The Breach News

Chinese Hackers Set Sights on Cisco Email Gateways

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime, Network Firewalls, Network Access Control Cisco Talos Links Ongoing Attacks to UAT-9686 Akshaya Asokan (asokan_akshaya) • December 18, 2025 Image: Anucha Cheechang/Shutterstock Recent reports indicate that likely state-sponsored hackers from China are taking advantage of an unpatched vulnerability in Cisco email appliances,…

Read MoreChinese Hackers Set Sights on Cisco Email Gateways

How Hackers Compromised a Major Repository, Endangering 13,000 Individuals

On December 18, 2025, Australia’s University of Sydney reported a significant cybersecurity breach, revealing that hackers compromised an online coding repository, extracting personal information belonging to thousands of staff, students, alumni, and donors. The university characterized the breached data as ‘historic,’ which has placed one of Australia’s leading academic institutions…

Read MoreHow Hackers Compromised a Major Repository, Endangering 13,000 Individuals

Chinese Hackers Take Advantage of New Zero-Day Vulnerability in Barracuda’s ESG Appliances

Barracuda Networks disclosed a serious cybersecurity incident involving a zero-day vulnerability within its Email Security Gateway (ESG) appliances, allegedly exploited by Chinese threat actors. This vulnerability has been designated as CVE-2023-7102 and has led to the deployment of backdoors on a select number of affected devices. The vulnerability involves an…

Read MoreChinese Hackers Take Advantage of New Zero-Day Vulnerability in Barracuda’s ESG Appliances

US Government Issues Warning About New Strain of Chinese ‘Taidoor’ Virus

Recent disclosures from US intelligence agencies reveal an alarming resurgence of a 12-year-old strain of malware, known as “Taidoor.” This variant is believed to be employed by state-sponsored actors from China, targeting a wide array of institutions, including government bodies, corporations, and think tanks. The malware, which has been active…

Read MoreUS Government Issues Warning About New Strain of Chinese ‘Taidoor’ Virus

Lazarus Group Integrates New BeaverTail Variant into Developer Tools

On December 18, 2025, cybersecurity firm Darktrace unveiled new findings regarding a perilous variant of BeaverTail malware, classified as a JavaScript-based information stealer. This malware, associated with North Korea’s infamous Lazarus Group, is part of a growing wave of cyber-attacks directed at the financial and cryptocurrency sectors. The research, disseminated…

Read MoreLazarus Group Integrates New BeaverTail Variant into Developer Tools

Urgent Zero-Day Vulnerability in Apache OfBiz ERP Poses Security Risk to Businesses

Zero-Day Vulnerability Discovered in Apache OfBiz ERP System A serious zero-day vulnerability has been identified in Apache OfBiz, an open-source Enterprise Resource Planning (ERP) system. This flaw poses significant risks as it could potentially allow attackers to bypass essential authentication safeguards. The vulnerability is classified as CVE-2023-51467, linked specifically to…

Read MoreUrgent Zero-Day Vulnerability in Apache OfBiz ERP Poses Security Risk to Businesses