The Breach News

Alert: Active Exploitation of New Android Zero-Day Vulnerability

Google has alerted the cybersecurity community about an exploited vulnerability in Android devices utilizing Qualcomm chipsets. The vulnerability, identified as CVE-2020-11261, has been assigned a CVSS score of 8.4 and relates to improper input validation in the Graphics component of Qualcomm’s software. This flaw could potentially allow attackers to cause…

Read MoreAlert: Active Exploitation of New Android Zero-Day Vulnerability

Vaping Surges in Schools, Leading to Increased Bathroom Surveillance Efforts

Surveillance in Schools Raises Concerns Over Privacy and Vaping Enforcement Recent actions taken in schools regarding vaping detection have generated significant concerns among students, particularly regarding the implications of surveillance technologies. While many students express support for the use of vape detectors in school bathrooms, the potential for expanded surveillance…

Read MoreVaping Surges in Schools, Leading to Increased Bathroom Surveillance Efforts

EasyJet Faces Data Breach, Exposing Information of 9 Million Customers

EasyJet Faces Cyber-Attack, Exposing Customer Data British low-cost airline EasyJet has confirmed that it has suffered a significant cyber-attack, which the company characterized as “highly sophisticated.” The breach has affected approximately 9 million customers, revealing their email addresses and travel information, as stated in an official release issued today. Among…

Read MoreEasyJet Faces Data Breach, Exposing Information of 9 Million Customers

US Cyber Defense Agency Acknowledges Significant Staffing Shortage

Government, Industry Specific Internal Memo Reveals Staffing Crisis at CISA, Blames Trump-Era Cuts Chris Riotta (@chrisriotta) • November 18, 2025 Madhu Gottumukkala, acting director of CISA. (Image: CISA) The Cybersecurity and Infrastructure Security Agency (CISA) is grappling with a significant staffing crisis, as revealed in a recent internal memo from…

Read MoreUS Cyber Defense Agency Acknowledges Significant Staffing Shortage

‘123456’ Retains Top Spot on India’s Password List, Exposing Vulnerable Digital Security Practices

For the second consecutive year, “123456” has emerged as the most common password in India, as reported by NordPass. Despite attempts by users to enhance security with added symbols, many continue to employ easily guessable combinations. Experts caution that weak and reused passwords account for 80% of data breaches, emphasizing…

Read More‘123456’ Retains Top Spot on India’s Password List, Exposing Vulnerable Digital Security Practices

Fortinet Releases Essential Security Updates for FortiClient Linux Vulnerability

Critical Security Flaw in FortiClientLinux Exposes Users to Arbitrary Code Execution Fortinet has announced the release of critical patches aimed at resolving a significant security vulnerability affecting its FortiClientLinux software. This flaw, tracked as CVE-2023-45590, has been rated with a CVSS score of 9.4 on a 10-point scale, indicating a…

Read MoreFortinet Releases Essential Security Updates for FortiClient Linux Vulnerability

Purple Fox Rootkit Now Capable of Spreading to Other Windows Systems

Purple Fox, previously known for infecting Windows systems through various exploit kits and phishing campaigns, has evolved to include a new propagation technique that resembles worm-like behavior. Recent findings indicate a substantial uptick in its activity, with Guardicore researchers reporting a 600% increase in incidents since May 2020. This latest…

Read MorePurple Fox Rootkit Now Capable of Spreading to Other Windows Systems

Natura, Brazil’s Leading Cosmetic Brand, Leaks Users’ Personal Information

Natura Data Breach Exposes Millions of Customer Records In a significant cybersecurity incident, Brazil’s largest cosmetics firm, Natura, inadvertently left a vast trove of sensitive consumer information exposed online. A recent investigation revealed that the company neglected to secure hundreds of gigabytes of data, leading to potential unauthorized access to…

Read MoreNatura, Brazil’s Leading Cosmetic Brand, Leaks Users’ Personal Information

Google Discovers New Malware Backdoors Associated with Iran

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime Iranian Hacking Group Unleashes Array of Custom Malware Variants Akshaya Asokan (asokan_akshaya) • November 18, 2025 Image: Evgeniyqw/Shutterstock Google has issued a warning regarding a state-sponsored Iranian hacking group known for targeting the aerospace and defense sectors in the Middle East. This…

Read MoreGoogle Discovers New Malware Backdoors Associated with Iran