The Breach News

Rising Instances of Misissued 1.1.1.1 Certificates: Here’s the Latest Update.

Cloudflare Admits to Security Oversight in TLS Certificate Management On Thursday, Cloudflare officially acknowledged a series of failures concerning its handling of TLS certificates. The company stated that it encountered three primary issues: initially, the mismanagement of IP certificates for 1.1.1.1, followed by inadequate filtering of certificate issuance alerts, and…

Read MoreRising Instances of Misissued 1.1.1.1 Certificates: Here’s the Latest Update.

VanHelsing RaaS Launch: 3 Targets, $5K Entry Fee, Multi-Platform Support, and Double Extortion Strategies

The cybersecurity landscape has recently been shaken by the launch of a ransomware-as-a-service (RaaS) operation named VanHelsing, which has already targeted three victims since its inception on March 7, 2025. The ransoms demanded by VanHelsing have reached staggering amounts, totaling as high as $500,000. This model facilitates participation from a…

Read MoreVanHelsing RaaS Launch: 3 Targets, $5K Entry Fee, Multi-Platform Support, and Double Extortion Strategies

Lombardo Pledges Transparency Regarding Cyber Attack—But Not Right Away – Nevada Current

Cybersecurity Update: Transparency Promised Amid Ongoing Cyber Investigation In the latest developments concerning cybersecurity threats, Nevada officials have committed to enhancing transparency regarding a significant cyber attack that has drawn considerable attention. The incident, which remains under investigation, has raised concerns among business owners and cybersecurity professionals alike, as details…

Read MoreLombardo Pledges Transparency Regarding Cyber Attack—But Not Right Away – Nevada Current

New Variant of Mirai Botnet ‘V3G4’ Targets Linux and IoT Devices by Exploiting 13 Vulnerabilities

A newly discovered variant of the infamous Mirai botnet has emerged, exploiting multiple security vulnerabilities to spread across Linux and Internet of Things (IoT) devices. Identified in the latter half of 2022, this variant has been labeled V3G4 by researchers at Palo Alto Networks’ Unit 42. Their investigation has revealed…

Read MoreNew Variant of Mirai Botnet ‘V3G4’ Targets Linux and IoT Devices by Exploiting 13 Vulnerabilities

Chinese Hackers Infiltrate Asian Telecom, Undetected for Over Four Years

Telecommunications Giant Targeted by State-Sponsored Hackers A prominent telecommunications company in Asia was reportedly infiltrated for over four years by Chinese state-sponsored hackers, as revealed in a recent report by cybersecurity firm Sygnia. Although the identity of the affected telecom provider remains undisclosed, the incident highlights the vulnerabilities in critical…

Read MoreChinese Hackers Infiltrate Asian Telecom, Undetected for Over Four Years

Czech Alert Exposes China’s User Data Theft – Dark Reading

Czech Authority Issues Alert on Potential Data Theft by China In a significant cybersecurity alert, Czech officials have raised concerns about potential data theft orchestrated by China. This warning has drawn attention from cybersecurity experts and business owners alike, as it highlights the increasing risks associated with foreign involvement in…

Read MoreCzech Alert Exposes China’s User Data Theft – Dark Reading

GCP Cloud Composer Vulnerability Allows Attackers to Elevate Access through Malicious PyPI Packages

Vulnerability in Google Cloud Composer Exposes Privilege Escalation Risk Recent findings by cybersecurity experts have unveiled a significant vulnerability in the Google Cloud Platform (GCP), specifically within the Cloud Composer service, which orchestrates workflows based on Apache Airflow. This flaw, dubbed “ConfusedComposer,” has since been addressed and could have potentially…

Read MoreGCP Cloud Composer Vulnerability Allows Attackers to Elevate Access through Malicious PyPI Packages