The Breach News

Ex-Equifax Employee Accused of Insider Trading Related to Data Breach

In a significant development in the realm of cybersecurity, a former employee of Equifax has been charged with insider trading, a situation that follows the company’s disclosure of a significant data breach last year. The U.S. Securities and Exchange Commission (SEC) along with federal authorities in Atlanta disclosed their charges…

Read MoreEx-Equifax Employee Accused of Insider Trading Related to Data Breach

New Phishing Campaign Uses QR Codes and Microsoft Sway to Steal User Credentials

In a concerning development in cybersecurity, researchers have reported an uptick in QR code phishing campaigns, also known as “quishing.” These attacks utilize Microsoft Sway, a legitimate cloud-based platform, to host counterfeit web pages, underscoring how reputable services can be exploited for malicious activities. Jan Michael Alcantara from Netskope Threat…

Read MoreNew Phishing Campaign Uses QR Codes and Microsoft Sway to Steal User Credentials

Safeguard Your Fleet Against Cyber Threats: 10 Essential Steps

Cyberattacks disrupting various businesses have become increasingly prevalent in today’s digital landscape, notably impacting fleet operations. These cyber threats compromise not just vehicle functionality and cargo but also safety, data integrity, and ultimately, the financial health of the organization. Acknowledging these challenges is the fundamental first step toward enhancing cybersecurity…

Read MoreSafeguard Your Fleet Against Cyber Threats: 10 Essential Steps

Security Vulnerabilities in CocoaPods Risk iOS and macOS Apps to Supply Chain Attacks

A significant security vulnerability has been discovered within the CocoaPods dependency manager, critical for Swift and Objective-C Cocoa projects. This flaw has the potential to facilitate software supply chain attacks, posing serious threats to downstream users. Researchers from E.V.A Information Security reported that these vulnerabilities could allow malicious actors to…

Read MoreSecurity Vulnerabilities in CocoaPods Risk iOS and macOS Apps to Supply Chain Attacks

New Mispadu Banking Trojan Takes Advantage of Windows SmartScreen Vulnerability

The Mispadu banking Trojan has been identified as leveraging a recently patched vulnerability in Windows SmartScreen to target users in Mexico. This malware, which first appeared in 2019, has evolved into a new variant that cybercriminals are utilizing to gain unlawful access to sensitive information. According to a report from…

Read MoreNew Mispadu Banking Trojan Takes Advantage of Windows SmartScreen Vulnerability

Attackers Leverage Critical Zimbra Vulnerability Through CC’d Email Addresses

Attackers are leveraging a serious vulnerability in Zimbra mail servers, which are commonly used by medium and large organizations, to carry out remote code execution attacks. This flaw, designated as CVE-2024-45519, allows attackers to execute malicious commands if an administrator has altered the default settings to enable the postjournal service.…

Read MoreAttackers Leverage Critical Zimbra Vulnerability Through CC’d Email Addresses

Detection, Prevention, and Notification of Data Breaches

Please complete the fields below: Select CountryUnited StatesCanadaIndiaAfghanistanAlbaniaAlgeriaAmerican SamoaAndorraAngolaAnguillaAntigua & BarbudaArgentinaArmeniaArubaAustraliaAustriaAzerbaijanBahamasBahrainBangladeshBarbadosBelarusBelgiumBelizeBeninBermudaBhutanBoliviaBosnia & HerzegovinaBotswanaBrazilBritish Virgin IslandsBruneiBulgariaBurkina FasoBurundiCambodiaCameroonCape VerdeCayman IslandsCentral African RepublicChadChileChinaColombiaComorosCook IslandsCosta RicaCôte d’IvoireCroatiaCubaCyprusCzechiaDemocratic Republic of the CongoDenmarkDjiboutiDominicaDominican RepublicEcuadorEgyptEl SalvadorEquatorial GuineaEritreaEstoniaEswatiniEthiopiaFaroe IslandsFijiFinlandFranceFrench GuianaFrench PolynesiaGabonGambiaGeorgiaGermanyGhanaGibraltarGreeceGreenlandGrenadaGuadeloupeGuamGuatemalaGuineaGuinea-BissauGuyanaHaitiHondurasHong KongHungaryIcelandIndonesiaIranIraqIrelandIsraelItalyJamaicaJapanJordanKazakhstanKenyaKiribatiKosovoKuwaitKyrgyzstanLaosLatviaLebanonLesothoLiberiaLibyaLiechtensteinLithuaniaLuxembourgMacaoMadagascarMalawiMalaysiaMaldivesMaliMaltaMarshall IslandsMartiniqueMauritaniaMauritiusMayotteMexicoMicronesiaMoldovaMonacoMongoliaMontserratMoroccoMozambiqueMyanmar (Burma)NamibiaNauruNepalNetherlandsNew CaledoniaNew ZealandNicaraguaNigerNigeriaNiueNorth MacedoniaNorthern Mariana IslandsNorwayOmanPakistanPalauPanamaPapua New GuineaParaguayPeruPhilippinesPolandPortugalPuerto RicoQatarRomaniaRussiaRwandaSamoaSan MarinoSão Tomé & PríncipeSaudi ArabiaSenegalSerbiaSeychellesSierra LeoneSingaporeSlovakiaSloveniaSolomon…

Read MoreDetection, Prevention, and Notification of Data Breaches

Fortnum & Mason Data Breach Exposes Personal Details of 23,000 Customers

Data Breach at Fortnum & Mason Exposes Customer Information In a significant cybersecurity incident, Fortnum & Mason, the esteemed British food retailer known as the "Queen’s grocer," has reported unauthorized access to the personal data of approximately 23,000 customers. This breach stems from a vulnerability in a survey form hosted…

Read MoreFortnum & Mason Data Breach Exposes Personal Details of 23,000 Customers

Internet Archive Hit by Another Breach Due to Unrotated API Tokens Exploited by Hackers

The Internet Archive has recently experienced another cyber intrusion, marking the third significant security breach in October 2024. On October 20, threat actors managed to exploit unrotated API tokens, gaining unauthorized access to the organization’s Zendesk support platform and potentially exposing sensitive user information. This breach follows two earlier attacks…

Read MoreInternet Archive Hit by Another Breach Due to Unrotated API Tokens Exploited by Hackers