The Breach News

Weak Passwords Expose AI Hiring Tool Creator Paradox.ai – Krebs on Security

Security Breach Exposes Personal Data of Millions from McDonald’s Job Applications Recent findings by cybersecurity researchers have unveiled a significant security breach affecting millions of job applicants to McDonald’s, exposed through a vulnerable account at Paradox.ai, a firm known for its AI-driven hiring chatbots used by major corporations. The incident…

Read MoreWeak Passwords Expose AI Hiring Tool Creator Paradox.ai – Krebs on Security

GitHub Exploited for Distributing Malware-as-a-Service Payloads

Researchers from Cisco’s Talos security team have identified a sophisticated malware-as-a-service (MaaS) operation that exploited public GitHub accounts to distribute various types of malicious software to targeted entities. This innovative distribution method capitalized on GitHub’s widespread acceptance in enterprise environments, where many organizations rely on the platform for software development.…

Read MoreGitHub Exploited for Distributing Malware-as-a-Service Payloads

Texas Adoption Agency Faces Major Data Breach, Exposing 1.1 Million Records

In a recent investigation, cybersecurity researcher Jeremiah Fowler uncovered a significant data breach involving a vast repository of unsecured records belonging to the Gladney Center for Adoption. This dataset, left unprotected and accessible online without any form of authentication or encryption, poses serious implications for the sensitive information contained within.…

Read MoreTexas Adoption Agency Faces Major Data Breach, Exposing 1.1 Million Records

“Amid Rising Scams and Data Breaches, Is Cyber Liability Insurance Necessary?” – wfmynews2.com

With the Surge in Scams and Data Breaches, Is Cyber Liability Insurance Essential? As the digital landscape evolves, so too does the threat of cybercrime, making headlines with alarming frequency. Recent reports indicate that businesses across various sectors are becoming increasingly vulnerable to cyber incidents. These breaches not only compromise…

Read More“Amid Rising Scams and Data Breaches, Is Cyber Liability Insurance Necessary?” – wfmynews2.com

Hackers Discover Innovative Methods to Conceal Malware within DNS Records

Cybersecurity researchers have uncovered a new tactic employed by hackers to conceal malware within domain name system (DNS) records, a method that poses significant challenges for traditional defense mechanisms. This technique exploits the mapping of domain names to their respective numerical IP addresses, allowing malicious scripts to operate stealthily. Recent…

Read MoreHackers Discover Innovative Methods to Conceal Malware within DNS Records

Wiz Deal Sheds Light on Google’s Multi-Cloud Security Strategy

Cloud Security, Cloud-Native Application Protection Platform (CNAPP), Security Operations COO Francis deSouza Discusses Google Cloud’s Initiative for Unified Multi-Cloud Security Michael Novinson (MichaelNovinson) • July 17, 2025 Francis deSouza, Chief Operating Officer, Google Cloud (Image: Google Cloud) Google’s recent acquisition of Wiz for $32 billion has been largely motivated by…

Read MoreWiz Deal Sheds Light on Google’s Multi-Cloud Security Strategy

UK Retailer Co-op Confirms Data Breach Affects 6.5 Million Members in Major Cyberattack

Co-op, the UK-based retail cooperative, has reported a significant data breach affecting the personal information of approximately 6.5 million members. The incident occurred due to a sophisticated cyberattack in April. The breach compromised critical data including names, addresses, and contact details of its members, marking one of the most extensive…

Read MoreUK Retailer Co-op Confirms Data Breach Affects 6.5 Million Members in Major Cyberattack

GitHub Exploited to Distribute Amadey, Lumma, and Redline InfoStealers in Ukraine

A newly uncovered Malware-as-a-Service (MaaS) scheme is leveraging GitHub repositories to disseminate various infostealer families. This discovery was made by cybersecurity analysts at Cisco Talos, who released their findings today. The report details how the threat actors are utilizing the Amadey bot to directly source malware from public GitHub repositories…

Read MoreGitHub Exploited to Distribute Amadey, Lumma, and Redline InfoStealers in Ukraine