The Breach News

Purple Fox Rootkit Now Capable of Spreading to Other Windows Systems

Purple Fox, previously known for infecting Windows systems through various exploit kits and phishing campaigns, has evolved to include a new propagation technique that resembles worm-like behavior. Recent findings indicate a substantial uptick in its activity, with Guardicore researchers reporting a 600% increase in incidents since May 2020. This latest…

Read MorePurple Fox Rootkit Now Capable of Spreading to Other Windows Systems

Natura, Brazil’s Leading Cosmetic Brand, Leaks Users’ Personal Information

Natura Data Breach Exposes Millions of Customer Records In a significant cybersecurity incident, Brazil’s largest cosmetics firm, Natura, inadvertently left a vast trove of sensitive consumer information exposed online. A recent investigation revealed that the company neglected to secure hundreds of gigabytes of data, leading to potential unauthorized access to…

Read MoreNatura, Brazil’s Leading Cosmetic Brand, Leaks Users’ Personal Information

Google Discovers New Malware Backdoors Associated with Iran

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime Iranian Hacking Group Unleashes Array of Custom Malware Variants Akshaya Asokan (asokan_akshaya) • November 18, 2025 Image: Evgeniyqw/Shutterstock Google has issued a warning regarding a state-sponsored Iranian hacking group known for targeting the aerospace and defense sectors in the Middle East. This…

Read MoreGoogle Discovers New Malware Backdoors Associated with Iran

Hunting Unpatched Microsoft Exchange Servers: The Threat of Black Kingdom Ransomware

Following Microsoft’s recent release of a mitigation tool aimed at addressing cyberattacks targeting on-premises Exchange servers, the company reported that 92% of the internet-facing servers affected by the ProxyLogon vulnerabilities have been patched. This marks a substantial improvement of 43% from the previous week, closing a tumultuous period rife with…

Read MoreHunting Unpatched Microsoft Exchange Servers: The Threat of Black Kingdom Ransomware

Crazy Bitcoin Heist: Luxurious Hotels, Cash-Loaded Envelopes, and Disappearing Fortunes

Incident Analysis: Potential Security Risks in Cryptocurrency Dealings In a recent episode highlighting the intersection of cryptocurrency and business negotiations, Kent Halliburton, co-founder and CEO of Sazmining, found himself in a precarious situation while at the Rosewood Hotel in Amsterdam. While handling an envelope containing 10,000 euros, he began to…

Read MoreCrazy Bitcoin Heist: Luxurious Hotels, Cash-Loaded Envelopes, and Disappearing Fortunes

Data Breach Affects Joomla Resources Directory (JRD) Portal

Joomla Faces Data Breach Affecting 2,700 Users Joomla, a leading open-source content management system (CMS), recently reported a significant data breach impacting approximately 2,700 users of its Resources Directory (JRD) website, resources.joomla.org. The breach compromises personal user data, including full names, business addresses, email addresses, phone numbers, and encrypted passwords.…

Read MoreData Breach Affects Joomla Resources Directory (JRD) Portal

Omni Family Health Reaches $6.5M Settlement in 2024 Hack Lawsuits

Data Privacy, Data Security, Healthcare Sensitive Data of Nearly 470,000 Patients and Employees Potentially Exposed on Dark Web Marianne Kolbasuk McGee (HealthInfoSec) • November 18, 2025 Omni Family Health, a nonprofit operating approximately 40 community health centers in California, has reached a $6.5 million settlement over a 2024 cyber incident…

Read MoreOmni Family Health Reaches $6.5M Settlement in 2024 Hack Lawsuits