The Breach News

540 Million Facebook User Records Discovered on Unsecured Amazon Servers

In a troubling week for Facebook users, the platform faces serious scrutiny following some alarming breaches of user data. This week, reports surfaced indicating that Facebook inadvertently prompted new users to share passwords linked to their registered email accounts. This incident has been compounded by a significant discovery of user…

Read More540 Million Facebook User Records Discovered on Unsecured Amazon Servers

React Vulnerability Mitigation Causes Cloudflare Outage

Security Operations , Web Application Firewalls (WAF) Outage Briefly Disrupts Services for Zoom, LinkedIn, and Others Akshaya Asokan (asokan_akshaya) • December 5, 2025 Image: Mamun Sheikh/Shutterstock On Friday, Cloudflare, a prominent content delivery network provider, experienced a brief outage that affected several key websites, including well-known platforms like LinkedIn, Zoom,…

Read MoreReact Vulnerability Mitigation Causes Cloudflare Outage

ISMS-P Certified Companies Face Breaches, Sparking Questions About Certification System – Chosun Ilbo

ISMS-P Certified Firms Face Breaches, Leading to Questions About Certification System Recent reports indicate that several firms certified under the ISMS-P framework have experienced significant data breaches, raising concerns about the effectiveness of the certification process. The Information Security Management System for Personal Information (ISMS-P) is designed to assure organizations…

Read MoreISMS-P Certified Companies Face Breaches, Sparking Questions About Certification System – Chosun Ilbo

Severe Exchange Server Vulnerability (CVE-2024-21410) Currently Under Active Attack

On Wednesday, Microsoft disclosed that a severe security vulnerability, identified as CVE-2024-21410, within its Exchange Server software has been actively exploited in the wild. This revelation came shortly after the tech giant released fixes during its monthly Patch Tuesday updates. With a CVSS score of 9.8, the flaw represents a…

Read MoreSevere Exchange Server Vulnerability (CVE-2024-21410) Currently Under Active Attack

FBI, CISA, and NSA Hold Russia Responsible for SolarWinds Cyber Attack

On Tuesday, officials from the U.S. government formally accused the Russian government of orchestrating the significant SolarWinds supply chain compromise unveiled last month. This allegation came as part of a broader assessment conducted by multiple agencies, including the Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency…

Read MoreFBI, CISA, and NSA Hold Russia Responsible for SolarWinds Cyber Attack

Massive Leak of Nude Images from AI Image Generator Startup’s Exposed Database

AI Image Generation Startup Exposes Over a Million Sensitive Images, Raising Serious Privacy Concerns A startup specializing in AI image generation has inadvertently left more than 1 million images and videos created by its systems publicly accessible online. According to research reviewed by WIRED, a significant proportion of these images…

Read MoreMassive Leak of Nude Images from AI Image Generator Startup’s Exposed Database

Hackers Breach Microsoft Support Agent to Access Outlook Email Accounts

A recent data breach has compromised accounts within Microsoft’s Outlook email service, raising significant concerns for users. The incident was confirmed by Microsoft and reported by The Hacker News. Hackers gained unauthorized access to a customer support portal, allowing them to view certain account-related information for a subset of Outlook…

Read MoreHackers Breach Microsoft Support Agent to Access Outlook Email Accounts

CISA Alerts: Brickstorm Malware Targets Critical US Systems

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime Chinese-Linked Malware Campaign Targets Critical Environments With Weak Monitoring Chris Riotta (@chrisriotta) • December 4, 2025 Image: Shutterstock The U.S. federal government has issued a warning regarding a sophisticated malware campaign linked to Chinese state-sponsored actors, known as Brickstorm. This malicious software…

Read MoreCISA Alerts: Brickstorm Malware Targets Critical US Systems