The Breach News

Researchers Identify New Infrastructure Deployed by SolarWinds Hackers

The SolarWinds cyberattack, which unfolded last December, has been recognized for its intricate methods of penetrating and maintaining a presence within targeted systems. Microsoft has characterized the involved threat actors as “skillful and methodic operators” committed to employing operational security best practices to evade detection. Recent research has uncovered evidence…

Read MoreResearchers Identify New Infrastructure Deployed by SolarWinds Hackers

Data Breach Exposes 1.6 Million Unemployment Claims in Washington State

On Monday, the Office of the Washington State Auditor (SAO) announced that it is conducting an investigation into a significant security breach that has compromised the personal information of over 1.6 million individuals who applied for unemployment benefits in 2020. This incident marks a serious concern for both affected individuals…

Read MoreData Breach Exposes 1.6 Million Unemployment Claims in Washington State

DOJ Intensifies Efforts Against North Korea’s Cyber Operations

Cybercrime, Fraud Management & Cybercrime Justice Department Secures Guilty Pleas, $15M in Civil Forfeiture Chris Riotta (@chrisriotta) • November 14, 2025 Image: Pamela Au/Shutterstock U.S. federal prosecutors have secured five guilty pleas linked to a scheme wherein North Korean operatives exploited stolen and fabricated identities to gain remote tech positions…

Read MoreDOJ Intensifies Efforts Against North Korea’s Cyber Operations

Data Breach Affected Your Privacy? Here’s How to Respond

Data Breach Notification: A Comprehensive Guide for Business Owners Receiving a notification regarding a data breach can disrupt your day and raise immediate concerns about the security of your personal information. Communications from retailers, financial institutions, or healthcare providers about such events should not be taken lightly. These alerts serve…

Read MoreData Breach Affected Your Privacy? Here’s How to Respond

Hackers Utilize VPN Vulnerabilities to Install SUPERNOVA Malware on SolarWinds Orion

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) recently unveiled details about a sophisticated advanced persistent threat (APT) that has been exploiting the Supernova backdoor to infiltrate SolarWinds Orion installations. The breach was traced back to access gained through a connection to a compromised Pulse Secure VPN device. CISA reported…

Read MoreHackers Utilize VPN Vulnerabilities to Install SUPERNOVA Malware on SolarWinds Orion

New Zoom Screen-Sharing Flaw Allows Unauthorized Access to Restricted Apps

Recent research has uncovered a security glitch in Zoom’s screen sharing feature that could inadvertently expose sensitive information to participants during video calls. This vulnerability, designated as CVE-2021-28133, is notable as it remains unpatched, enabling the possibility of revealing contents from applications not actively being shared, albeit for only brief…

Read MoreNew Zoom Screen-Sharing Flaw Allows Unauthorized Access to Restricted Apps

Tech Firm Targeted as New Cyber Gang Expands Operations

Data Breach Notification, Data Security, Fraud Management & Cybercrime Cybercrime Gang Kazu Demands $200K Ransom, Leaking 1.2 Million Patient Records Marianne Kolbasuk McGee (HealthInfoSec) • November 14, 2025 Texas-based Doctor Alliance investigates claims by the Kazu cybercrime gang, which alleges it stole 1.2 million records. (Image: Doctor Alliance) The Kazu…

Read MoreTech Firm Targeted as New Cyber Gang Expands Operations

DPDP Rules Establish Firm Obligations for Companies: From Prompt Data Breach Reporting to Annual Audits – The Week

New Delhi Introduces Comprehensive Data Protection Framework New Delhi has unveiled a set of stringent Data Personal Data Protection (DPDP) rules aimed at enhancing security and privacy standards for personal data processing in the digital landscape. These regulations establish clear mandates for companies, requiring them to promptly inform both users…

Read MoreDPDP Rules Establish Firm Obligations for Companies: From Prompt Data Breach Reporting to Annual Audits – The Week