The Breach News

REvil Ransomware Group Mysteriously Vanishes Following Notable Attacks

The notorious ransomware group REvil, known for significant cyberattacks including those on JBS and Kaseya, has abruptly vanished from the dark web, prompting speculation regarding its potential dismantling. This sudden disappearance has left multiple darknet and clearnet services linked to the Russia-associated syndicate inoperable, presenting users with the error message…

Read MoreREvil Ransomware Group Mysteriously Vanishes Following Notable Attacks

FBI Takes Down ‘SSNDOB’ ID Theft Operation Selling Personal Information of 24 Million Individuals

The recent dismantling of the illicit online marketplace known as SSNDOB illustrates a significant blow to cybercriminal activities focused on identity theft. Announced by the U.S. Department of Justice (DoJ), this operation involved multiple law enforcement agencies working in tandem, leading to the effective shutdown of a platform that specialized…

Read MoreFBI Takes Down ‘SSNDOB’ ID Theft Operation Selling Personal Information of 24 Million Individuals

BadCandy Implant Targets Cisco Devices Throughout Australia

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime, Governance & Risk Management Unpatched Devices Since October 2023 Exhibit Vulnerabilities Prajeet Nair (@prajeetspeaks) • November 3, 2025 Image: Anucha Cheechang/Shutterstock The Australian Cyber Security Centre (ACSC) has issued a warning regarding ongoing attacks on unpatched Cisco IOS XE enterprise devices. Cybercriminals…

Read MoreBadCandy Implant Targets Cisco Devices Throughout Australia

Customer Information from Toys “R” Us Canada Data Breach Surfaces on the Dark Web – CPO Magazine

Toys “R” Us Canada Data Breach Exposes Customer Data on Dark Web A recent security incident has come to light involving Toys “R” Us Canada, where unauthorized access to sensitive customer information has been exposed on the dark web. This breach raises significant concerns about data privacy and security protocols…

Read MoreCustomer Information from Toys “R” Us Canada Data Breach Surfaces on the Dark Web – CPO Magazine

VMware Issues vCenter Server Update to Address Critical RCE Vulnerability

VMware has announced important software updates targeting a critical security vulnerability in vCenter Server that previously had patches issued but was determined to remain partially unaddressed. This vulnerability, identified as CVE-2024-38812 with a CVSS score of 9.8, involves a heap-overflow issue within the DCE/RPC protocol implementation. According to Broadcom, which…

Read MoreVMware Issues vCenter Server Update to Address Critical RCE Vulnerability

Google Reveals Recent Zero-Day Vulnerabilities in iOS, Chrome, and Internet Explorer Exploited in the Wild

On Wednesday, threat intelligence researchers from Google provided an update on four active zero-day vulnerabilities affecting Chrome, Safari, and Internet Explorer, all of which have been exploited by threat actors in various campaigns this year. This report highlights a concerning trend where three of the vulnerabilities were developed by commercial…

Read MoreGoogle Reveals Recent Zero-Day Vulnerabilities in iOS, Chrome, and Internet Explorer Exploited in the Wild

Zscaler Acquires SPLX to Enhance GenAI Model Security

Artificial Intelligence & Machine Learning, Next-Generation Technologies & Secure Development Acquisition Enhances AI Protective Measures Against Red-Teaming and Compliance Monitoring Michael Novinson (MichaelNovinson) • November 3, 2025 Adam Geller, Chief Product Officer at Zscaler (Image: Zscaler) Zscaler has recently acquired SPLX, an artificial intelligence security startup, enhancing its capabilities in…

Read MoreZscaler Acquires SPLX to Enhance GenAI Model Security

OAIC Reports Ongoing Increase in Notifiable Data Breaches in Early 2025

The Office of the Australian Information Commissioner (OAIC) has unveiled its most recent Notifiable Data Breaches (NDB) report and dashboard for January to June 2025. This report reveals that the frequency of reported data breaches is persistently high across both public and private sectors in Australia. The updated dashboard highlights…

Read MoreOAIC Reports Ongoing Increase in Notifiable Data Breaches in Early 2025