The Breach News

Major Sign1 Campaign Compromises Over 39,000 WordPress Sites with Scam Redirects

Significant Malware Campaign Targets WordPress Sites A recent and extensive malware campaign known as Sign1 has compromised over 39,000 WordPress sites over the past six months. The malware employs malicious JavaScript injections, maneuvering to redirect users to fraudulent websites. Notably, within the last two months, this campaign has infected an…

Read MoreMajor Sign1 Campaign Compromises Over 39,000 WordPress Sites with Scam Redirects

SolarWinds Hackers Exfiltrated Source Code for Microsoft Azure, Exchange, and Intune

Microsoft Concludes Investigation into SolarWinds Hack: Key Findings Revealed On Thursday, Microsoft announced the completion of its investigation into the SolarWinds cyberattack. The company confirmed that while the attackers were indeed able to exfiltrate source code from its repositories, there is no evidence that they leveraged this breach to access…

Read MoreSolarWinds Hackers Exfiltrated Source Code for Microsoft Azure, Exchange, and Intune

ICE Proposes $280 Million Funding for Immigrant-Tracking ‘Bounty Hunter’ Companies

ICE Expands Outsourcing of Immigrant Tracking to Private Firms The U.S. Immigration and Customs Enforcement (ICE) agency has announced a significant expansion in its plans to outsource the tracking of immigrants to private surveillance companies, moving away from a previously proposed $180 million pilot program. This decision has been documented…

Read MoreICE Proposes $280 Million Funding for Immigrant-Tracking ‘Bounty Hunter’ Companies

Former TrendMicro Employee Sold Customer Data to Tech Support Scammers

Cybersecurity firm Trend Micro recently revealed that a significant data breach involved an employee who improperly accessed personal information belonging to thousands of customers, driven by “clear criminal intent.” This insider threat occurred earlier this year, with the company taking immediate actions upon discovery. While businesses have implemented various defensive…

Read MoreFormer TrendMicro Employee Sold Customer Data to Tech Support Scammers

Top US Banks Assess Their Exposure to SitusAMC Breach

Finance & Banking, Industry Specific JP Morgan Chase, Citi, and Morgan Stanley Affected by Cybersecurity Breach Akshaya Asokan (asokan_akshaya) • November 24, 2025 Image: Dogora Sun/Shutterstock Major financial institutions in the U.S., including JP Morgan Chase, Citi, and Morgan Stanley, are currently evaluating their exposure to a recent cybersecurity incident…

Read MoreTop US Banks Assess Their Exposure to SitusAMC Breach

Banks on High Alert Following Data Breach at SitusAMC

Several prominent U.S. banks are currently assessing their potential exposure following a cybersecurity incident involving financial technology vendor SitusAMC. This breach has reportedly compromised sensitive client data, underscoring the growing reliance of the banking sector on third-party service providers and the inherent systemic risks when such providers face security challenges.…

Read MoreBanks on High Alert Following Data Breach at SitusAMC

China-Linked Group Exploits ConnectWise and F5 Software Vulnerabilities to Breach Networks

A threat group linked to China has exploited vulnerabilities in Connectwise ScreenConnect and F5 BIG-IP software, deploying customized malware capable of installing additional backdoors on compromised Linux systems. This aggressive campaign is under surveillance by Mandiant, a Google subsidiary, which refers to the activity by the identifier UNC5174, also known…

Read MoreChina-Linked Group Exploits ConnectWise and F5 Software Vulnerabilities to Breach Networks

Masslogger Trojan Enhanced to Capture All Your Outlook and Chrome Credentials

New Phishing Campaign Targets Credentials Using MassLogger Malware A resurgence of the MassLogger malware has been detected, targeting credentials from major platforms including Microsoft Outlook, Google Chrome, and various instant messaging applications. This phishing campaign, primarily aimed at users in Turkey, Latvia, and Italy, began in mid-January and builds upon…

Read MoreMasslogger Trojan Enhanced to Capture All Your Outlook and Chrome Credentials

Everest Ransomware Claims Data Breach at Spain’s National Airline Iberia, Exposing 596 GB of Data

Recent Data Breaches Affect Iberia and Air Miles España, S.A. The Everest ransomware group has made headlines with alarming claims of successful breaches at Iberia, Spain’s national airline. According to the group, they have extracted a substantial database of 596 GB, alongside 430 GB of booking-related email files. This cache…

Read MoreEverest Ransomware Claims Data Breach at Spain’s National Airline Iberia, Exposing 596 GB of Data