The Breach News

Hackers Compromise Stack Overflow Q&A Site, Exposing User Data

Note: This article has been revised to incorporate new details released by Stack Overflow following adjustments to its initial announcement regarding the security breach. Stack Overflow, a prominent question-and-answer platform catering to programmers, has disclosed that an unidentified group of hackers managed to exploit a vulnerability within its development environment,…

Read MoreHackers Compromise Stack Overflow Q&A Site, Exposing User Data

Webinar | The Future of Privilege: Unified Solutions Across All Environments

Webinar Announcement: The Future of Privilege Management Across Diverse Environments As the digital landscape evolves, businesses face growing challenges surrounding security access and privilege management. A forthcoming webinar titled “The Future of Privilege: One Platform, Every Environment” promises to delve into these pressing issues, equipping business owners with essential insights…

Read MoreWebinar | The Future of Privilege: Unified Solutions Across All Environments

Hackers Compromise Mimecast Certificate for Secure Microsoft 365 Connections

Mimecast Confirms Breach Linked to SolarWinds Cyberattack Mimecast, a prominent cloud-based email management provider, disclosed on Tuesday that a “sophisticated threat actor” had compromised one of its digital certificates integral to secure connections with Microsoft 365 Exchange. This alarming revelation emerged after Microsoft notified Mimecast of potential vulnerabilities. In response,…

Read MoreHackers Compromise Mimecast Certificate for Secure Microsoft 365 Connections

Seven-Year ShadyPanda Attack Targeted 4.3 Million Chrome and Edge Users

Cybersecurity researchers from Koi Security have uncovered a significant espionage scheme orchestrated by a group dubbed ShadyPanda, which has compromised over 4.3 million users of Chrome and Microsoft Edge over the course of roughly seven years. The attackers employed a methodical and deceptive approach by uploading seemingly innocuous browser extensions…

Read MoreSeven-Year ShadyPanda Attack Targeted 4.3 Million Chrome and Edge Users

Iranian Hackers Draw Motivation from Snake Video Game

MuddyWater Utilizes Game Delay Tactic for Malware Deployment David Perera (@daveperera) • December 2, 2025 Image: Larisa Potekhina/Shutterstock Recent analyses by cybersecurity researchers reveal that Iranian state-sponsored hackers have adopted a unique method to hide malware, drawing parallels with the classic mobile game Snake. These findings indicate that hackers have…

Read MoreIranian Hackers Draw Motivation from Snake Video Game

Coupang Suffers 33.7 Million Data Breach – 조선일보

Coupang Experiences Significant Data Breach Affecting 33.7 Million Users In a recent security incident, Coupang, a prominent e-commerce platform based in South Korea, has reported a data breach that has compromised the personal information of approximately 33.7 million accounts. The breach raises significant concerns about user security, particularly given the…

Read MoreCoupang Suffers 33.7 Million Data Breach – 조선일보

WordPress Plugin Warning: Severe SQLi Vulnerability Poses Risk to Over 200,000 Websites

A significant security vulnerability has been identified in the widely used WordPress plugin, Ultimate Member, which boasts over 200,000 active installations. The flaw, labeled CVE-2024-1071, has a critical CVSS score of 9.8, indicating its severity and potential for exploitation. Security researcher Christiaan Swiers is credited with discovering and reporting this…

Read MoreWordPress Plugin Warning: Severe SQLi Vulnerability Poses Risk to Over 200,000 Websites

Experts Reveal Malware Attacks Targeting Colombian Government and Businesses

In a recent development, cybersecurity researchers uncovered an ongoing surveillance initiative targeting Colombian government institutions and private enterprises within the energy and metallurgical sectors. This attack campaign, referred to as “Operation Spalax,” was detailed in a report released Tuesday by ESET, a Slovak cybersecurity firm. The operation first began in…

Read MoreExperts Reveal Malware Attacks Targeting Colombian Government and Businesses