The Breach News

True Identity of Hacker Behind LinkedIn and Dropbox Database Sales Uncovered

The true identity of the hacker known as Tessa88, linked to numerous high-profile cyber incidents such as the breaches of LinkedIn, Dropbox, and MySpace, has been uncovered as Maksim Vladimirovich Donakov, a resident of Penza, Russian Federation. Tessa88 rose to notoriety in early 2016 by offering stolen data from some…

Read MoreTrue Identity of Hacker Behind LinkedIn and Dropbox Database Sales Uncovered

UK ICO Penalizes LastPass for 2022 Data Breach

Encryption & Key Management, General Data Protection Regulation (GDPR), Security Operations UK Regulator Fines Password Manager LastPass £1.2 Million Akshaya Asokan (asokan_akshaya) • December 11, 2025 Image: Shutterstock The UK Information Commissioner’s Office (ICO) has levied a substantial fine of £1.2 million against LastPass, the password management service, following a…

Read MoreUK ICO Penalizes LastPass for 2022 Data Breach

Travel Sector Advised to Intensify Digital Transformation Amid Rising Cyber Breaches – The Manila Times

Travel Industry Urged to Accelerate Digital Transformation Amid Rising Cybersecurity Incidents In light of escalating cyber breaches, experts are advising the travel sector to intensify its digital transformation efforts. A recent report highlights that the industry continues to face a significant threat landscape, making robust cybersecurity measures more crucial than…

Read MoreTravel Sector Advised to Intensify Digital Transformation Amid Rising Cyber Breaches – The Manila Times

Analysis of SystemBC Malware’s C2 Server Reveals Payload Delivery Techniques

Recent cybersecurity investigations have unveiled significant insights into the functioning of a notorious malware family known as SystemBC. This malware operates through a command-and-control (C2) server setup that has been analyzed by researchers at Kroll, revealing its availability for purchase on various underground marketplaces. Kroll’s analysis indicates that purchasers receive…

Read MoreAnalysis of SystemBC Malware’s C2 Server Reveals Payload Delivery Techniques

Enhanced Kimsuky Module Amplifies North Korean Spyware Capabilities

Recent developments have revealed that a North Korean state-sponsored hacking group, known as Kimsuky, has enhanced its repertoire of spyware tools. This scrutiny follows a US government advisory, highlighting their ongoing “global intelligence gathering mission.” Kimsuky, also referred to as Black Banshee or Thallium, is believed to have been operational…

Read MoreEnhanced Kimsuky Module Amplifies North Korean Spyware Capabilities

Concerns Grow in Congress Regarding Expanded US Wiretap Authority

Recent discussions have revealed significant concerns regarding the expansion of government surveillance capabilities, particularly in how commercial landlords may be compelled to assist in these efforts. This development raises alarm for privacy advocates, as these landlords control buildings where millions of Americans engage in their daily work activities. Unlike major…

Read MoreConcerns Grow in Congress Regarding Expanded US Wiretap Authority

US Postal Service Exposed Data of 60 Million Users for Over a Year

The United States Postal Service (USPS) has recently addressed a significant security vulnerability that compromised the personal data of over 60 million customers. This breach allowed unauthorized access to sensitive information for anyone possessing a USPS.com account, raising serious concerns about data security and user privacy. As an independent entity…

Read MoreUS Postal Service Exposed Data of 60 Million Users for Over a Year

Russian Ring Exploits Ex-Immigrant Data for Fraudulent ID Sales

Finance & Banking, Fraud Management & Cybercrime, Fraud Risk Management Telegram-Driven Marketplace Exploits US Gaps in Tracking Former Visa Holders Suparna Goswami (gsuparna) • December 11, 2025 David Maimon, head of fraud insights at SentiLink, and professor at Georgia State University A Russian-operated darknet marketplace is taking advantage of significant…

Read MoreRussian Ring Exploits Ex-Immigrant Data for Fraudulent ID Sales

TriZetto Provider Solutions Alerts Healthcare Clients to Data Breach – The HIPAA Journal

Data Breach Alert: TriZetto Provider Solutions Informs Healthcare Clients TriZetto Provider Solutions recently disclosed a data breach affecting its healthcare provider clients, bringing to light the ongoing risks associated with cybersecurity vulnerabilities in the healthcare sector. This incident underscores the pressing issues that businesses face in safeguarding sensitive information in…

Read MoreTriZetto Provider Solutions Alerts Healthcare Clients to Data Breach – The HIPAA Journal