The Breach News

New Cyberattack Campaign Targeting Ukrainian Government with IcedID Malware

The Computer Emergency Response Team of Ukraine (CERT-UA) has issued an urgent alert regarding a recent surge in social engineering tactics used to propagate IcedID malware and exploit vulnerabilities in the Zimbra email platform. This wave of attacks is primarily focused on extracting sensitive information from targeted users. CERT-UA has…

Read MoreNew Cyberattack Campaign Targeting Ukrainian Government with IcedID Malware

FTC Takes Legal Action Against Sendit for Collecting Children’s Data

Cybercrime, Fraud Management & Cybercrime Asahi’s Japan Operations Disrupted by Cyberattack, Production Halted Anviksha More (AnvikshaMore) • October 2, 2025 Image: Shutterstock/ISMG This week, the cybersecurity landscape features significant incidents, notably the FTC’s lawsuit against Sendit for unlawful children’s data collection, another breach involving Harrods, an incident affecting Allianz, and…

Read MoreFTC Takes Legal Action Against Sendit for Collecting Children’s Data

FBI, U.S. Treasury, and CISA Alert About North Korean Hackers Targeting Blockchain Firms

The U.S. Cybersecurity and Infrastructure Security Agency (CISA), along with the Federal Bureau of Investigation (FBI) and the Treasury Department, has issued a warning regarding ongoing cyber attacks attributed to the Lazarus Group, a notorious North Korean hacking organization. This threat primarily targets blockchain companies operating within the Web3.0 ecosystem.…

Read MoreFBI, U.S. Treasury, and CISA Alert About North Korean Hackers Targeting Blockchain Firms

Extortionists Assert Large-Scale Data Theft from Oracle E-Business Suite

Cybercrime, Fraud Management & Cybercrime Ransomware Expert Alerts Executives to Ransom Demands as High as $50 Million Mathew J. Schwartz (euroinfosec) • October 2, 2025 Image: Shutterstock/ISMG Digital extortionists are directly targeting executives at companies utilizing Oracle E-Business Suite, alleging they have compromised sensitive data, according to reports from multiple…

Read MoreExtortionists Assert Large-Scale Data Theft from Oracle E-Business Suite

Cencora Data Security Incident: Are You Eligible for a $5,000 Settlement? – The News Journal

Cencora Data Security Incident: Potential $5K Settlement for Affected Individuals Recently, Cencora, a significant player in the healthcare logistics sector, has been at the center of a notable data security incident. This breach has raised concerns among stakeholders and business owners regarding the integrity of sensitive data and the ongoing…

Read MoreCencora Data Security Incident: Are You Eligible for a $5,000 Settlement? – The News Journal

Lightning AI Studio Flaw Could Have Enabled Remote Code Execution via Concealed URL Parameter

Cybersecurity experts have revealed a serious vulnerability affecting the Lightning AI Studio, a development platform that, if exploited, poses a significant risk of remote code execution. This flaw has been assigned a CVSS score of 9.4, indicating its critical nature and potential for severe repercussions. The vulnerability permits attackers to…

Read MoreLightning AI Studio Flaw Could Have Enabled Remote Code Execution via Concealed URL Parameter