The Breach News

U.S. Court Directs NSO Group to Transfer Pegasus Spyware Code to WhatsApp

A decisive ruling from a U.S. judge has mandated NSO Group to disclose its source code for the controversial Pegasus spyware to Meta Platforms. This legal maneuver is part of Meta’s ongoing litigation against the Israeli cybersecurity firm, aiming to hold it accountable for utilizing WhatsApp’s infrastructure to orchestrate mass…

Read MoreU.S. Court Directs NSO Group to Transfer Pegasus Spyware Code to WhatsApp

Cybercriminals Compromise Red Hat’s Private GitLab Repositories – Insights on Impacted Customers

John Keeble/Getty Images Stay in touch with ZDNET: Add us as a preferred source on Google. Key Takeaways from ZDNET Red Hat’s private GitLab repositories have been breached by hackers. Confidential information related to several Red Hat Consulting clients appears to have been compromised. The extent of this breach is…

Read MoreCybercriminals Compromise Red Hat’s Private GitLab Repositories – Insights on Impacted Customers

Broadcom Raises Alarm Over Critical SQL Injection Vulnerability in VMware Avi Load Balancer

Warning Issued Over Critical Vulnerability in VMware Avi Load Balancer Broadcom has announced a significant security vulnerability in VMware’s Avi Load Balancer, classified as high severity, which could potentially be exploited by malicious actors to gain unauthorized access to sensitive database information. The vulnerability is labeled CVE-2025-22217, with a CVSS…

Read MoreBroadcom Raises Alarm Over Critical SQL Injection Vulnerability in VMware Avi Load Balancer

U.S. Issues Warning About APT Hackers Targeting ICS/SCADA Systems with Advanced Malware

The U.S. government has issued a security warning regarding the utilization of specialized malware by state-sponsored actors targeting industrial control systems (ICS) and supervisory control and data acquisition (SCADA) devices. This advisory highlights the increasing sophistication of cyber threats against critical infrastructure. According to alerts from multiple U.S. agencies, including…

Read MoreU.S. Issues Warning About APT Hackers Targeting ICS/SCADA Systems with Advanced Malware

Oracle Reports No Zero-Day Exploits Connected to Customer Extortion Cases

Data-Theft Attacks Compromise Organizations Amid Absence of July Patch Update Mathew J. Schwartz ( euroinfosec ) • October 3, 2025 Image: Shutterstock/ISMG Oracle has reported that its customers are under attack from data-seeking extortionists. While cybersecurity researchers and the software giant emphasize that no new zero-day vulnerabilities are being exploited,…

Read MoreOracle Reports No Zero-Day Exploits Connected to Customer Extortion Cases

ICE Proposes Establishing a Round-the-Clock Social Media Surveillance Unit

US Immigration Authorities Expand Social Media Surveillance Efforts In a significant expansion of their monitoring capabilities, U.S. immigration authorities are gearing up to enhance their social media surveillance. Plans are underway to recruit nearly 30 contractors to sift through online posts, photos, and messages, transforming this raw data into actionable…

Read MoreICE Proposes Establishing a Round-the-Clock Social Media Surveillance Unit

Cybercriminals Employ Innovative DNS Hijacking Method for Investment Fraud

Recently, a new and sophisticated DNS threat actor, identified as Savvy Seahorse, has emerged, adeptly exploiting various tactics to lure victims into fraudulent investment schemes. The primary modus operandi involves enticing individuals to register on false investment platforms, deposit funds into personal accounts, and then redirect those deposits to banks…

Read MoreCybercriminals Employ Innovative DNS Hijacking Method for Investment Fraud