The Breach News

OTsec India Organizers Offer Insights on Operational Technology Security

Governance & Risk Management, Operational Technology (OT) OTsec India Steering Committee Examines Cyberthreats, Compliance Challenges, and Innovation Opportunities Joshua Cunningham-Marsh, Matthew Robertson • November 6, 2025 The OTsec India Summit is a pivotal two-day event bringing together over 200 leaders in IT and OT security from India’s essential infrastructure and…

Read MoreOTsec India Organizers Offer Insights on Operational Technology Security

Local Authority Accidentally Reveals Hundreds of Consultation Respondents’ Information – PublicTechnology

Local Authority Unintentionally Exposes Hundreds of Consultation Respondents’ Information In a significant breach of privacy, a local authority has inadvertently released personal details of hundreds of individuals who provided responses to a public consultation. This incident has raised serious concerns regarding data protection and the safeguarding of sensitive information in…

Read MoreLocal Authority Accidentally Reveals Hundreds of Consultation Respondents’ Information – PublicTechnology

Exploitation of Critical Veeam Vulnerability Fuels Spread of Akira and Fog Ransomware

Recent cybersecurity reports indicate that threat actors are actively exploiting a critical security vulnerability in Veeam Backup & Replication software to deploy ransomware variants such as Akira and Fog. Sophos, a recognized cybersecurity vendor, has noted ongoing attacks that utilize compromised VPN credentials alongside the CVE-2024-40711 vulnerability to gain unauthorized…

Read MoreExploitation of Critical Veeam Vulnerability Fuels Spread of Akira and Fog Ransomware

Caution! Zyxel Firewalls and VPNs Targeted by Active Cyberattacks

Zyxel Networks, a Taiwanese provider of networking equipment, has issued a critical alert regarding a series of attacks targeting select security appliances, specifically firewalls and VPN servers. This warning highlights a sophisticated threat actor employing targeted strategies against devices with remote management or SSL VPN functionalities enabled. According to Zyxel,…

Read MoreCaution! Zyxel Firewalls and VPNs Targeted by Active Cyberattacks

Cavalry Werewolf Compromises Russian Government with New ShellNET Backdoor

Cybersecurity experts at Doctor Web have identified a targeted cyberattack directed at a Russian government-owned entity by a hacker group identified as Cavalry Werewolf. This operation came to light in July 2025, when the organization recognized spam emails originating from its corporate address, prompting an extensive internal inquiry. Doctor Web’s…

Read MoreCavalry Werewolf Compromises Russian Government with New ShellNET Backdoor

Researchers Link LAPSUS$ Cyber Attacks to 16-Year-Old English Hacker

Okta, a prominent provider of authentication services, has identified security firm Sitel as a third-party entity involved in a critical security breach that occurred in late January. This incident permitted the LAPSUS$ extortion gang to gain unauthorized access to an internal account assigned to a customer support engineer. The breach…

Read MoreResearchers Link LAPSUS$ Cyber Attacks to 16-Year-Old English Hacker

Nevada State Hackers Eluded Detection for Several Months

Fraud Management & Cybercrime, Government, Industry Specific Statewide Cyber Breach Affects 60 Agencies Before Ransomware Implementation Chris Riotta (@chrisriotta) • November 6, 2025 Image: Shutterstock/ISMG Recent analyses reveal that a ransomware threat actor compromised Nevada’s statewide government systems for several months prior to executing a ransomware attack. An after-action report…

Read MoreNevada State Hackers Eluded Detection for Several Months

Hyundai IT Services Breach May Impact 2.7 Million Kia and Hyundai Owners – Cybernews

In a significant cybersecurity incident, approximately 2.7 million owners of Hyundai and Kia vehicles may have had their personal data compromised due to a breach in the Hyundai IT services infrastructure. This security breach, reported by Cybernews, raises serious concerns regarding the protection of sensitive consumer information amid an increasingly…

Read MoreHyundai IT Services Breach May Impact 2.7 Million Kia and Hyundai Owners – Cybernews

SolarWinds Hackers Compromise Microsoft Customer Support to Target Clients

In a recent development reflecting the persistent threat posed by Russian cyber actors, Microsoft has disclosed that the hackers behind the SolarWinds breach have resumed operations utilizing password spraying and brute-force methods to compromise customer accounts. This resurgence serves as a stark reminder that the attackers remain active and adept…

Read MoreSolarWinds Hackers Compromise Microsoft Customer Support to Target Clients