The Breach News

Suspected Fraud Leader Deported to China

Blockchain & Cryptocurrency, Cryptocurrency Fraud, Fraud Management & Cybercrime Significant Events: Unleash Protocol Hack and LastPass Breach Linked to Crypto Thefts Rashmi Ramesh (rashmiramesh_) • January 8, 2026 Image: Shutterstock In this latest weekly review by Information Security Media Group, we analyze significant cybersecurity incidents involving digital assets. This week…

Read MoreSuspected Fraud Leader Deported to China

UNAM Faces Cyberattack, Assures No Data Breach Occurred

UNAM Confirms Cyberattack Amidst Increased Targeting of Educational Institutions The Universidad Nacional Autónoma de México (UNAM) has reported a cyberattack affecting five of its IT systems, detected and contained during the winter vacation period. The institution activated its security protocols promptly, confirming that no data was extracted in the aftermath…

Read MoreUNAM Faces Cyberattack, Assures No Data Breach Occurred

Cisco Alerts Users to Vulnerability in IOS and IOS XE Software Following Exploitation Attempts

Cisco Warns of Remote Code Execution Vulnerability in IOS and IOS XE Software Cisco has issued a warning regarding a significant vulnerability affecting its IOS Software and IOS XE Software, which could allow an authenticated remote attacker to execute arbitrary code on compromised systems. This medium-severity security flaw, designated as…

Read MoreCisco Alerts Users to Vulnerability in IOS and IOS XE Software Following Exploitation Attempts

GandCrab Ransomware and Ursnif Virus Distributing Through MS Word Macros

Security researchers have identified two distinct malware campaigns targeting systems through phishing strategies, one distributing both the Ursnif data-stealing trojan and GandCrab ransomware, while the other focuses solely on Ursnif. These threats originate from two separate cybercriminal groups but exhibit several operational similarities. Both campaigns initiate through phishing emails containing…

Read MoreGandCrab Ransomware and Ursnif Virus Distributing Through MS Word Macros

ChatGPT Faces New Data-Exploitation Attack, Highlighting Ongoing AI Challenges

OpenAI’s ChatGPT Undergoes Adjustments Following Cyber Vulnerability Exploit In a recent development, OpenAI has implemented critical changes to its AI language model, ChatGPT, to guard against a sophisticated exploitation known as ShadowLeak. The adjustments are aimed at limiting the model’s capability to open or modify URLs, effectively blocking the attack…

Read MoreChatGPT Faces New Data-Exploitation Attack, Highlighting Ongoing AI Challenges

Verizon Seeks $1 Billion Reduction on Yahoo Acquisition Deal Amid Recent Scandals

The saga surrounding Yahoo is far from over, as the company faces fresh scrutiny amidst a series of alarming revelations. Verizon, which had previously committed to acquiring Yahoo for $4.8 billion, is now requesting a substantial discount of $1 billion on the deal, according to recent reports. The demand arises…

Read MoreVerizon Seeks $1 Billion Reduction on Yahoo Acquisition Deal Amid Recent Scandals

Orca and Wiz Resolve Legal Disputes Over Cloud Security Patents

Cloud Security, Litigation, Security Operations Patent Board Ruling Invalidates Three Orca Patents, Resulting in Dismissal of Legal Disputes Michael Novinson (MichaelNovinson) • January 7, 2026 In a significant development within the cloud security sector, Orca Security and Wiz have mutually agreed to dismiss their competing patent infringement lawsuits, with an…

Read MoreOrca and Wiz Resolve Legal Disputes Over Cloud Security Patents

OpenRefine’s Zip Slip Vulnerability Poses Risk of Malicious Code Execution by Attackers

A critical security vulnerability has been uncovered in OpenRefine, an open-source tool for data cleaning and transformation, potentially enabling arbitrary code execution on affected systems. The flaw, designated as CVE-2023-37476, holds a CVSS score of 7.8 and is categorized as a Zip Slip vulnerability. It affects versions 3.7.3 and earlier,…

Read MoreOpenRefine’s Zip Slip Vulnerability Poses Risk of Malicious Code Execution by Attackers