The Breach News

New High-Risk Security Vulnerabilities Discovered in VMware Tools and CrushFTP — Proof of Concept Available

Broadcom has recently issued critical security updates to mitigate a serious vulnerability in VMware Tools for Windows. Recognized as CVE-2025-22230, this flaw poses a significant risk as it allows for potential authentication bypass, earning it a CVSS score of 7.8. The vulnerability arises from inadequate access control measures within the…

Read MoreNew High-Risk Security Vulnerabilities Discovered in VMware Tools and CrushFTP — Proof of Concept Available

Users of Ukraine’s DELTA Military System Targeted by Data-Stealing Malware

Ukrainian Defense System Targeted by Phishing Attacks Linked to Russian Hackers The Computer Emergency Response Team of Ukraine (CERT-UA) has revealed that users of the Delta situational awareness program fell victim to phishing emails originating from a compromised email account belonging to the country’s Ministry of Defense. This incident highlights…

Read MoreUsers of Ukraine’s DELTA Military System Targeted by Data-Stealing Malware

600 GB of Suspected Great Firewall of China Data Released in Largest Leak to Date

A massive leak of approximately 600 GB of data associated with China’s Great Firewall has emerged, revealing internal documents, code, and operational details. Comprehensive information is accessible on the GFW Report. On Thursday, September 11, 2025, the largest data breach tied to the Great Firewall of China surfaced online. The…

Read More600 GB of Suspected Great Firewall of China Data Released in Largest Leak to Date

Inside Jeffrey Epstein’s Yahoo Inbox: Uncovered Details

Recent developments have emerged regarding the handling of sealed documents related to Jeffrey Epstein, sparking discussions around potential pardons. Within this context, Ghislaine Maxwell’s correspondence has positioned her as more than just Epstein’s associate; it highlights her extensive efforts to solidify her connections with influential figures. A freshly unsealed warrant…

Read MoreInside Jeffrey Epstein’s Yahoo Inbox: Uncovered Details

Sticky Werewolf Utilizes Undocumented Implant to Distribute Lumma Stealer in Russia and Belarus

Sticky Werewolf: A New Wave of Cyberattacks Targeting Russia and Belarus The cybersecurity landscape has recently seen the emergence of a new threat actor known as Sticky Werewolf. This group is linked to targeted cyber operations primarily aimed at organizations in Russia and Belarus, utilizing a newly identified implant designed…

Read MoreSticky Werewolf Utilizes Undocumented Implant to Distribute Lumma Stealer in Russia and Belarus

Massive Leak: 500GB of Source Code and Documents from China’s Great Firewall Exposed Online — Censorship Tool Sold to Three Nations

On September 11, a significant data breach emerged in the realm of Chinese censorship, as researchers unveiled an extensive leak of over 500GB of internal documents, source code, work logs, and communications related to the infamous Great Firewall. This leak, which includes essential operational runbooks and deployment repositories for the…

Read MoreMassive Leak: 500GB of Source Code and Documents from China’s Great Firewall Exposed Online — Censorship Tool Sold to Three Nations

Zero-Day Alert: Google Issues Chrome Patch for Exploit Linked to Russian Espionage Attacks

Google has issued urgent out-of-band security updates to rectify a critical vulnerability in its Chrome browser for Windows. This flaw, designated as CVE-2025-2783 (CVSS score: 8.3), has reportedly been exploited in real-world phishing attacks aimed primarily at organizations in Russia. Described as stemming from an “incorrect handle provided in unspecified…

Read MoreZero-Day Alert: Google Issues Chrome Patch for Exploit Linked to Russian Espionage Attacks

HybridPetya Ransomware Bypasses UEFI Secure Boot

Endpoint Security, Hardware / Chip-level Security Eset Uncovers New Malware Variant, HybridPetya Anviksha More (AnvikshaMore) • September 12, 2025 Image: Shutterstock Security researchers at Eset have recently identified a new variant of malware reminiscent of the notorious Petya/NotPetya, which they have named “HybridPetya.” This insight was shared on Friday, emphasizing…

Read MoreHybridPetya Ransomware Bypasses UEFI Secure Boot