The Breach News

Cloudflare Acknowledges Data Breach Associated with Salesloft Drift Supply Chain Compromise

Cloudflare Confirms Impact from Salesloft Drift Breach On Tuesday, Cloudflare disclosed its involvement in the Salesloft Drift breach, confirming that cybercriminals obtained 104 API tokens associated with its platform. Despite the breach, Cloudflare’s security team, led by Sourov Zaman, Craig Strubhart, and Grant Bourzikas, reported no detected suspicious activity linked…

Read MoreCloudflare Acknowledges Data Breach Associated with Salesloft Drift Supply Chain Compromise

Google Reveals 75 Zero-Day Exploits in 2024 — 44% Aimed at Enterprise Security Solutions

In a recent report, Google disclosed its findings on the exploitation of 75 zero-day vulnerabilities throughout 2024, a decline from 98 detected in 2023 yet an increase from the previous year’s 63. Notably, 44% of these vulnerabilities primarily targeted enterprise products, with 20 affecting security software and appliances. The Google…

Read MoreGoogle Reveals 75 Zero-Day Exploits in 2024 — 44% Aimed at Enterprise Security Solutions

Gcore Successfully Halts a Massive 650 Gbps DDoS Attack Targeting Free Plan Client

Gcore Fends Off Massive DDoS Attack Targeting Client’s CDN Infrastructure In early January, Gcore successfully mitigated a significant cyber assault comprised of multiple Layer 3 and Layer 4 Distributed Denial-of-Service (DDoS) attacks that surged to a record peak of 650 Gbps. The attackers leveraged an extensive network of over 2,000…

Read MoreGcore Successfully Halts a Massive 650 Gbps DDoS Attack Targeting Free Plan Client

Server Misconfiguration Exposes 378GB of Navy Federal Credit Union Data

Cybersecurity researcher Jeremiah Fowler has identified a misconfigured and unsecured server that exposed 378 GB of sensitive internal files belonging to Navy Federal Credit Union (NFCU), the largest credit union in the United States serving military personnel. Fortunately, no member data was compromised during this incident. This server, shared with…

Read MoreServer Misconfiguration Exposes 378GB of Navy Federal Credit Union Data

Russian Hackers Utilize CVE-2025-26633 through MSC EvilTwin to Deploy SilentPrism and DarkWisp

Recent investigations have uncovered that a suspected Russian hacking group known as Water Gamayun, also recognized as EncryptHub or LARVA-208, is exploiting a zero-day vulnerability in Microsoft Windows. This exploitation targets organizations by deploying two new backdoor tools, SilentPrism and DarkWisp, following the patching of a significant security flaw in…

Read MoreRussian Hackers Utilize CVE-2025-26633 through MSC EvilTwin to Deploy SilentPrism and DarkWisp

Cloudflare Confirms Data Breach: Customer Information Compromised Through Salesforce Instances

Cloudflare has publicly acknowledged a security incident involving its Salesforce environment, traced back to the breach of the Salesloft Drift integration. An advanced threat actor, known as GRUB1, exploited OAuth credentials associated with this integration to extract sensitive support case data. While crucial Cloudflare services remained unaffected, the breach did…

Read MoreCloudflare Confirms Data Breach: Customer Information Compromised Through Salesforce Instances

Meta Unveils LlamaFirewall Framework to Prevent AI Jailbreaks, Code Injections, and Security Vulnerabilities

Meta recently introduced LlamaFirewall, a new open-source framework aimed at enhancing the security of artificial intelligence systems. This initiative addresses emerging cyber threats like prompt injection, jailbreaks, and various vulnerabilities that AI technologies face today. The framework is structured around three primary guardrails: PromptGuard 2, Agent Alignment Checks, and CodeShield.…

Read MoreMeta Unveils LlamaFirewall Framework to Prevent AI Jailbreaks, Code Injections, and Security Vulnerabilities

Hydrochasma: New Cyber Threat Targets Shipping Firms and Medical Laboratories in Asia

Recent reports indicate that shipping companies and medical laboratories across Asia have become targets of a sophisticated espionage initiative attributed to a previously unidentified threat actor called Hydrochasma. This activity has been under investigation since October 2022, revealing a pattern of operations that relies solely on readily available public tools…

Read MoreHydrochasma: New Cyber Threat Targets Shipping Firms and Medical Laboratories in Asia