The Breach News

Researchers Reveal Ongoing Cyberattacks Against Asian Governments and Telecommunications Giants

Cybersecurity Alert: Ongoing Campaign Targets Government and Telecom Sectors in Asia Since 2021, high-profile government and telecommunications entities across Asia have been under siege from a persistent cyber threat geared towards deploying rudimentary backdoors and loaders for further malware dissemination. This ongoing campaign has been monitored by cybersecurity firm Check…

Read MoreResearchers Reveal Ongoing Cyberattacks Against Asian Governments and Telecommunications Giants

Russian Cozy Bear Hackers Target Critical Sectors Using Microsoft and AWS Phishing Tactics

Cozy Bear, a hacking group linked to the Russian government, is executing a new phishing campaign that is impacting over 100 organizations worldwide. Utilizing sophisticated tactics, the attackers are employing signed Remote Desktop Protocol (RDP) files disguised as legitimate documents to establish remote access and extract sensitive information. Organizations should…

Read MoreRussian Cozy Bear Hackers Target Critical Sectors Using Microsoft and AWS Phishing Tactics

Live Webinar | Strengthening Incident Response Capabilities to Navigate Emerging Threats

Webinar Announcement: Adapting to Emerging Cyber Threats Through Enhanced Incident Response BreachSpot.com is pleased to announce an upcoming live webinar titled "Navigating Emerging Threats: Strengthening Incident Response Capabilities," designed specifically for business owners and IT professionals seeking to bolster their cybersecurity frameworks. This session will address the evolving landscape of…

Read MoreLive Webinar | Strengthening Incident Response Capabilities to Navigate Emerging Threats

Russian Hacker Dmitry Khoroshev Identified as LockBit Ransomware Operator

LockBit Ransomware Leader Uncovered: Dmitry Khoroshev Implicated in Major Cybercrime Operation In a significant development within the cybersecurity landscape, the U.K.’s National Crime Agency (NCA) has identified and sanctioned Dmitry Yuryevich Khoroshev, a 31-year-old national from Russia, as the mastermind behind the LockBit ransomware operation. This revelation has sparked a…

Read MoreRussian Hacker Dmitry Khoroshev Identified as LockBit Ransomware Operator

Landmark Admin Data Breach Affects 800,000 Insurance Policyholders

Data Breach Exposes Personal Information of 800,000 Individuals at Landmark Admin In a significant cybersecurity incident, Landmark Admin, a provider of administrative services to major U.S. insurance companies, revealed that a cyberattack in May 2024 compromised the personal data of over 800,000 people. This breach underscores the vulnerabilities prevalent within…

Read MoreLandmark Admin Data Breach Affects 800,000 Insurance Policyholders

Rockwell Recommends Disconnecting Internet-Connected ICS Devices Due to Cyber Threats

Rockwell Automation is urging its clients to disconnect any industrial control systems (ICSs) that are not intended for public internet access in order to prevent unauthorized or harmful cyber activities. This advisory comes in light of escalating geopolitical tensions and an increase in adversarial cyber actions across the globe, according…

Read MoreRockwell Recommends Disconnecting Internet-Connected ICS Devices Due to Cyber Threats

FBI and CISA Alert on Increasing AvosLocker Ransomware Threats Targeting Critical Infrastructure

An alarming trend has emerged as the AvosLocker ransomware group has been implicated in attacks targeting crucial infrastructure sectors across the United States, with some incidents surfacing as recently as May 2023. This information comes from a comprehensive cybersecurity advisory jointly issued by the U.S. Cybersecurity and Infrastructure Security Agency…

Read MoreFBI and CISA Alert on Increasing AvosLocker Ransomware Threats Targeting Critical Infrastructure

Thousands of Compromised TP-Link Routers Exploit Years-Long Account Takeover Campaigns

A significant cybersecurity threat has emerged involving a botnet orchestrated by hackers linked to the Chinese government. This network, comprised of thousands of compromised routers, cameras, and other Internet-connected devices, has been employed to execute sophisticated password spray attacks targeted at users of Microsoft’s Azure cloud service. The warning about…

Read MoreThousands of Compromised TP-Link Routers Exploit Years-Long Account Takeover Campaigns