The Breach News

Drupal Releases Core CMS Updates to Address Multiple Vulnerabilities

Drupal Issues Urgent Security Updates for Multiple Vulnerabilities Drupal, the widely used open-source content management system, has announced critical security updates addressing several “moderately critical” vulnerabilities found in Drupal Core, posing potential risks to hundreds of thousands of websites. This alert serves as a crucial reminder for organizations relying on…

Read MoreDrupal Releases Core CMS Updates to Address Multiple Vulnerabilities

‘Severe Unpatched Zero-Day Vulnerability Found in Oracle WebLogic’

Critical Zero-Day Vulnerability Discovered in Oracle WebLogic Server A recent advisory from cybersecurity researchers has raised alarms regarding a critical zero-day vulnerability in the Oracle WebLogic Server application, which remains unpatched and could already be under exploitation by malicious actors. This vulnerability is particularly concerning for enterprises that depend on…

Read More‘Severe Unpatched Zero-Day Vulnerability Found in Oracle WebLogic’

Hackers Trick Meta AI Support Chatbot into Stealing Celebrity Instagram Accounts

Cybersecurity Breach Exposes Instagram Accounts to Exploitation Recent reports indicate that hackers have successfully exploited vulnerabilities within Meta’s AI support systems to target and resell high-value Instagram accounts. Notably, accounts associated with the handles @hey and @jowo are estimated to have a combined gray market value exceeding $1 million. This…

Read MoreHackers Trick Meta AI Support Chatbot into Stealing Celebrity Instagram Accounts

DHS Directs Federal Agencies to Fix Critical Vulnerabilities Within 15 Days

In a significant policy update, the U.S. Department of Homeland Security (DHS) has mandated that federal agencies must address critical security vulnerabilities in their networks within just 15 calendar days of detection, down from a previous timeline of 30 days. This directive, outlined in the Cybersecurity and Infrastructure Security Agency’s…

Read MoreDHS Directs Federal Agencies to Fix Critical Vulnerabilities Within 15 Days

Websites Can Now Monitor You Through Your Hard Drive

Emerging Tracking Technique Raises Privacy Concerns for Internet Users In recent years, websites have increasingly employed sophisticated methods to monitor visitors’ online activities, accumulating data on browsing habits, device fingerprints, and even real-time keystrokes and mouse movements. Recent findings indicate that major tech companies such as Meta and Yandex have…

Read MoreWebsites Can Now Monitor You Through Your Hard Drive

Vulnerability in Pre-Installed Software Poses Remote Hacking Risk for Many Dell Computers

Vulnerability Discovered in Dell SupportAssist Poses Remote Threat to Users Recent reports have unveiled a serious remote code execution vulnerability in Dell’s SupportAssist utility, a tool pre-installed on a majority of Dell computers. This flaw, identified by 17-year-old independent security researcher Bill Demirkapi, allows potential attackers to compromise systems remotely,…

Read MoreVulnerability in Pre-Installed Software Poses Remote Hacking Risk for Many Dell Computers