The Breach News

Attackers Exploit Citrix NetScaler Devices for Amplified DDoS Attacks

Citrix has issued an urgent warning to its clientele regarding a pressing security breach affecting its NetScaler application delivery controller (ADC) devices. The vulnerability is being exploited by malicious actors to orchestrate amplified distributed denial-of-service (DDoS) assaults against various targets across the globe. The company stated that attackers, potentially including…

Read MoreAttackers Exploit Citrix NetScaler Devices for Amplified DDoS Attacks

Over 92 Million New Accounts Available for Purchase Due to Additional Unreported Breaches

Recent reports reveal alarming statistics regarding data breaches and their implications for cybersecurity. In 2018 alone, over 5 billion records were exposed due to approximately 6,500 data breaches, as indicated by a report from Risk Based Security. Additionally, DLA Piper documented that more than 59,000 data breaches have been reported…

Read MoreOver 92 Million New Accounts Available for Purchase Due to Additional Unreported Breaches

When ERP Systems Turn into an Attack Surface

Recruitment & Reskilling Strategy, Training & Security Leadership Required Skills: Enterprise Architecture, Configuration, and Vulnerability Management Brandy Harris • December 3, 2025 (Image: Shutterstock) Enterprise resource planning (ERP) platforms, including SAP and Oracle, underlie critical business functions such as finance, human resources, supply chain, and administration. These systems are often…

Read MoreWhen ERP Systems Turn into an Attack Surface

LockBit 5’s “New Secure Blog Domain” Infrastructure Has Already Been Leaked – DataBreaches.Net

In a bold announcement reminiscent of previous disclosures, the LockBit 5.0 cybercriminal group recently introduced a new secure blogging domain, claiming it offers a multilayered protective system against law enforcement activities. This declaration, steeped in confidence, comes at a time when scrutiny over their operations has intensified. Just days prior,…

Read MoreLockBit 5’s “New Secure Blog Domain” Infrastructure Has Already Been Leaked – DataBreaches.Net

Fortinet Alerts Users to Critical FortiOS SSL VPN Vulnerability Possibly Being Actively Exploited

Fortinet has recently uncovered a significant security vulnerability in its FortiOS SSL VPN, identified as CVE-2024-21762, which is currently believed to be actively exploited in the wild. This flaw, with a CVSS score of 9.6, poses a serious risk by enabling the execution of arbitrary code and commands by outside…

Read MoreFortinet Alerts Users to Critical FortiOS SSL VPN Vulnerability Possibly Being Actively Exploited

Microsoft Alerts CrowdStrike to Hackers Targeting Azure Cloud Users

Recent investigations have surfaced an attempt to breach CrowdStrike, a prominent cybersecurity firm, within the backdrop of the ongoing espionage campaign associated with SolarWinds. The intrusion was reportedly thwarted, revealing critical insights into the current landscape of cybersecurity threats. On December 15, Microsoft’s Threat Intelligence Center flagged a third-party reseller’s…

Read MoreMicrosoft Alerts CrowdStrike to Hackers Targeting Azure Cloud Users

LPG Gas Company Exposes Aadhaar Numbers of 6.7 Million Indian Customers

Data Leak Exposes Sensitive Aadhaar Information of Millions A recent security oversight has exposed the personal data of millions of customers belonging to Indane, a state-owned liquefied petroleum gas (LPG) company in India. The breach, discovered by French security researcher Baptiste Robert, also known as “Elliot Alderson” on Twitter, highlights…

Read MoreLPG Gas Company Exposes Aadhaar Numbers of 6.7 Million Indian Customers

Scaling AI from Assistant Tools to Autonomous Workflows

Organizations are increasingly adopting agentic artificial intelligence as part of their evolution in AI integration, embedding it into everyday employee workflows while establishing a cohesive culture, effective data management, and role-specific training. Kim Basile, Chief Information Officer of Kyndryl, emphasized the importance of helping employees perceive AI as a fundamental…

Read MoreScaling AI from Assistant Tools to Autonomous Workflows

Coupang Releases Updated Statement on ‘Information Leak’: “No Evidence of Secondary Damage Discovered in Police Investigation”

사진 확대 [Yonhap News] In a recent announcement, Coupang confirmed a significant data breach that has raised concerns over the safety of personal information held by the company. This incident comes in the wake of growing scrutiny over cybersecurity measures within the e-commerce sector. On December 7, Coupang disclosed, “We…

Read MoreCoupang Releases Updated Statement on ‘Information Leak’: “No Evidence of Secondary Damage Discovered in Police Investigation”