The Breach News

Google’s AI-Driven OSS-Fuzz Tool Identifies 26 Vulnerabilities in Open Source Projects

Google recently announced that its AI-driven fuzzing tool, OSS-Fuzz, has successfully uncovered 26 vulnerabilities in multiple open-source code repositories. Among these is a medium-severity flaw identified in the widely used OpenSSL cryptographic library. The open-source security team from Google highlighted in a blog post, shared with The Hacker News, that…

Read MoreGoogle’s AI-Driven OSS-Fuzz Tool Identifies 26 Vulnerabilities in Open Source Projects

U.S. Federal Agencies Directed to Address Hundreds of Actively Exploited Vulnerabilities

The Cybersecurity and Infrastructure Security Agency (CISA) in the United States has highlighted the urgent need for government agencies to address known cyber vulnerabilities. In a recent announcement, the agency published a comprehensive catalog containing vulnerabilities identified from major tech companies including Apple, Cisco, Microsoft, and Google. These vulnerabilities are…

Read MoreU.S. Federal Agencies Directed to Address Hundreds of Actively Exploited Vulnerabilities

183 Million Synthient Stealer Credentials Now Available on Have I Been Pwned – Hackread – Your Source for Cybersecurity News, Data Breaches, Tech, AI, Crypto, and More

A substantial dataset comprising over 183 million stolen usernames and passwords has been integrated into the online resource Have I Been Pwned (HIBP). Dubbed the “Synthient Stealer Log Threat Data,” this significant compilation is not merely a leak from a single entity; rather, it constitutes a vast array of information…

Read More183 Million Synthient Stealer Credentials Now Available on Have I Been Pwned – Hackread – Your Source for Cybersecurity News, Data Breaches, Tech, AI, Crypto, and More

Greater Cincinnati Behavioral Health Services Settles Data Breach Litigation for $850K – The HIPAA Journal

Greater Cincinnati Behavioral Health Services Settles Data Breach Lawsuit for $850,000 In a significant move following a data breach incident, Greater Cincinnati Behavioral Health Services (GCBHS) has agreed to pay $850,000 to settle litigation linked to the unauthorized exposure of sensitive patient information. This settlement underscores the ongoing challenges that…

Read MoreGreater Cincinnati Behavioral Health Services Settles Data Breach Litigation for $850K – The HIPAA Journal

CISA Calls on Agencies to Address Critical “Array Networks” Vulnerability as Attacks Escalate

On Monday, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) included a recently patched critical vulnerability affecting Array Networks AG and vxAG secure access gateways in its Known Exploited Vulnerabilities (KEV) catalog. This addition follows credible reports indicating active exploitation of the flaw in real-world scenarios. The vulnerability, designated as…

Read MoreCISA Calls on Agencies to Address Critical “Array Networks” Vulnerability as Attacks Escalate

Ukraine Uncovers Gamaredon Group: Identifies Russian FSB Officers Behind Hacking Operations

Ukraine’s leading law enforcement and counterintelligence agency has revealed the identities of five individuals allegedly involved in a series of digital intrusions tied to a cyber-espionage group known as Gamaredon, with connections to Russia’s Federal Security Service (FSB). This disclosure highlights the agency’s ongoing efforts to combat cyber threats directed…

Read MoreUkraine Uncovers Gamaredon Group: Identifies Russian FSB Officers Behind Hacking Operations