The Breach News

The Surge in Airline Data Breaches: Understanding the Reasons Behind It

Cybercriminals have increasingly turned their attention to airlines, drawn by the vast amounts of personal data these companies collect. Among the most sought-after information are passports and government identification, which pose a significant risk for long-term identity theft. According to Incogni, a company specializing in data privacy and removal, leaks…

Read MoreThe Surge in Airline Data Breaches: Understanding the Reasons Behind It

Researchers Discover Symlink Vulnerability Facilitating TCC Bypass in iOS and macOS

A critical security vulnerability affecting Apple’s iOS and macOS has recently been reported and subsequently patched. This flaw allowed potential exploitation of the Transparency, Consent, and Control (TCC) framework, posing a significant risk of unauthorized access to sensitive user data. Designated as CVE-2024-44131 with a CVSS score of 5.3, the…

Read MoreResearchers Discover Symlink Vulnerability Facilitating TCC Bypass in iOS and macOS

New BLISTER Malware Leverages Code-Signing Certificates to Bypass Detection

Recent research has unveiled an advanced malware campaign characterized by its use of legitimate code signing certificates to elude cybersecurity measures. This stealthy approach aims to deploy notorious payloads such as Cobalt Strike and BitRAT across compromised systems. The loader, identified as “Blister” by Elastic Security experts, exhibits an alarming…

Read MoreNew BLISTER Malware Leverages Code-Signing Certificates to Bypass Detection

SimonMed Imaging Data Breach Exposes Sensitive Information of Over 1.2 Million Patients – CPO Magazine

Sensitive Patient Information Compromised in SimonMed Imaging Data Breach In a recent cybersecurity incident, SimonMed Imaging has reported a significant data breach affecting the personal information of over 1.2 million individuals. The breach necessitates urgent attention from healthcare providers and business owners alike, as it underscores the vulnerabilities prevalent in…

Read MoreSimonMed Imaging Data Breach Exposes Sensitive Information of Over 1.2 Million Patients – CPO Magazine

Over 300K Prometheus Instances Exposed: Online Leak of Credentials and API Keys

Recent cybersecurity reports indicate a significant vulnerability affecting numerous servers running the Prometheus monitoring and alerting toolkit. Security researchers have identified that thousands of these servers are susceptible to data leakage, denial-of-service (DoS), and remote code execution (RCE) attacks. Experts from Aqua Security, Yakir Kadkoda and Assaf Morag, disclosed that…

Read MoreOver 300K Prometheus Instances Exposed: Online Leak of Credentials and API Keys

Chinese APT Hackers Exploit Log4Shell to Attack Academic Institution

A sophisticated cyber intrusion attributed to a China-based threat group, identified as Aquatic Panda, has been detected leveraging severe vulnerabilities in the Apache Log4j logging system. This attack vector enabled the adversaries to execute various post-exploitation activities, including reconnaissance operations and credential harvesting from their targets. The cybersecurity firm CrowdStrike…

Read MoreChinese APT Hackers Exploit Log4Shell to Attack Academic Institution

One Republican Now Oversees a Significant Portion of US Election Infrastructure

Dominion Voting Systems Acquired by Knowink CEO: Implications for Election Integrity Last week, the acquisition of Dominion Voting Systems by Scott Leiendecker, founder and CEO of Knowink—an electronic poll book manufacturer based in Missouri—has raised questions among election integrity advocates concerning potential impacts on U.S. voter confidence and the electoral…

Read MoreOne Republican Now Oversees a Significant Portion of US Election Infrastructure