The Breach News

Microsoft Alerts to Increasing APT29 Espionage Campaigns Aiming at International Organizations

On Thursday, Microsoft disclosed that a group of Russian state-sponsored threat actors, linked to a cyber attack on its systems in late November 2023, has been targeting additional organizations. The company is now in the process of notifying affected entities. This announcement follows Hewlett Packard Enterprise’s revelation that it fell…

Read MoreMicrosoft Alerts to Increasing APT29 Espionage Campaigns Aiming at International Organizations

U.S. Courts and Government Systems Plagued by Vulnerabilities

Recent investigations have revealed critical vulnerabilities within public records systems that are essential for managing voter registrations and legal filings utilized by courts and government agencies. These flaws have potentially allowed malicious users to manipulate voter registration databases, as well as add, delete, or alter official documents. In a comprehensive…

Read MoreU.S. Courts and Government Systems Plagued by Vulnerabilities

Can Storing Data Offline Help Prevent Ransomware Attacks?

In today’s digital landscape, the growing threat of cybercrime is exemplified by the prevalence of ransomware attacks. These illicit intrusions encrypt sensitive data, making it inaccessible until a ransom is paid, often exacerbating financial losses for victims. This raises an important question regarding defensive strategies: can offline data storage mitigate…

Read MoreCan Storing Data Offline Help Prevent Ransomware Attacks?

Severe OPA Vulnerability Poses Risk to Windows Credentials

Governance & Risk Management, Patch Management, Vulnerability Assessment & Penetration Testing (VA/PT) Security Flaw in Popular Policy Management Tool Exposes Users to Credential Theft Anviksha More (AnvikshaMore) • October 22, 2024 Image: Shutterstock A recently addressed security vulnerability in a widely utilized tool for managing security policies poses a significant…

Read MoreSevere OPA Vulnerability Poses Risk to Windows Credentials

Sports Direct Suffers Cyber Attack Exposing Data of 30,000 Employees – Affected Workers Left in the Dark

Sports Direct Fails to Notify Employees of Major Data Breach: A Warning Sign for Cybersecurity Preparedness Retailer Sports Direct, embroiled in controversy, has come under scrutiny for failing to inform its approximately 30,000 employees about a significant data breach that occurred last autumn. Hackers gained unauthorized access to sensitive employee…

Read MoreSports Direct Suffers Cyber Attack Exposing Data of 30,000 Employees – Affected Workers Left in the Dark

PWC Survey Shows Consumer Worries Over Data Breaches – Communications Today

A recent survey conducted by PricewaterhouseCoopers (PwC) has highlighted growing apprehensions among consumers regarding data breaches, underscoring the increasing importance of cybersecurity in today’s digital landscape. The findings reveal a heightened sense of vulnerability among users, who are becoming increasingly aware of the risks their personal data faces in the…

Read MorePWC Survey Shows Consumer Worries Over Data Breaches – Communications Today

Vanna AI Vulnerability: Prompt Injection Leads to RCE Risks for Databases

High-Severity Vulnerability Discovered in Vanna.AI Library Threatens Remote Code Execution Cybersecurity experts have recently uncovered a significant security vulnerability in the Vanna.AI library, which could allow attackers to achieve remote code execution via exploitative prompt injection methods. This flaw, identified as CVE-2024-5565 and rated with a CVSS score of 8.1,…

Read MoreVanna AI Vulnerability: Prompt Injection Leads to RCE Risks for Databases

Brazilian Authorities Take Down Grandoreiro Banking Trojan, Arrest Key Operatives

Major Disruption of Grandoreiro Malware Operatives in Brazil In a significant law enforcement operation in Brazil, authorities have arrested several individuals linked to the notorious Grandoreiro banking malware. The Federal Police of Brazil announced that they executed five temporary arrest warrants along with 13 search and seizure warrants across multiple…

Read MoreBrazilian Authorities Take Down Grandoreiro Banking Trojan, Arrest Key Operatives