The Breach News

‘Happy Gilmore’ Producer Acquires Spyware Company NSO Group

Recent research has unveiled that North Korean scammers are attempting to deceive U.S. companies into hiring them for architectural design roles, utilizing fabricated profiles, resumes, and Social Security numbers to masquerade as legitimate professionals. This scheme aligns with long-standing efforts by the hermit kingdom to misappropriate billions from organizations worldwide,…

Read More‘Happy Gilmore’ Producer Acquires Spyware Company NSO Group

FBI Disrupts BlackCat Ransomware Operation, Launches Free Decryption Tool

The U.S. Department of Justice (DoJ) has formally declared the disruption of the BlackCat ransomware operation, providing a decryption tool for over 500 victims affected by the malware. This intervention is seen as a significant step in combating ransomware threats that have plagued businesses across the globe. According to court…

Read MoreFBI Disrupts BlackCat Ransomware Operation, Launches Free Decryption Tool

CoinGlass Suffers Significant Proxy Attack, Disrupting Access

TLDR CoinGlass experienced a significant proxy attack that disrupted its global service. No data breaches have been reported as a result of the incident. The company’s technical team successfully restored services and is currently investigating the attack. This incident underscores vulnerabilities within the cryptocurrency sector’s reliance on cloud infrastructure. On…

Read MoreCoinGlass Suffers Significant Proxy Attack, Disrupting Access

Mirai Botnet Variant Leverages Four-Faith Router Vulnerability for DDoS Attacks

A variant of the notorious Mirai botnet has been identified exploiting a recently disclosed vulnerability in Four-Faith industrial routers, with operations reportedly commencing in early November 2024. The primary aim of this botnet is to facilitate distributed denial-of-service (DDoS) attacks, significantly disrupting target networks. This particular botnet is characterized by…

Read MoreMirai Botnet Variant Leverages Four-Faith Router Vulnerability for DDoS Attacks

Iranian Hackers Deploy New Marlin Backdoor in ‘Out to Sea’ Espionage Operation

A noted advanced persistent threat (APT) group linked to Iran has updated its malware arsenal, introducing a new backdoor known as Marlin. This marks an ongoing espionage campaign that has been active since April 2018. The Slovak cybersecurity firm ESET has attributed these attacks, under the codename “Out to Sea”,…

Read MoreIranian Hackers Deploy New Marlin Backdoor in ‘Out to Sea’ Espionage Operation

Exabeam CEO Incorporates AI Agents in SIEM Initiative

Artificial Intelligence & Machine Learning, Next-Generation Technologies & Secure Development, Security Information & Event Management (SIEM) Pete Harteveld Aims to Enhance Security Operations Through Programmatic Strategies Michael Novinson ( MichaelNovinson) • October 10, 2025 Pete Harteveld, CEO, Exabeam (Image: Exabeam) Exabeam, a security operations vendor based in Silicon Valley, has…

Read MoreExabeam CEO Incorporates AI Agents in SIEM Initiative

New Chaos-C++ Ransomware Hits Windows: Data Wiped and Crypto Stolen

Researchers from Fortinet’s FortiGuard Labs have uncovered a troubling development in the world of ransomware: the Chaos ransomware has evolved into a more rapid and aggressive variant known as Chaos-C++. This alarming progression marks a significant shift in its operational strategy since it is reportedly the first iteration not built…

Read MoreNew Chaos-C++ Ransomware Hits Windows: Data Wiped and Crypto Stolen

Remote Encryption Attacks on the Rise: The Risks of a Single Vulnerable Device

Recent reports indicate a worrying trend among ransomware groups that are increasingly employing remote encryption methods in their cyberattacks. This evolution signifies a notable escalation in the strategies utilized by financially motivated actors seeking to amplify the efficacy of their operations. Mark Loman, the Vice President of Threat Research at…

Read MoreRemote Encryption Attacks on the Rise: The Risks of a Single Vulnerable Device