The Breach News

Revealed: SUNSPOT Malware Was Employed to Insert SolarWinds Backdoor

As investigations into the SolarWinds supply-chain breach progress, cybersecurity experts have unveiled a third malware variant, identified as “Sunspot.” This new threat targets the build environment, facilitating the injection of a backdoor into SolarWinds’ Orion network monitoring software. This marks an alarming addition to previously disclosed malware, notably Sunburst and…

Read MoreRevealed: SUNSPOT Malware Was Employed to Insert SolarWinds Backdoor

Admins and Defenders Prepare for Severe Server Vulnerability Threats

Critical Vulnerability Discovered in React Framework: Immediate Action Required A significant security vulnerability has been identified in various versions of the React framework, prompting urgent calls for patching from researchers. This vulnerability, categorized as CVE-2025-55182, has been described by experts as a “perfect 10,” indicating its severity. Specifically, React versions…

Read MoreAdmins and Defenders Prepare for Severe Server Vulnerability Threats

CISA Issues Urgent Alert on Critical Vulnerabilities in Nuclear Medicine Tracking Software

Endpoint Security, Governance & Risk Management, Internet of Things Security Mirion Medical Resolves Bugs in Latest BioDose/NMIS Software Update Marianne Kolbasuk McGee (HealthInfoSec) • December 3, 2025 The Cybersecurity and Infrastructure Security Agency has flagged several vulnerabilities in the BioDose/NMIS software from EC2 Software, a division of Mirion Medical, which…

Read MoreCISA Issues Urgent Alert on Critical Vulnerabilities in Nuclear Medicine Tracking Software

Caution: 5 New Trojan Android Apps Monitoring Users in Pakistan

Recent findings from cybersecurity experts reveal a sophisticated spyware campaign aimed at users in Pakistan. This operation employs malicious variants of legitimate Android applications to conduct covert surveillance and data exfiltration. The spyware masquerades as well-known applications, including those like the Pakistan Citizen Portal, a prayer timing app called Pakistan…

Read MoreCaution: 5 New Trojan Android Apps Monitoring Users in Pakistan

Fraudulent Gambling Network Might Involve More Sinister Activities

A sprawling network believed to be responsible for defrauding individuals through fraudulent online gambling platforms has reportedly been operating for 14 years. Researchers have indicated that this extensive operation is likely supported by a nation-state, targeting both government and private sector organizations in the United States and Europe. Previous investigations…

Read MoreFraudulent Gambling Network Might Involve More Sinister Activities