day vulnerabilities…

Read MoreFeds Secure Cisco Firewalls to Combat ‘Arcane Door’ Threat