The Breach News

SonicWall Reports That Hackers Accessed All Firewall Backups

In September 2025, SonicWall disclosed a data breach affecting its cloud backup service, initially indicating that fewer than 5% of its clients were impacted. However, this assessment has evolved as SonicWall, in collaboration with incident response firm Mandiant, has confirmed that attackers accessed backup configuration files for all customers utilizing…

Read MoreSonicWall Reports That Hackers Accessed All Firewall Backups

Teen Members of British LAPSUS$ Group Sentenced for Notable Cyber Attacks

In a recent development highlighting the growing concerns surrounding youth involvement in cybercrime, two adolescents linked to the notorious LAPSUS$ hacking group received sentences for their participation in a series of high-profile cyberattacks on various corporations. Among the targeted firms were prominent names such as Microsoft, Uber, and Rockstar Games.…

Read MoreTeen Members of British LAPSUS$ Group Sentenced for Notable Cyber Attacks

CL0P-Linked Hackers Exploit Oracle Software Vulnerability to Compromise Numerous Organizations

Security Flaw in Oracle E-Business Suite Exposes Multiple Organizations to Cyber Threats On October 10, 2025, a report from Google Threat Intelligence Group (GTIG) and Mandiant confirmed a significant zero-day exploitation of a security vulnerability in Oracle’s E-Business Suite (EBS) software. This flaw has potentially affected numerous organizations since its…

Read MoreCL0P-Linked Hackers Exploit Oracle Software Vulnerability to Compromise Numerous Organizations

Hackers Take Advantage of Aviatrix Controller Flaw to Install Backdoors and Crypto Miners

Critical Vulnerability in Aviatrix Controller Exploited for Malicious Activities A recently uncovered severe security vulnerability in the Aviatrix Controller, a cloud networking platform, has drawn significant attention due to its active exploitation in the wild. Security firm Wiz has reported ongoing incidents where attackers are leveraging this critical flaw to…

Read MoreHackers Take Advantage of Aviatrix Controller Flaw to Install Backdoors and Crypto Miners

Hackers Exploit Unpatched Microsoft SQL Database Servers Using Cobalt Strike

Targeted Attacks on Vulnerable Microsoft SQL Servers Uncovered Recent cybersecurity reports indicate that threat actors are actively exploiting vulnerable internet-facing Microsoft SQL (MS SQL) Servers as part of a disturbing new campaign. This effort aims to install the Cobalt Strike adversary simulation tool on compromised systems, revealing serious implications for…

Read MoreHackers Exploit Unpatched Microsoft SQL Database Servers Using Cobalt Strike

Pentera Acquires DevOcean to Enhance Vulnerability Remediation

Governance & Risk Management, Security Operations, Vulnerability Assessment & Penetration Testing (VA/PT) Pentera Acquires DevOcean to Enhance Attack Simulation and Remediation Michael Novinson (MichaelNovinson) • October 9, 2025 Amitai Ratzon, co-founder and CEO, Pentera (Image: Pentera) Pentera has announced the acquisition of DevOcean, an Israeli startup founded by a former…

Read MorePentera Acquires DevOcean to Enhance Vulnerability Remediation

Discord Reports Hackers Stole Government IDs of 70,000 Users

Discord has reported a significant security breach involving the potential exposure of government identification images belonging to approximately 70,000 users. These IDs, which were submitted as proof of age in accordance with the platform’s usage requirements, were compromised via a third-party customer service provider. This incident highlights the growing risks…

Read MoreDiscord Reports Hackers Stole Government IDs of 70,000 Users

Google Cloud Fixes Privilege Escalation Vulnerability Affecting Kubernetes Service

Google Cloud has addressed a significant medium-severity security vulnerability within its platform that could potentially allow an attacker with access to a Kubernetes cluster to escalate their privileges. This flaw was associated with the Fluent Bit logging container, and Google indicated that an unauthorized user could exploit this access to…

Read MoreGoogle Cloud Fixes Privilege Escalation Vulnerability Affecting Kubernetes Service

Camden Accounting Firm’s Data Breach Leaves Residents Seeking Clarity

COLUMBIA, S.C. (WIS) – Residents of Camden find themselves grappling with uncertainty after receiving alarming notifications from Sheheen, Hancock & Godwin, LLP, a local accounting firm, indicating that their personal data could have been compromised. A detailed statement posted on the firm’s website revealed that an unidentified entity downloaded sensitive…

Read MoreCamden Accounting Firm’s Data Breach Leaves Residents Seeking Clarity