The Breach News

The request could not be fulfilled.

Title: CloudFront Access Blockage Disrupts Service Availability In a recent incident, users encountered a significant disruption as a request intended for a specific online service was unable to be satisfied. This incident is attributed to configurations within the Amazon CloudFront service, which is designed to provide content delivery and caching.…

Read MoreThe request could not be fulfilled.

Apache MINA CVE-2024-52046: Critical RCE Vulnerability (CVSS 10.0) Due to Unsafe Serialization

The Apache Software Foundation (ASF) has unveiled critical patches to mitigate a severe vulnerability within the MINA Java network application framework, which could enable remote code execution under certain circumstances. This vulnerability, identified as CVE-2024-52046, has been assigned a maximum severity CVSS score of 10.0, affecting versions 2.0.X, 2.1.X, and…

Read MoreApache MINA CVE-2024-52046: Critical RCE Vulnerability (CVSS 10.0) Due to Unsafe Serialization

Hackers Employ Innovative Evasive Tactics to Distribute AsyncRAT Malware

A sophisticated phishing attack has emerged, delivering the AsyncRAT trojan as part of a malware campaign believed to have started in September 2021. This campaign has raised significant concerns among cybersecurity experts due to its innovative approach and potential for widespread damage. According to Michael Dereviashkin, a security researcher at…

Read MoreHackers Employ Innovative Evasive Tactics to Distribute AsyncRAT Malware

ShinyHunters Allegedly Leaks Data from Qantas, Vietnam Airlines, and Other Prominent Companies

Massive Data Breach Affects 39 Companies Due to Salesforce Vulnerability On October 3, 2025, Hackread.com reported a significant cybersecurity incident involving the theft of 989 million records from 39 notable companies globally. This breach was reportedly executed by a hacker group exploiting a vulnerability in Salesforce. The group, identifying as…

Read MoreShinyHunters Allegedly Leaks Data from Qantas, Vietnam Airlines, and Other Prominent Companies

Post-Qakbot Takedown: Strategies for Mitigation and Safeguarding Against Future Threats

The U.S. Department of Justice (DOJ) and the FBI recently executed a major operation that targeted the infamous Qakbot malware and its associated botnet. Although the initiative succeeded in significantly disrupting this persistent threat, emerging reports indicate that Qakbot may still represent a risk, albeit in a reduced capacity. This…

Read MorePost-Qakbot Takedown: Strategies for Mitigation and Safeguarding Against Future Threats

Over 15,000 Four-Faith Routers Vulnerable to New Exploit from Default Credentials

Recent investigations by VulnCheck reveal that a critical vulnerability has emerged, actively being exploited in several Four-Faith industrial routers. This high-severity flaw, designated as CVE-2024-12856 and rated with a CVSS score of 7.2, pertains specifically to the F3x24 and F3x36 router models. While the vulnerability is contingent upon successful authentication…

Read MoreOver 15,000 Four-Faith Routers Vulnerable to New Exploit from Default Credentials

QNAP Alerts Users About DeadBolt Ransomware Targeting NAS Devices Exposed to the Internet

QNAP Warns Users of DeadBolt Ransomware Threat In a significant cybersecurity alert, Taiwanese company QNAP has issued a warning urging its customers to enhance security measures for their network-attached storage (NAS) devices and routers against a relentless new strain of ransomware known as DeadBolt. According to the company’s official statement,…

Read MoreQNAP Alerts Users About DeadBolt Ransomware Targeting NAS Devices Exposed to the Internet