The Breach News

Mobile Bootloaders from Leading Manufacturers Exposed to Ongoing Vulnerabilities

Recent research has revealed critical zero-day vulnerabilities in mobile bootloaders from several prominent manufacturers, potentially exposing devices to persistent root access for attackers. This discovery, made by a team of nine security experts from the University of California, Santa Barbara, employed a specialized tool known as BootStomp, designed to automate…

Read MoreMobile Bootloaders from Leading Manufacturers Exposed to Ongoing Vulnerabilities

San Francisco Calls on Apple and Google to Remove AI ‘Nudify’ Apps from Their Stores

Apple and Google have received cease-and-desist letters mandating the removal of specific applications that enable users to create “nudified” or nonconsensual nude images. These legal notices, issued by San Francisco City Attorney David Chiu, call on both tech giants to halt their financial gains from potentially harmful technologies. On Thursday,…

Read MoreSan Francisco Calls on Apple and Google to Remove AI ‘Nudify’ Apps from Their Stores

Evidence of Vulnerabilities in German Elections: Hackers Compromise Voting Software

Concerns Rise Over Vulnerabilities in German Electoral System Ahead of Federal Elections As Germany prepares for its federal elections on September 24, increasing alarm surrounds the integrity of its electoral process. Approximately 61.5 million eligible voters are preparing to cast their ballots, but recent revelations indicate that the underlying voting…

Read MoreEvidence of Vulnerabilities in German Elections: Hackers Compromise Voting Software

Hackers Can Exploit Syringe Infusion Pumps to Administer Lethal Overdoses Remotely

Vulnerabilities Found in Medfusion 4000 Syringe Infusion Pumps: A Call for Action in Cybersecurity Recent cybersecurity alerts have highlighted significant vulnerabilities in medical devices, particularly the Medfusion 4000 Wireless Syringe Infusion Pump, a critical tool widely utilized in acute care settings. These vulnerabilities pose serious risks, as the devices can…

Read MoreHackers Can Exploit Syringe Infusion Pumps to Administer Lethal Overdoses Remotely

Now, Even Russia’s Top Hackers are Utilizing Clickfix to Compromise Devices

Russian Hacking Group Targets Ukrainian Organizations with Clickfix Technique A prominent hacking group linked to the Russian government has recently deployed a sophisticated cyberattack technique known as Clickfix, which has raised alarms among cybersecurity experts in Ukraine. The country’s Computer Emergency Response Team (CERT) has issued warnings about this method,…

Read MoreNow, Even Russia’s Top Hackers are Utilizing Clickfix to Compromise Devices

Researcher Reveals 10 Zero-Day Vulnerabilities in D-Link 850L Wireless Routers

D-Link Routers Exposed: Ten Critical Vulnerabilities Discovered A significant security breach has come to light involving routers manufactured by Taiwan-based D-Link. A security researcher has uncovered ten critical zero-day vulnerabilities in the D-Link DIR 850L wireless AC1200 dual-band gigabit cloud routers, potentially putting countless users at risk of cyberattacks. These…

Read MoreResearcher Reveals 10 Zero-Day Vulnerabilities in D-Link 850L Wireless Routers

BlueBorne: Urgent Bluetooth Vulnerability Threatens Billions of Devices with Hacking Risks

BlueBorne Vulnerability Poses Significant Threat to Bluetooth Devices Recent security revelations indicate that users of Bluetooth-enabled devices—ranging from smartphones and laptops to smart TVs and Internet of Things (IoT) devices—are vulnerable to malware attacks that can be executed remotely without any user interaction. Researchers at Armis have uncovered a total…

Read MoreBlueBorne: Urgent Bluetooth Vulnerability Threatens Billions of Devices with Hacking Risks

Windows 0-Day Exploit Emerges Concurrently with Microsoft’s Record Patch Release

Exploiting Windows User Class Registry Hives: A New Vulnerability Emerging Recent findings highlight a significant security vulnerability within the Windows operating system, capable of enabling attackers to gain de facto administrative privileges without requiring admin credentials. Will Dormann, a senior principal vulnerability analyst at Tharros Labs, explained in an interview…

Read MoreWindows 0-Day Exploit Emerges Concurrently with Microsoft’s Record Patch Release