The Breach News

FBI and Indonesian Police Take Down W3LL Phishing Network Responsible for $20M Fraud Scheme

The U.S. Federal Bureau of Investigation (FBI) and the Indonesian National Police have successfully disrupted a global phishing operation that relied on a commercially available toolkit known as W3LL. This initiative is reported to have facilitated the theft of account credentials from thousands of victims and aimed to defraud over…

Read MoreFBI and Indonesian Police Take Down W3LL Phishing Network Responsible for $20M Fraud Scheme

Cisco ‘Intentionally’ Sold Vulnerable Video Surveillance System to U.S. Government

Cisco Settles $8.6 Million Lawsuit Over Security Vulnerabilities in Surveillance Software Cisco Systems has reached an $8.6 million settlement concerning a lawsuit that alleged the company knowingly sold a flawed video surveillance system to U.S. federal and state agencies, despite being aware of critical security vulnerabilities. This case marks a…

Read MoreCisco ‘Intentionally’ Sold Vulnerable Video Surveillance System to U.S. Government

April Patch Tuesday Addresses Critical Vulnerabilities in SAP, Adobe, Microsoft, Fortinet, and Others

In the realm of cybersecurity, recent developments from April’s Patch Tuesday have highlighted numerous critical vulnerabilities affecting significant software vendors including Adobe, Fortinet, Microsoft, and SAP. Topping the list is an SQL injection vulnerability affecting SAP’s Business Planning and Consolidation and Business Warehouse systems (CVE-2026-27681), which carries a CVSS score…

Read MoreApril Patch Tuesday Addresses Critical Vulnerabilities in SAP, Adobe, Microsoft, Fortinet, and Others

Researchers Uncover New Methods to Bypass WPA3 WiFi Security

A recent report highlights the discovery of new vulnerabilities in the WPA3 WiFi security standard, raising significant concerns for businesses relying on this technology. This revelation comes from a trusted team of cybersecurity researchers who previously identified multiple severe flaws—collectively labeled “Dragonblood”—in WPA3 shortly after its launch. The newly uncovered…

Read MoreResearchers Uncover New Methods to Bypass WPA3 WiFi Security

$13.74M Hack Halts Operations of Sanctioned Grinex Exchange Following Intelligence Reports

Grinex, a cryptocurrency exchange incorporated in Kyrgyzstan and recently sanctioned by both the U.K. and U.S., has announced a suspension of its operations following a significant breach estimated at $13.74 million. The exchange claims that Western intelligence agencies are behind this cyberattack, which it characterized as extensive and sophisticated. The…

Read More$13.74M Hack Halts Operations of Sanctioned Grinex Exchange Following Intelligence Reports

SWAPGS Vulnerability: New Speculative Execution Flaw Impacts All Modern Intel CPUs

New Variant of Spectre Vulnerability Discovered in Intel and AMD Processors A newly identified variant of the Spectre side-channel vulnerability, known as CVE-2019-1125, has come to light, impacting all modern Intel processors, and likely some AMD CPUs as well. This vulnerability, disclosed by Microsoft and Red Hat, leverages the speculative…

Read MoreSWAPGS Vulnerability: New Speculative Execution Flaw Impacts All Modern Intel CPUs

Vercel Breach Linked to Context AI Hack Reveals Restricted Customer Credentials

Vercel Reports Security Breach Following Compromise of AI Tool Vercel, a prominent provider of web infrastructure, has recently revealed a security breach that compromised “certain” internal systems, allowing unauthorized access to its operations. The incident arose from a vulnerability in Context.ai, a third-party artificial intelligence tool utilized by one of…

Read MoreVercel Breach Linked to Context AI Hack Reveals Restricted Customer Credentials

KDE Linux Desktops Vulnerable to Hacks Without Interacting with Malicious Files

Recent developments have surfaced significant cybersecurity concerns surrounding the KDE desktop environment utilized by numerous Linux distributions including Manjaro, openSUSE, and Kubuntu. A cybersecurity researcher has publicly disclosed a critical zero-day vulnerability that remains unpatched, emphasizing the urgent need for caution among users. This vulnerability allows perpetrators to execute arbitrary…

Read MoreKDE Linux Desktops Vulnerable to Hacks Without Interacting with Malicious Files

Researchers Uncover ZionSiphon Malware Aiming at Israeli Water and Desalination Operational Technology Systems

Recent cybersecurity assessments have identified a new malware strain, dubbed ZionSiphon, explicitly targeting water treatment and desalination infrastructures in Israel. This malware, discovered by cybersecurity firm Darktrace, showcases advanced capabilities such as establishing persistence, altering local configuration files, and scanning for operational technology (OT)-specific services within local networks. The emergence…

Read MoreResearchers Uncover ZionSiphon Malware Aiming at Israeli Water and Desalination Operational Technology Systems