The Breach News

Emerging Ransomware Group Takes Advantage of Vulnerability in Veeam Backup Software

A recently patched security vulnerability in Veeam Backup & Replication software has been exploited by a developing ransomware group known as EstateRansomware. Research conducted by Singapore-based cybersecurity firm Group-IB identified this new threat actor in early April 2024. Their operations leverage the CVE-2023-27532 vulnerability, which holds a CVSS score of…

Read MoreEmerging Ransomware Group Takes Advantage of Vulnerability in Veeam Backup Software

QEMU Emulator Exploited as a Tunneling Tool to Compromise Company Network

Recent cybersecurity investigations revealed an alarming trend where threat actors are exploiting the QEMU open-source hardware emulator as a tunneling tool during a cyber intrusion aimed at a significant unnamed corporation. This development underscores a shift in tactics, showcasing how attackers are increasingly relying on legitimate software to implement their…

Read MoreQEMU Emulator Exploited as a Tunneling Tool to Compromise Company Network

Iranian Hackers Launch MFA Push Bombing Attacks on Microsoft 365 and Citrix Systems

Iranian Hackers Target Critical Infrastructure with Advanced Techniques Recent intelligence from a collaborative cybersecurity advisory issued by CISA, FBI, and NSA has raised alarms about Iranian hackers aggressively targeting critical infrastructure across sectors such as healthcare, government, IT, engineering, and energy. These threat actors utilize a combination of brute force…

Read MoreIranian Hackers Launch MFA Push Bombing Attacks on Microsoft 365 and Citrix Systems

Suspected Leader of ‘Scattered Spider’ Hacking Group Taken Into Custody – Krebs on Security

A 22-year-old man from the United Kingdom was arrested in Palma de Mallorca, Spain, on charges of leading the cybercrime group known as Scattered Spider. This group has been implicated in a series of high-profile hacking incidents targeting companies including Twilio, LastPass, DoorDash, Mailchimp, and nearly 130 additional firms over…

Read MoreSuspected Leader of ‘Scattered Spider’ Hacking Group Taken Into Custody – Krebs on Security

Tips for Safeguarding Your Data When Booking Holidays Online

In recent years, the travel industry has witnessed a worrying trend of increasing data breaches, jeopardizing customer information and trust. Notable incidents, such as those involving major players like Expedia, British Airways, Booking.com, and Marriott, have highlighted vulnerabilities in digital security protocols. These breaches raise crucial questions about the safety…

Read MoreTips for Safeguarding Your Data When Booking Holidays Online

Critical Diagnosis in Healthcare: The Essential Role of Cybersecurity Hygiene

Cybersecurity Threats in Healthcare: An Urgent Call for Action Recent cyberattacks targeting healthcare institutions underscore the critical need for enhanced cybersecurity measures. The healthcare sector finds itself under siege by cybercriminals who exploit its vulnerabilities, often with devastating consequences for patient care. In particular, ransomware attacks have escalated, holding vital…

Read MoreCritical Diagnosis in Healthcare: The Essential Role of Cybersecurity Hygiene

Access Restricted

Title: Recent Spate of Data Breaches Highlights Vulnerabilities Across Various Sectors In a troubling trend that underscores the escalating risks associated with data security, several notable organizations have recently fallen victim to data breaches. Reports indicate a series of cyber incidents affecting high-profile entities, including telecommunications and health sectors. These…

Read MoreAccess Restricted

Palo Alto Networks Addresses Critical Vulnerability in Expedition Migration Tool

Palo Alto Networks has issued critical security updates in response to five vulnerabilities affecting its products, including a significant flaw that poses an authentication bypass risk. This vulnerability, identified as CVE-2024-5910, has been assigned a high CVSS score of 9.3 and pertains to a missing authentication issue in the Expedition…

Read MorePalo Alto Networks Addresses Critical Vulnerability in Expedition Migration Tool

Malware Campaign Targets Popup Builder WordPress Plugin, Infecting Over 3,900 Websites

New Malware Campaign Exploits Critical Vulnerability in WordPress Plugin A recent wave of cyberattacks has emerged, leveraging a critical security vulnerability in the Popup Builder plugin for WordPress. This has allowed malicious actors to inject harmful JavaScript code into the websites that utilize this plugin. Sucuri, a cybersecurity firm, reports…

Read MoreMalware Campaign Targets Popup Builder WordPress Plugin, Infecting Over 3,900 Websites