The Breach News

NK’s Notorious Chollima Exploits BeaverTail and OtterCookie Malware in Employment Scam

A recent report from Cisco Talos reveals that the North Korea-linked hacking group Famous Chollima is leveraging the job market to conduct cyberattacks. The group is utilizing fraudulent job postings to ensnare victims into downloading malicious software that enables the theft of cryptocurrency and user credentials. Merging Malware Threats Two…

Read MoreNK’s Notorious Chollima Exploits BeaverTail and OtterCookie Malware in Employment Scam

Exploring Silverfort’s Comprehensive Identity Protection Platform

Understanding Silverfort’s Unified Identity Protection Platform: A Comprehensive Overview In today’s evolving cybersecurity landscape, protecting an organization against identity-based attacks has become paramount. Silverfort has emerged as a key player with its Unified Identity Protection Platform, the first of its kind available in the market. This innovative platform leverages patented…

Read MoreExploring Silverfort’s Comprehensive Identity Protection Platform

Imprivata Acquires Verosint to Enhance Real-Time Identity Risk Detection

Next-Generation Technologies & Secure Development, Privileged Access Management, Security Operations Risk Scoring to Enable Real-Time Action by Imprivata on Suspicious Access Attempts Michael Novinson (MichaelNovinson) • October 15, 2025 Fran Rosch, CEO, Imprivata (Image: Imprivata) Imprivata has acquired Verosint, a startup specializing in identity threat detection and response. This strategic…

Read MoreImprivata Acquires Verosint to Enhance Real-Time Identity Risk Detection

Sensitive Customer Information Exposed in Mango Data Breach: What We Know So Far

Mango Faces Data Breach, Exposing Customer Information Mango, a global retail leader with over 2,500 branches in more than 120 countries, has recently experienced a data breach involving a third-party service provider, compromising sensitive customer information. The extent of the breach has not been fully disclosed, but Mango issued alerts…

Read MoreSensitive Customer Information Exposed in Mango Data Breach: What We Know So Far

BeyondTrust Releases Urgent Patch for Critical Vulnerability in PRA and RS Products

Critical Vulnerability Discovered in BeyondTrust Products BeyondTrust has announced a significant security vulnerability affecting its Privileged Remote Access (PRA) and Remote Support (RS) products. This flaw, designated as CVE-2024-12356 and assigned a high CVSS score of 9.8, poses a serious risk of arbitrary command execution, potentially allowing unauthenticated attackers to…

Read MoreBeyondTrust Releases Urgent Patch for Critical Vulnerability in PRA and RS Products

Researchers Unravel Encrypted Registry Keys of Qakbot Banking Trojan

Recent insights from cybersecurity researchers have provided a deeper understanding of the Qakbot banking trojan’s methods for embedding encrypted configuration data into the Windows Registry. This malware, also known by other aliases including QBot, QuackBot, and Pinkslipbot, has been present since 2007, initially designed for information theft but evolving to…

Read MoreResearchers Unravel Encrypted Registry Keys of Qakbot Banking Trojan

Play Ransomware Takes a Commercial Turn: Now Available as a Service for Cybercriminals

Recent investigations by Adlumin have uncovered that the Play ransomware strain is now available as a ransomware-as-a-service (RaaS) model, significantly altering the landscape of cyber threats. This shift allows various cybercriminals to utilize the ransomware by following detailed, step-by-step instructions provided with their purchase. According to Adlumin’s report, the marked…

Read MorePlay Ransomware Takes a Commercial Turn: Now Available as a Service for Cybercriminals

Chinese Actor Sets Sights on Russian IT Provider

Cyberwarfare / Nation-State Attacks, Fraud Management & Cybercrime Symantec Identifies Potential Supply Chain Attack Anviksha More (AnvikshaMore) • October 15, 2025 The border crossing between China and Russia, near Manzhouli. (Image: B.Panupong/Shutterstock) Recent findings from cybersecurity firm Symantec reveal that suspected hackers linked to the Chinese government have breached the…

Read MoreChinese Actor Sets Sights on Russian IT Provider

Capita Hit with $19 Million Fine Following 2023 Cyber Breach – Communications Today

UK’s Capita Fined $19 Million for 2023 Cyber Breach In a significant enforcement action this week, British multinational outsourcing and professional services company Capita has been issued a large fine totaling $19 million due to a cyber breach that occurred earlier in 2023. This incident has raised alarms about the…

Read MoreCapita Hit with $19 Million Fine Following 2023 Cyber Breach – Communications Today