The Breach News

Cisco Data Breach Exposes Confidential Infrastructure Details Affecting Major Organizations – CPO Magazine

Cisco Systems has recently experienced a significant data breach, resulting in the exposure of sensitive infrastructure information that could impact several high-profile organizations. The breach’s details reveal that the hackers accessed crucial data, raising alarms about the potential ramifications for various sectors that rely on Cisco’s technology. The primary targets…

Read MoreCisco Data Breach Exposes Confidential Infrastructure Details Affecting Major Organizations – CPO Magazine

Exploit Attempts Documented for New MOVEit Transfer Vulnerability – Urgent Patch Required!

A critical security vulnerability has been identified in the Progress Software MOVEit Transfer platform, posing significant risks to its users. This flaw, designated as CVE-2024-5806, has a high CVSS score of 9.1 and pertains to an authentication bypass issue. Shortly after the details surrounding this vulnerability emerged, attempts to exploit…

Read MoreExploit Attempts Documented for New MOVEit Transfer Vulnerability – Urgent Patch Required!

Kasseika Ransomware Employs BYOVD Technique to Bypass Security Before Encryption

The Kasseika ransomware group has emerged as the latest threat actor exploiting the Bring Your Own Vulnerable Driver (BYOVD) technique to disable security processes on compromised Windows systems. This method allows cybercriminals to terminate antivirus software, facilitating the deployment of ransomware. Kasseika joins other prominent groups, including Akira, AvosLocker, BlackByte,…

Read MoreKasseika Ransomware Employs BYOVD Technique to Bypass Security Before Encryption

Nigeria Dismisses Charges Against Tigran Gambaryan, Imprisoned Binance Executive and Ex-IRS Agent

For eight months, a notable figure in cryptocurrency tracing within law enforcement has experienced a reversal of fortune, as he finds himself imprisoned in Nigeria facing allegations of money laundering and tax evasion. This individual, who has played a pivotal role in developing techniques for tracking cryptocurrency transactions, is now…

Read MoreNigeria Dismisses Charges Against Tigran Gambaryan, Imprisoned Binance Executive and Ex-IRS Agent

Attackers Linked to Black Basta Target Users with SystemBC Malware

Ongoing Social Engineering Campaign Linked to Black Basta Ransomware Group Targets Enterprises A recent investigation has revealed an unfolding social engineering campaign that is reportedly associated with the Black Basta ransomware group. This campaign has led to multiple attempts to breach enterprise defenses, primarily aimed at credential theft and the…

Read MoreAttackers Linked to Black Basta Target Users with SystemBC Malware

Hong Kong Prohibits Access to WhatsApp and Google Drive on Government Computers

HONG KONG: The Hong Kong government has enacted a ban on the use of widely popular applications, including WhatsApp, WeChat, and Google Drive, on work computers for the majority of civil servants, citing concerns about potential security vulnerabilities. The decision, communicated through the latest IT security guidelines from the Digital…

Read MoreHong Kong Prohibits Access to WhatsApp and Google Drive on Government Computers

Severe SQL Injection Vulnerability Discovered in Fortra FileCatalyst Workflow Application

A significant security vulnerability has been identified in Fortra FileCatalyst Workflow that could potentially allow attackers to compromise the application database if not addressed promptly. The issue, designated CVE-2024-5276, has been assigned a critical CVSS score of 9.8. This flaw affects all FileCatalyst Workflow versions up to and including 5.1.6…

Read MoreSevere SQL Injection Vulnerability Discovered in Fortra FileCatalyst Workflow Application