The Breach News

AWS Outage Reveals Vulnerabilities in Cloud Dependency and Concentration Risks

Explore topics like Business Continuity Management / Disaster Recovery, Governance & Risk Management, and IT Risk Management. Insights from Forrester’s Brent Ellis and Dario Maisto on Challenges Facing Large Enterprises Akshaya Asokan (asokan_akshaya) • October 24, 2025 Brent Ellis, Principal Analyst, and Dario Maisto, Senior Analyst, Forrester The recent cascading…

Read MoreAWS Outage Reveals Vulnerabilities in Cloud Dependency and Concentration Risks

Ngioweb Botnet Powers NSOCKS Residential Proxy Network by Targeting IoT Devices

Recent investigations by Lumen Technologies have unveiled the significant role of the Ngioweb malware in powering the well-known residential proxy service NSOCKS, along with related services such as VN5Socks and Shopsocks5. This revelation highlights the ongoing misuse of this malware in various cybercriminal operations. The telemetry data from Black Lotus…

Read MoreNgioweb Botnet Powers NSOCKS Residential Proxy Network by Targeting IoT Devices

Russian TrickBot Gang Hacker Extradited to the U.S. Facing Cybercrime Charges

A Russian national apprehended in South Korea has been extradited to the United States and appeared in a federal court in Ohio on October 20, facing serious charges tied to his involvement with the notorious TrickBot cybercrime group. Authorities allege that Vladimir Dunaev, 38, along with co-conspirators, orchestrated a scheme…

Read MoreRussian TrickBot Gang Hacker Extradited to the U.S. Facing Cybercrime Charges

DHS Plans to Deploy AI-Driven Surveillance Trucks

The U.S. Department of Homeland Security (DHS) is advancing plans for a sophisticated mobile surveillance system that integrates cutting-edge technologies, including artificial intelligence, radar, high-powered cameras, and wireless networking. This initiative was revealed through federal contracting records reviewed by WIRED, outlining a system designed to enhance border surveillance capabilities significantly.…

Read MoreDHS Plans to Deploy AI-Driven Surveillance Trucks

LastPass Discloses Additional Attack Leading to Breach of Encrypted Password Vaults

In December 2022, LastPass disclosed a significant data breach that permitted cybercriminals to access encrypted password vaults. This breach resulted from a coordinated second attack, leveraging vulnerabilities that emerged from an earlier incident. According to the company, a DevOps engineer’s personal computer was compromised through a keylogger, enabling unauthorized access…

Read MoreLastPass Discloses Additional Attack Leading to Breach of Encrypted Password Vaults

DataBreachToday: Infostealers on the Loose

Cybercrime, Fraud Management & Cybercrime, Identity & Access Management Malware Captures Billions of Credentials Mathew J. Schwartz (euroinfosec) • October 24, 2025 Image: Shutterstock Credential theft via infostealers has escalated to alarming levels, as cybercriminals continuously adapt to enhanced security measures. By infiltrating corporate systems with malware that captures session…

Read MoreDataBreachToday: Infostealers on the Loose

Everest Ransomware Reports AT&T Careers Data Breach Involving 576K Records – Hackread – Your Source for Cybersecurity News, Data Breaches, Tech, AI, Crypto, and More

A recent listing on a dark web data leak site operated by the Everest ransomware group claims to have accessed 576,686 personal records associated with AT&T Careers, the recruitment platform of the telecommunications giant. This platform facilitates role applications, resume submissions, and career management for both applicants and employees. This…

Read MoreEverest Ransomware Reports AT&T Careers Data Breach Involving 576K Records – Hackread – Your Source for Cybersecurity News, Data Breaches, Tech, AI, Crypto, and More

Oracle Alerts Users to Active Exploitation of Agile PLM Vulnerability

Oracle has issued a warning regarding a critical security vulnerability in its Agile Product Lifecycle Management (PLM) Framework, which has been actively exploited in real-world scenarios. The flaw, designated as CVE-2024-21287, boasts a CVSS score of 7.5, indicating its severity and potential impact. This vulnerability is particularly concerning because it…

Read MoreOracle Alerts Users to Active Exploitation of Agile PLM Vulnerability