The Breach News

Ransomware Attacks Elevate Cybersecurity to a National Focus

Blockchain & Cryptocurrency, Cybercrime, Cybercrime as-a-Service Public-Private Collaboration Essential for Ransomware Response, Asserts Anne Neuberger Akshaya Asokan (asokan_akshaya) • November 27, 2025 Anne Neuberger, former Deputy NSA for Cyber and Emerging Technologies, White House (Image: ISMG) At a recent event in London, Anne Neuberger, former Deputy National Security Adviser for…

Read MoreRansomware Attacks Elevate Cybersecurity to a National Focus

OpenAI Uncovers 2025 Data Breach Through Mixpanel, Compromising API User Information

In a significant breach impacting user trust, OpenAI recently alerted its API platform users about a data exposure event linked to third-party analytics provider Mixpanel. On November 27, 2025, OpenAI disclosed that unauthorized access to Mixpanel’s systems on November 9 resulted in the leak of sensitive data, including names, email…

Read MoreOpenAI Uncovers 2025 Data Breach Through Mixpanel, Compromising API User Information

Urgent Notice: WordPress Admins Advised to Uninstall miniOrange Plugins Due to Serious Vulnerability

In a significant development for WordPress users, a critical security vulnerability has been identified in miniOrange’s Malware Scanner and Web Application Firewall plugins, prompting an urgent recommendation for website owners to uninstall these tools. The detected flaw, designated as CVE-2024-2172, scores a staggering 9.8 on the CVSS scale, representing a…

Read MoreUrgent Notice: WordPress Admins Advised to Uninstall miniOrange Plugins Due to Serious Vulnerability

Hacker Attempted to Contaminate Florida’s Water Supply by Breaching Treatment System

In a significant cybersecurity incident, hackers infiltrated the computer system of a water treatment facility in Florida, manipulating sodium hydroxide (NaOH) levels in the water supply. This breach, which starkly highlights vulnerabilities in critical infrastructure, occurred on February 5 and involved remote access to the facility’s operational controls. During a…

Read MoreHacker Attempted to Contaminate Florida’s Water Supply by Breaching Treatment System

Comodo Forums Breach Reveals Data of 245,000 Users—Exploitation of Recent vBulletin 0-Day Vulnerability

Cybersecurity firm Comodo is urging users of its ITarian Forum to change their passwords immediately following a significant data breach involving the exploitation of a vBulletin vulnerability. This incident has reportedly compromised the login credentials of nearly 245,000 registered users of the forum. On September 29, an attacker leveraged a…

Read MoreComodo Forums Breach Reveals Data of 245,000 Users—Exploitation of Recent vBulletin 0-Day Vulnerability

WLF Races to Safeguard User Funds

Blockchain & Cryptocurrency, Cryptocurrency Fraud, Cybercrime UK Fraud Investigators Conduct Arrests in $28M Basis Markets Rug-Pull Investigation Rashmi Ramesh (rashmiramesh_) • November 27, 2025 Image: Shutterstock Each week, Information Security Media Group compiles cybersecurity incidents involving digital assets. Recently, World Liberty Financial has been working to secure user funds after…

Read MoreWLF Races to Safeguard User Funds

OpenAI Acknowledges Data Breach Following Phishing Attack on Analytics Partner

OpenAI has announced that it is in the process of alerting affected organizations, administrators, and users directly following a recent incident involving Mixpanel. The company stated that there is no evidence suggesting that any systems or data outside of Mixpanel’s environment have been impacted. Despite this, OpenAI remains vigilant, actively…

Read MoreOpenAI Acknowledges Data Breach Following Phishing Attack on Analytics Partner

Fortra Addresses Critical RCE Vulnerability in FileCatalyst Transfer Tool

Critical Security Flaw Discovered in Fortra FileCatalyst Exposes Servers to Remote Code Execution Fortra has disclosed a significant security vulnerability affecting its FileCatalyst file transfer solution, which could enable unauthenticated attackers to execute malicious code on vulnerable servers. This vulnerability, assigned the identifier CVE-2024-25153, has received a high severity rating…

Read MoreFortra Addresses Critical RCE Vulnerability in FileCatalyst Transfer Tool