The Breach News

Microsoft Alerts on APT28, Backed by Kremlin, Exploiting Major Outlook Vulnerability

Microsoft recently announced the detection of nation-state activities tied to the Kremlin, exploiting a critical security vulnerability in the Outlook email service that has since been patched. This issue allowed unauthorized access to user accounts hosted on Microsoft Exchange servers, raising alarming security concerns for organizations relying on this platform.…

Read MoreMicrosoft Alerts on APT28, Backed by Kremlin, Exploiting Major Outlook Vulnerability

Undetected for Five Years: The Asia-Pacific Cyber Espionage Campaign

Recent investigations have revealed that a sophisticated group of Chinese hackers, known as ‘Naikon APT,’ has been executing a prolonged cyber espionage campaign targeting various governmental entities across Australia, Indonesia, the Philippines, Vietnam, Thailand, Myanmar, and Brunei. This campaign, which has remained undetected for a minimum of five years, continues…

Read MoreUndetected for Five Years: The Asia-Pacific Cyber Espionage Campaign

NYPD Faces Lawsuit Over Alleged Records Gathered from Muslim Surveillance Program

A New Jersey resident has initiated a new open-records lawsuit against the City of New York, building on previous attempts to uncover potential surveillance conducted by the New York City Police Department (NYPD). This comes amid ongoing concerns regarding the NYPD’s Intelligence Division and its past involvement in monitoring Muslim…

Read MoreNYPD Faces Lawsuit Over Alleged Records Gathered from Muslim Surveillance Program

Data Breach at PayPal Subsidiary Affects Up to 1.6 Million Customers

PayPal Reports Data Breach Affecting 1.6 Million Customers of TIO Networks In a significant security incident, PayPal has revealed that a data breach may have compromised personally identifiable information for approximately 1.6 million customers associated with TIO Networks, a payment processing company it acquired in July 2017 for $233 million.…

Read MoreData Breach at PayPal Subsidiary Affects Up to 1.6 Million Customers

University of Phoenix Data Breach Affects 3.5 Million Individuals

Cybercrime, Fraud Management & Cybercrime, Ransomware Emerging Impacts of Clop Ransomware Group’s Oracle E-Business Suite Attack Mathew J. Schwartz (euroinfosec) • December 23, 2025 Image: The Image Party/Shutterstock/ISMG A widespread attack targeting Oracle E-Business Suite software has reverberated throughout the United States, with the University of Phoenix now confirmed as…

Read MoreUniversity of Phoenix Data Breach Affects 3.5 Million Individuals

700Credit Data Breach Exposes Social Security Numbers of 5.8 Million Consumers – Kurt the CyberGuy

Data Breach at 700Credit Exposes Sensitive Information of 5.8 Million Consumers In a significant cybersecurity incident, 700Credit, a credit reporting agency, has reported a data breach that has compromised the Social Security Numbers (SSNs) of approximately 5.8 million consumers. This breach highlights the escalating risks posed to personal data as…

Read More700Credit Data Breach Exposes Social Security Numbers of 5.8 Million Consumers – Kurt the CyberGuy

15,000 GitHub Go Module Repositories at Risk of Repojacking Attacks

GitHub Vulnerability Exposes Over 15,000 Go Repositories to Repojacking Attacks Recent research has unveiled that more than 15,000 Go module repositories on GitHub are at risk of repojacking attacks, a significant cybersecurity concern. Jacob Baines, Chief Technology Officer at VulnCheck, reported that over 9,000 of these vulnerabilities stem from changes…

Read More15,000 GitHub Go Module Repositories at Risk of Repojacking Attacks

U.S. Defense Issues Alert on Three New Malware Strains Deployed by North Korean Hackers

On the third anniversary of the global WannaCry ransomware outbreak, attributed to North Korea, the U.S. government has disclosed details about three new malware variants utilized by state-sponsored North Korean hackers. These variants, named COPPERHEDGE, TAINTEDSCRIBE, and PEBBLEDASH, are designed for remote reconnaissance and the extraction of sensitive information from…

Read MoreU.S. Defense Issues Alert on Three New Malware Strains Deployed by North Korean Hackers

Ransomware Attack Disrupts Romanian Water Authority, Thousands of Systems Affected

Romania’s National Water Authority Faces Severe Ransomware Attack Romania’s national water authority, Romanian Waters (Administrația Națională Apele Române), is in the midst of recovery following a significant ransomware attack that commenced on December 20, 2025. The assault has severely compromised the agency’s operations, impacting around 1,000 computer systems, from workstations…

Read MoreRansomware Attack Disrupts Romanian Water Authority, Thousands of Systems Affected