The Breach News

New Chaos-C++ Ransomware Hits Windows: Data Wiped and Crypto Stolen

Researchers from Fortinet’s FortiGuard Labs have uncovered a troubling development in the world of ransomware: the Chaos ransomware has evolved into a more rapid and aggressive variant known as Chaos-C++. This alarming progression marks a significant shift in its operational strategy since it is reportedly the first iteration not built…

Read MoreNew Chaos-C++ Ransomware Hits Windows: Data Wiped and Crypto Stolen

Remote Encryption Attacks on the Rise: The Risks of a Single Vulnerable Device

Recent reports indicate a worrying trend among ransomware groups that are increasingly employing remote encryption methods in their cyberattacks. This evolution signifies a notable escalation in the strategies utilized by financially motivated actors seeking to amplify the efficacy of their operations. Mark Loman, the Vice President of Threat Research at…

Read MoreRemote Encryption Attacks on the Rise: The Risks of a Single Vulnerable Device

Ivanti Vulnerability CVE-2025-0282 Under Active Exploitation, Affects Connect Secure and Policy Secure

Critical Security Flaw in Ivanti Products Under Active Exploitation Ivanti has issued a warning regarding a severe security vulnerability affecting its Ivanti Connect Secure, Policy Secure, and ZTA Gateways, which has been subject to active exploitation since mid-December 2024. The vulnerability, identified as CVE-2025-0282, has been assigned a high CVSS…

Read MoreIvanti Vulnerability CVE-2025-0282 Under Active Exploitation, Affects Connect Secure and Policy Secure

Hackers Inserted Fake Digital Evidence on Devices of Indian Activists and Lawyers

A recently identified hacking group has been associated with targeted cyber operations against human rights activists, academics, and legal professionals in India. This activity appears aimed at implanting false digital evidence against these individuals. The cybersecurity firm SentinelOne has linked these attacks to a group it monitors under the name…

Read MoreHackers Inserted Fake Digital Evidence on Devices of Indian Activists and Lawyers

Hackers Take Advantage of LFI Vulnerability in File-Sharing Platforms

Attack Surface Management, Security Operations Attackers Access Server Files and Compromise Credentials in Gladinet CentreStack and Triofox Anviksha More (AnvikshaMore) • October 10, 2025 Image: Zakharchuk/Shutterstock Recent research reveals that hackers are exploiting a vulnerability that allows unauthorized access to critical files in file-sharing and remote-access applications, including Gladinet CentreStack…

Read MoreHackers Take Advantage of LFI Vulnerability in File-Sharing Platforms

Microsoft Issues Alert on New “Payroll Pirate” Scam Targeting Employee Direct Deposits

Microsoft has issued a warning about a sophisticated scam known as “Payroll Pirate,” which is currently targeting employees by redirecting their paycheck deposits into accounts controlled by fraudsters. This attack begins with the compromise of employee profiles on platforms like Workday or other cloud-based HR services. The scammers initiate the…

Read MoreMicrosoft Issues Alert on New “Payroll Pirate” Scam Targeting Employee Direct Deposits

Crypto Betting Leader Shuffle Acknowledges Significant User Data Breach

Shuffle, a prominent player in the crypto betting sector, has announced a significant data breach that compromised the personal information of a substantial portion of its user base. The source of this breach has been traced back to Fast Track, Shuffle’s customer relationship management (CRM) provider, which itself exhibited security…

Read MoreCrypto Betting Leader Shuffle Acknowledges Significant User Data Breach