The Breach News

HTTP/2 Rapid Reset Zero-Day Vulnerability Used to Execute Record-Breaking DDoS Attacks

In a concerning escalation of cybersecurity threats, Amazon Web Services (AWS), Cloudflare, and Google reported significant progress in defending against unprecedented distributed denial-of-service (DDoS) attacks that utilize a new exploit known as HTTP/2 Rapid Reset. This emerging vulnerability has raised alarms due to its ability to launch large-scale attacks efficiently.…

Read MoreHTTP/2 Rapid Reset Zero-Day Vulnerability Used to Execute Record-Breaking DDoS Attacks

Sophisticated ‘TajMahal APT Framework’ Evaded Detection for Five Years

A recently disclosed spyware framework, identified as TajMahal, has emerged as a significant threat in the cybersecurity landscape, having reportedly operated undetected for over five years. Cybersecurity researchers from Kaspersky Lab announced the discovery, revealing that this advanced persistent threat (APT) toolkit is characterized by its modular architecture and an…

Read MoreSophisticated ‘TajMahal APT Framework’ Evaded Detection for Five Years

Massive Data Breach: 2.5 Million Users’ Information Exposed from Popular PlayStation and Xbox Gaming Forums

Massive Data Breach Exposes Accounts of 2.5 Million Gamers on Prominent Forums Recent revelations have surfaced regarding a significant data breach affecting two well-known gaming forums, “XBOX360 ISO” and “PSP ISO.” This incident, which occurred in September 2015, involves the exposure of sensitive information belonging to approximately 2.5 million users…

Read MoreMassive Data Breach: 2.5 Million Users’ Information Exposed from Popular PlayStation and Xbox Gaming Forums

Microsoft Alerts on Nation-State Hackers Targeting Critical Atlassian Confluence Vulnerability

Microsoft has recently identified a link between the exploitation of a critical vulnerability in Atlassian Confluence Data Center and Server, marked as CVE-2023-22515, and a state-sponsored group known as Storm-0062 (also referred to as DarkShadow or Oro0lxy). This critical flaw is a privilege escalation vulnerability that has been actively exploited…

Read MoreMicrosoft Alerts on Nation-State Hackers Targeting Critical Atlassian Confluence Vulnerability

Renowned Video Editing Software Website Breached to Distribute Banking Trojan

Title: VSDC Multimedia Editing Software Compromised, Users Targeted by Banking Trojan In a recent cybersecurity incident, the official website of VSDC, a widely used free video editing and conversion tool, was compromised, leading to the distribution of malware to unsuspecting users. The breach, first reported by Dr. Web, reveals that…

Read MoreRenowned Video Editing Software Website Breached to Distribute Banking Trojan

Researcher Exposes White Supremacist Dating Sites, Leaks Data from okstupid.lol – Hackread – Cybersecurity News, Data Breaches, AI, and More

A security researcher known by the pseudonym Martha Root has successfully breached a WordPress-hosted dating site catering to white supremacists, named WhiteDate, along with its associated platforms, WhiteChild and WhiteDeal. This breach has led to the exposure of thousands of user profiles, igniting discussions in cybersecurity and political spheres following…

Read MoreResearcher Exposes White Supremacist Dating Sites, Leaks Data from okstupid.lol – Hackread – Cybersecurity News, Data Breaches, AI, and More