The Breach News

Mirai Botnet Targets Ivanti Connect Secure Vulnerabilities for Malicious Payload Distribution

Two newly identified security vulnerabilities in Ivanti Connect Secure (ICS) devices are currently being exploited to facilitate the notorious Mirai botnet attack. This information was disclosed by Juniper Threat Labs, which highlighted that the vulnerabilities, known as CVE-2023-46805 and CVE-2024-21887, are being leveraged to deliver the botnet’s malware payload. CVE-2023-46805…

Read MoreMirai Botnet Targets Ivanti Connect Secure Vulnerabilities for Malicious Payload Distribution

Two LAPSUS$ Hackers Found Guilty in London Court for Notorious Tech Firm Breaches

Two UK Teenagers Convicted for LAPSUS$ Hacking Activities Targeting Major Tech Firms A jury in London has convicted two teenagers for their roles in the notorious LAPSUS$ hacking group, also known as Slippy Spider. This gang has been linked to a series of high-profile cyberattacks against leading technology companies, employing…

Read MoreTwo LAPSUS$ Hackers Found Guilty in London Court for Notorious Tech Firm Breaches

Schneider Electric Ransomware Attack to Result in $125K Loss, Equivalent to Thousands of Baguettes

A cybercriminal group known as Hellcat ransomware has recently surged into the spotlight after launching an attack on Schneider Electric, a prominent French energy management firm. According to the group, they have exfiltrated around 60GB of sensitive data and are reportedly threatening to release 40GB of it on the dark…

Read MoreSchneider Electric Ransomware Attack to Result in $125K Loss, Equivalent to Thousands of Baguettes

Cyberattacks Aimed at Human Rights Activists in Morocco and Western Sahara

Human Rights Activists Targeted by New Phishing Campaign in Morocco and Western Sahara A new cybersecurity threat has emerged in Morocco and the Western Sahara, particularly targeting human rights activists associated with the Sahrawi Arab Democratic Republic (SADR). This threat actor, identified by Cisco Talos as Starry Addax, employs sophisticated…

Read MoreCyberattacks Aimed at Human Rights Activists in Morocco and Western Sahara

Supreme Court Shows Division in Facebook Data Breach Lawsuit – The Washington Post

The Supreme Court is currently divided in its deliberations regarding a significant legal case involving Facebook and the implications of a major data breach. This case has drawn attention not only for its relevance to Facebook but also for its broader implications in the realm of data privacy and security.…

Read MoreSupreme Court Shows Division in Facebook Data Breach Lawsuit – The Washington Post

Researchers Discover ‘LLMjacking’ Scheme Targeting AI Models in the Cloud

New Cyberattack Technique Exploits Stolen Cloud Credentials to Target LLM Services Cybersecurity researchers have recently uncovered a sophisticated attack that leverages stolen cloud credentials to infiltrate cloud-hosted large language model (LLM) services. This technique, dubbed LLMjacking by the Sysdig Threat Research Team, poses a significant threat as attackers aim to…

Read MoreResearchers Discover ‘LLMjacking’ Scheme Targeting AI Models in the Cloud

Kroll Experiences Data Breach Due to Employee Targeted by SIM Swapping Attack

Kroll Reports SIM Swapping Incident Affecting Employee’s Data On August 19, 2023, Kroll, a prominent risk and financial advisory solutions provider, disclosed that one of its employees fell prey to a sophisticated SIM swapping attack targeting their T-Mobile account. The company emphasized that, without authorization or communication with Kroll, T-Mobile…

Read MoreKroll Experiences Data Breach Due to Employee Targeted by SIM Swapping Attack