The Breach News

China-Linked Daxin Malware Aimed at Multiple Governments in Espionage Operations

A new cyber espionage tool, known as Daxin, has emerged as part of a sustained campaign attributed to threat actors linked to China, targeting governments and critical infrastructure since at least 2013. This sophisticated backdoor has been identified by Broadcom’s Symantec Threat Hunter team, who described it as capable of…

Read MoreChina-Linked Daxin Malware Aimed at Multiple Governments in Espionage Operations

Hospital Insider Breach Spanned a Decade and Triggered FBI Investigation

Data Breach Notification, Data Security, Governance & Risk Management Texas-Based Harris Health Receives FBI Clearance to Notify 5,000 Affected Patients Marianne Kolbasuk McGee (HealthInfoSec) • October 7, 2025 Harris Health, which manages several facilities in Texas, is informing 5,000 patients about a decade-long insider breach. (Image: Harris Health) Harris Health…

Read MoreHospital Insider Breach Spanned a Decade and Triggered FBI Investigation

BreachForums Founder Receives 20-Year Supervised Release, Avoids Jail Time

Conor Brian Fitzpatrick, the creator and administrator of the notorious cybercrime marketplace BreachForums, has been sentenced to time served alongside a 20-year supervision period. Dubbed “pompompurin” online, Fitzpatrick’s activities were brought to light following his arrest in March 2023 in New York, where he was charged with conspiracy to commit…

Read MoreBreachForums Founder Receives 20-Year Supervised Release, Avoids Jail Time

New Zealanders Encouraged to Take Action as Scams Result in $1.6 Billion Loss

The National Cyber Security Centre (NCSC) of New Zealand has introduced a valuable free digital tool aimed at educating citizens on the potential exposure of their online account details. This initiative responds to alarming findings that reveal over 4.3 million New Zealand account credentials have been compromised and are available…

Read MoreNew Zealanders Encouraged to Take Action as Scams Result in $1.6 Billion Loss

New UEFI Secure Boot Flaw May Enable Attackers to Install Malicious Bootkits

A recently discovered security flaw affecting UEFI (Unified Extensible Firmware Interface) systems has been successfully patched. This vulnerability could have allowed adversaries to bypass the Secure Boot feature, raising significant concerns for system security. Labeled with the CVE identifier CVE-2024-7344 and given a CVSS score of 6.7, the vulnerability is…

Read MoreNew UEFI Secure Boot Flaw May Enable Attackers to Install Malicious Bootkits

Microsoft Discovers FoxBlade Malware Targeting Ukraine Hours Before Russian Invasion

Microsoft has recently revealed a concerning escalation in cyberattacks targeting Ukraine’s digital infrastructure. This unprecedented wave of assaults coincided with Russia’s initial missile strikes last week, highlighting a strategic and calculated effort to disrupt critical services within the country. The tech giant’s Threat Intelligence Center (MSTIC) reported that these attacks…

Read MoreMicrosoft Discovers FoxBlade Malware Targeting Ukraine Hours Before Russian Invasion

Kaseya Acquires Inky to Enhance Email Threat Detection for MSPs

Anti-Phishing, DMARC, Email Threat Protection, Fraud Management & Cybercrime Kaseya’s Acquisition to Enhance Email Security and Phishing Defense Michael Novinson (MichaelNovinson) • October 7, 2025 Dave Baggett, CEO and Founder of Inky (Image: Inky) Kaseya’s recent acquisition of Inky, an email security firm based in Washington D.C. and co-founded by…

Read MoreKaseya Acquires Inky to Enhance Email Threat Detection for MSPs

U.S., U.K., and Australia Impose Sanctions on Russian REvil Hacker Linked to Medibank Breach

Trilateral Sanctions Imposed on Russian National Linked to Medibank Ransomware Attack In a coordinated move, the governments of Australia, the United Kingdom, and the United States have initiated financial sanctions against Alexander Ermakov, a Russian national believed to be behind the 2022 ransomware attack on Australian health insurer Medibank. This…

Read MoreU.S., U.K., and Australia Impose Sanctions on Russian REvil Hacker Linked to Medibank Breach

Data Breach at Doctors Imaging Group Puts Sensitive Patient Information at Risk

Doctors Imaging Group, a radiology practice located in Florida with offices in Gainesville and Palatka, has announced a significant data breach affecting over 171,000 individuals. The breach occurred when unauthorized access was gained by cybercriminals between November 5 and November 11, 2024, leading to the theft of sensitive personal, financial,…

Read MoreData Breach at Doctors Imaging Group Puts Sensitive Patient Information at Risk