The Breach News

New Bluetooth Vulnerability Could Allow Hackers to Control Android, Linux, macOS, and iOS Devices

A significant security vulnerability affecting Bluetooth technology poses risks to Android, Linux, macOS, and iOS devices. Identified as CVE-2023-45866, this flaw allows malicious actors to bypass authentication procedures, enabling unauthorized access to susceptible devices and the capability to execute commands remotely. According to security researcher Marc Newlin, who disclosed these…

Read MoreNew Bluetooth Vulnerability Could Allow Hackers to Control Android, Linux, macOS, and iOS Devices

New USB-C Espionage Tool Steals Data from Air-Gapped Computers

New Malware Threat Targets Air-Gapped Systems in Southeast Asia Recent research from Kaspersky has unveiled that a sophisticated Chinese threat actor, identified as Cycldek, has enhanced its capabilities to attack air-gapped systems with the intent of exfiltrating sensitive information for espionage purposes. Cycldek, also known as Goblin Panda or Conimes,…

Read MoreNew USB-C Espionage Tool Steals Data from Air-Gapped Computers

LeakedSource Founder Arrested for Allegedly Selling 3 Billion Stolen Credentials

Canadian Man Charged in Massive Data Breach Operation Canadian law enforcement has apprehended an individual in Ontario for allegedly running a website that amassed stolen personal identity records from approximately three billion online accounts. The accused, Jordan Evan Bloom, 27, from Thornhill, is connected to LeakedSource.com, a site known for…

Read MoreLeakedSource Founder Arrested for Allegedly Selling 3 Billion Stolen Credentials

MP Cyber Police Alerts Public to Major Email and Password Leak Involving 680 Million Email IDs

The Madhya Pradesh Cyber Police recently issued a stark warning about a significant breach affecting around 680 million email addresses and passwords in India, highlighting the urgent need for improved online security measures. This incident underscores not just the vast digital vulnerabilities present in India but also the precarious assumptions…

Read MoreMP Cyber Police Alerts Public to Major Email and Password Leak Involving 680 Million Email IDs

WordPress Issues Update 6.4.2 to Fix Critical Remote Attack Vulnerability

WordPress has announced the release of version 6.4.2, which includes a crucial patch addressing a significant security vulnerability. This flaw can potentially be exploited by malicious actors, particularly when coupled with other existing vulnerabilities, posing a risk of arbitrary PHP code execution on affected sites. The vulnerability is characterized as…

Read MoreWordPress Issues Update 6.4.2 to Fix Critical Remote Attack Vulnerability

Magecart Exploits Insecure S3 Buckets on Emergency Services Websites

Hacker Groups Exploit Misconfigured AWS S3 Buckets to Inject Malicious Code into Websites In a stark reminder of ongoing cybersecurity threats, various hacking groups are increasingly exploiting vulnerabilities in misconfigured Amazon S3 data storage buckets to infiltrate websites with malicious code. This tactic is primarily aimed at capturing sensitive information,…

Read MoreMagecart Exploits Insecure S3 Buckets on Emergency Services Websites

Almost Half of Norway’s Population Affected by Healthcare Data Breach

In a significant cybersecurity breach, hackers have compromised a large portion of Norway’s healthcare system, potentially affecting over half of the nation’s population. The attack targeted the Health South-East Regional Health Authority (RHF), resulting in the theft of personal information and medical records belonging to approximately 2.9 million individuals out…

Read MoreAlmost Half of Norway’s Population Affected by Healthcare Data Breach