The Breach News

Pentera’s 2024 Report Uncovers Hundreds of Weekly Security Events, Emphasizing the Importance of Continuous Validation

markdown Cybersecurity Breaches Continue to Rise Despite Increased Protections In an alarming trend, recent findings indicate that over 51% of organizations have fallen victim to cyberattacks in the past two years. Despite deploying an average of 53 distinct security solutions, the effectiveness of these measures remains questionable. These insights are…

Read MorePentera’s 2024 Report Uncovers Hundreds of Weekly Security Events, Emphasizing the Importance of Continuous Validation

Three Zero-Day Vulnerabilities Affect SonicWall Enterprise Email Security Appliances

SonicWall Tackles Critical Security Vulnerabilities Targeting Email Security Solutions SonicWall has recently patched three severe security vulnerabilities in its email security products that have been exploited in the wild. These vulnerabilities, identified as CVE-2021-20021, CVE-2021-20022, and CVE-2021-20023, were disclosed following an investigation by FireEye’s Mandiant subsidiary. The flaws were reported…

Read MoreThree Zero-Day Vulnerabilities Affect SonicWall Enterprise Email Security Appliances

Microsoft Confirms Its Systems Were Compromised in Major SolarWinds Hack

A comprehensive state-sponsored espionage operation targeting the software company SolarWinds has also extended to Microsoft, according to recent developments in an ongoing investigation. Initial reports suggest that the attack might be more extensive and sophisticated than earlier assessments indicated. Reuters first disclosed Microsoft’s involvement, noting that malicious actors utilized the…

Read MoreMicrosoft Confirms Its Systems Were Compromised in Major SolarWinds Hack

Revealing the Hidden Flaw that Uncovered a Tech Giant’s Data Breach

In a notable incident within the cybersecurity realm, Logitech International S.A., a prominent player in the tech industry, reported a cybersecurity breach on November 14, 2025. The incident stemmed from a zero-day vulnerability in a third-party software platform that facilitated the exfiltration of internal data. Although the breach did not…

Read MoreRevealing the Hidden Flaw that Uncovered a Tech Giant’s Data Breach

Russia’s APT28 Utilizes Windows Print Spooler Vulnerability to Deploy ‘GooseEgg’ Malware

A recent cyber threat has emerged, linked to the nation-state group known as APT28, which has exploited a vulnerability in the Microsoft Windows Print Spooler service to distribute a custom malware variant named GooseEgg. This security flaw, tracked as CVE-2022-38028, received a high CVSS score of 7.8 and has been…

Read MoreRussia’s APT28 Utilizes Windows Print Spooler Vulnerability to Deploy ‘GooseEgg’ Malware

Facebook Disrupts Operation by Palestinian Hackers Distributing Mobile Spyware

On Wednesday, Facebook disclosed its efforts to dismantle cyber operations linked to two state-sponsored hacking groups based in Palestine that have exploited its platform for malware distribution. These activities primarily originated from the Preventive Security Service (PSS), a security entity of the Palestinian Authority, and a group identified as Arid…

Read MoreFacebook Disrupts Operation by Palestinian Hackers Distributing Mobile Spyware

Police Apprehend 21 WeLeakInfo Customers for Purchasing Stolen Personal Data

In a significant law enforcement operation across the United Kingdom, 21 individuals have been apprehended as part of a broader initiative targeting users of the now-defunct data breach service, WeLeakInfo.com. This platform had previously offered subscribers illicit access to a trove of personal information harvested from various online breaches. According…

Read MorePolice Apprehend 21 WeLeakInfo Customers for Purchasing Stolen Personal Data

AI Tool Led the Majority of Cyberattacks, According to Anthropic

Artificial Intelligence & Machine Learning, Next-Generation Technologies & Secure Development, The Future of AI & Cybersecurity Claude Autonomously Conducted 90% of Intrusion Tasks in China-Linked Cyber Campaign Rashmi Ramesh (rashmiramesh_) • November 14, 2025 Image: Shutterstock A Chinese state-sponsored hacking group leveraged the Claude AI model to significantly automate a…

Read MoreAI Tool Led the Majority of Cyberattacks, According to Anthropic