The Breach News

JumpCloud Attributes Security Breach to ‘Advanced Nation-State’ Actor

In a significant security breach, JumpCloud has confirmed that a sophisticated nation-state actor infiltrated its systems, targeting a select group of its customers. Shortly following a reset of API keys for affected clients, Bob Phan, Chief Information Security Officer (CISO) at JumpCloud, stated, “The adversary gained unauthorized access to our…

Read MoreJumpCloud Attributes Security Breach to ‘Advanced Nation-State’ Actor

Dodo and iPrimus Data Breach: Email and SIM Card Compromise | Information Age

Cybersecurity Incident: Dodo and iPrimus Email Accounts Compromised In a recent incident, Vocus Group has confirmed a significant data breach affecting its telecommunications brands, Dodo and iPrimus. The breach has led to the unauthorized access of approximately 1,600 Dodo email accounts and subsequent SIM swap fraud affecting 34 Dodo Mobile…

Read MoreDodo and iPrimus Data Breach: Email and SIM Card Compromise | Information Age

Veeam Releases Patch for Critical RCE Vulnerability in Service Provider Console

Critical Vulnerability Discovered in Veeam Service Provider Console Veeam has issued immediate security updates addressing a significant vulnerability within its Service Provider Console (VSPC). This flaw poses a serious risk, enabling potential remote code execution on vulnerable systems. The vulnerability, designated as CVE-2024-42448, has been assigned a critical CVSS score…

Read MoreVeeam Releases Patch for Critical RCE Vulnerability in Service Provider Console

Researchers Alert Iranian Users to Rampant SMS Phishing Schemes

A recent phishing campaign has emerged, leveraging socially engineered SMS messages to deliver malware to Android devices. This operation appears to impersonate Iranian governmental and social security entities, aiming to extract credit card information and facilitate financial theft from victims’ bank accounts. In contrast to other forms of banking malware,…

Read MoreResearchers Alert Iranian Users to Rampant SMS Phishing Schemes

NSO Permanently Prohibited from Targeting WhatsApp Users with Pegasus Spyware

A federal court ruling has mandated that NSO Group, a prominent spyware manufacturer, must cease using its Pegasus application to target WhatsApp users. This significant decision, delivered by Judge Phyllis J. Hamilton of the U.S. District Court for the Northern District of California, comes in response to a lawsuit initiated…

Read MoreNSO Permanently Prohibited from Targeting WhatsApp Users with Pegasus Spyware

BreachForums Owner Admits Guilt in Cybercrime and Child Pornography Case

Conor Brian Fitzpatrick, the founder of the now-defunct BreachForums site, has entered a guilty plea in connection with various charges linked to the cybercrime forum he ran, which also included possession of child pornography. This significant development, first reported by DataBreaches.net, follows Fitzpatrick, also known as pompompurin, being formally charged…

Read MoreBreachForums Owner Admits Guilt in Cybercrime and Child Pornography Case

UK Ministry of Defence Investigates Data Breach Involving Military Contractor

Ransomware Group Lynx Allegedly Compromises 4TB of Data from UK Military Contractor The U.K. Ministry of Defense is currently probing an alleged data breach by Russian-speaking ransomware group Lynx, which claims to have stolen a substantial four terabytes of data from the Dodd Group, a contractor associated with British military…

Read MoreUK Ministry of Defence Investigates Data Breach Involving Military Contractor