The Breach News

German BSI Neutralizes Android Malware Targeting IoT Devices

German IoT Devices Compromised Through Backdoored Android Applications The German Federal Office for Information Security (BSI) has reported a significant disruption of a botnet that has compromised approximately 30,000 Internet of Things (IoT) devices. This incident involves backdoored digital picture frames and media players operating under modified Android systems, many…

Read MoreGerman BSI Neutralizes Android Malware Targeting IoT Devices

Year-Long Supply Chain Attack on Security Professionals Compromises 390,000 Credentials

Malware Campaign Exploits GitHub and Phishing Strategies to Deploy Attacks In a concerning revelation shared by Datadog, a new malware strain identified as MUT-1244 has been found to utilize a combination of tactics to deploy its malicious payloads, specifically through avenues that exploit both social engineering and legitimate platforms. This…

Read MoreYear-Long Supply Chain Attack on Security Professionals Compromises 390,000 Credentials

Canadian Eyecare Company Care1 Exposes 2.2TB of Patient Data

Unprotected Database Breach Exposes Millions of Patient Records in Canada Cybersecurity researcher Jeremiah Fowler has revealed a significant data breach involving an unprotected database linked to Care1, a Canadian healthcare technology firm specializing in AI-driven software solutions for optometrists. The database has been discovered to house over 4.8 million patient…

Read MoreCanadian Eyecare Company Care1 Exposes 2.2TB of Patient Data

The New Jersey Drone Enigma Might Not Be As Mysterious As It Seems

Rising Drone Sightings in New Jersey: Authorities Investigate In recent weeks, New Jersey has experienced a surge in reports of unidentified drone sightings, prompting widespread concern among residents. Individuals have taken to social media and contacted various authorities, detailing unusual behaviors of these aerial vehicles, particularly at night. The phenomenon…

Read MoreThe New Jersey Drone Enigma Might Not Be As Mysterious As It Seems

Operation Power Down: Global Initiative Aims at DDoS-for-Hire Networks

A recent international initiative, dubbed Operation Power Off, has led to the successful dismantling of more than 27 major platforms engaged in providing Distributed Denial of Service (DDoS) attack services. These platforms, which have been instrumental in facilitating large-scale cyberattacks for clients, have been shut down as part of a…

Read MoreOperation Power Down: Global Initiative Aims at DDoS-for-Hire Networks

Iranian Custom Malware Aims at Fuel System Vulnerabilities

Attack Surface Management, Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime Prajeet Nair (@prajeetspeaks) • December 13, 2024 Image: Shutterstock Recent findings reveal that an Iranian state-sponsored hacking group is deploying sophisticated malware, described by experts as a “cyber weapon,” aimed at infiltrating Internet of Things (IoT) and Operational Technology…

Read MoreIranian Custom Malware Aims at Fuel System Vulnerabilities