The Breach News

Russian Power Companies, IT Firms, and Government Agencies Targeted by Decoy Dog Trojan

Cyber Operations Targeting Russian Organizations: The Rise of Decoy Dog Malware Recent reports have unveiled a significant series of cyber attacks against Russian entities, characterized by the deployment of a sophisticated malware known as Decoy Dog. According to cybersecurity firm Positive Technologies, these operations fall under a cluster identified as…

Read MoreRussian Power Companies, IT Firms, and Government Agencies Targeted by Decoy Dog Trojan

County 911 Service Alerts 180,000 People About July Data Breach

Breach Notification, Fraud Management & Cybercrime, Healthcare Muskogee City County 911 Authority Reports Data Breach Affecting Patient Information from 2011 Marianne Kolbasuk McGee (HealthInfoSec) • October 9, 2024 Image: Muskogee City County Enhanced 911 Trust Authority The Muskogee City County Enhanced 911 Trust Authority in Oklahoma is in the process…

Read MoreCounty 911 Service Alerts 180,000 People About July Data Breach

Researchers Discover Vulnerabilities in Azure Health Bot Service Powered by AI

Cybersecurity researchers have identified significant vulnerabilities within Microsoft’s Azure Health Bot Service that could allow malicious actors to traverse customer environments, potentially accessing sensitive patient data. These vulnerabilities were recently reported by Tenable, emphasizing the critical nature of the flaws now patched by Microsoft. Tenable’s investigation highlights that the vulnerabilities…

Read MoreResearchers Discover Vulnerabilities in Azure Health Bot Service Powered by AI

Celebrity TikTok Accounts Hacked with Zero-Click Attack Through DMs

TikTok Confirms Security Breach Targeting High-Profile Accounts TikTok has recently acknowledged a significant security vulnerability that has allowed threat actors to take control of prominent accounts on its platform. This incident, which has raised serious concerns about user safety and data security, was initially reported by Semafor and Forbes, highlighting…

Read MoreCelebrity TikTok Accounts Hacked with Zero-Click Attack Through DMs

Serious Vulnerability in Ivanti Virtual Traffic Manager Could Enable Unauthorized Admin Access

Ivanti Issues Critical Security Updates for Virtual Traffic Manager Flaw Ivanti has announced the release of urgent security updates to address a critical vulnerability in its Virtual Traffic Manager (vTM) that could allow unauthorized users to bypass authentication and gain administrative access. The vulnerability, identified as CVE-2024-7593, carries a high…

Read MoreSerious Vulnerability in Ivanti Virtual Traffic Manager Could Enable Unauthorized Admin Access

SPECTR Malware Aims at Ukrainian Defense Forces in SickSync Operation

The Computer Emergency Response Team of Ukraine (CERT-UA) has issued a critical alert regarding a resurgence of cyber attacks specifically targeting the country’s defense forces. These attacks employ a malware known as SPECTR as part of a broader espionage campaign identified as SickSync. The agency has linked these malicious activities…

Read MoreSPECTR Malware Aims at Ukrainian Defense Forces in SickSync Operation

DumpForums Asserts It Has Breached Cybersecurity Firm Dr.Web, Exfiltrating 10TB of Data

Cyber Breach Alert: DumpForums Claims Dr.Web Data Theft In a significant cybersecurity incident, the notorious hacking forum known as DumpForums has announced that it has orchestrated a major data breach against Dr.Web, a well-established cybersecurity firm based in Russia. The attackers assert they have successfully extracted an astounding 10 terabytes…

Read MoreDumpForums Asserts It Has Breached Cybersecurity Firm Dr.Web, Exfiltrating 10TB of Data