The Breach News

Hackers Target Job Boards, Compromising Millions of Resumes and Personal Information

A new cybersecurity threat actor, identified as ResumeLooters, has emerged, targeting employment agencies and retail companies predominantly in the Asia-Pacific (APAC) region since early 2023. This group aims to compromise sensitive data, focusing on job search platforms and the unauthorized collection of resumes. According to research from Group-IB, a cybersecurity…

Read MoreHackers Target Job Boards, Compromising Millions of Resumes and Personal Information

Cisco Addresses Severe Privilege Escalation Vulnerability in Meeting Management (CVSS 9.9)

Cisco has announced essential software updates in response to a severe security vulnerability affecting its Meeting Management platform. This flaw potentially enables a remote, authenticated attacker to escalate privileges to an administrator level on vulnerable systems. The vulnerability, designated as CVE-2025-20156, has garnered a CVSS score of 9.9 out of…

Read MoreCisco Addresses Severe Privilege Escalation Vulnerability in Meeting Management (CVSS 9.9)

Emotet Botnet Makes a Comeback, Infecting Over 100,000 Computers

The Emotet botnet, notorious for its insidious operations, resurged in November 2021 after a significant period of inactivity, accumulating over 100,000 compromised hosts. The botnet’s activities have demonstrated a steady increase, indicating a troubling return to form for this malware. According to researchers from Lumen’s Black Lotus Labs, since its…

Read MoreEmotet Botnet Makes a Comeback, Infecting Over 100,000 Computers

Midnight Blizzard and Cloudflare-Atlassian Cybersecurity Incidents: Key Insights You Need to Know

The recent cybersecurity incidents involving Midnight Blizzard and Cloudflare-Atlassian have brought significant attention to the vulnerabilities affecting major Software as a Service (SaaS) platforms. These breaching events reveal the considerable risks associated with SaaS environments, where safeguarding sensitive data and application integrity poses ongoing challenges. The incidents highlight common attack…

Read MoreMidnight Blizzard and Cloudflare-Atlassian Cybersecurity Incidents: Key Insights You Need to Know

Microsoft Advises Users to Remove Games Impacted by Significant Unity Bug

Sure! Here’s a rewritten version of the content tailored to a US-based, tech-savvy professional audience focused on cybersecurity risks: Recent Cybersecurity Developments: Critical Vulnerabilities Discovered in Unity Affecting Game Developers In a concerning turn of events over the weekend, both Microsoft and the Steam gaming platform have responded to a…

Read MoreMicrosoft Advises Users to Remove Games Impacted by Significant Unity Bug

SonicWall Calls for Urgent Patch for Critical CVE-2025-23006 Vulnerability Due to Potential Exploitation

SonicWall has issued a grave security warning regarding a critical vulnerability affecting its Secure Mobile Access (SMA) 1000 Series appliances, which the company suggests has likely been exploited in active attacks as a zero-day vulnerability. This is a significant concern for businesses deploying its products. The vulnerability, identified as CVE-2025-23006,…

Read MoreSonicWall Calls for Urgent Patch for Critical CVE-2025-23006 Vulnerability Due to Potential Exploitation

CaddyWiper: A New Data-Wiping Malware Aiming at Ukrainian Networks

In a troubling escalation of cyber threats, a new strain of destructive malware named CaddyWiper has been identified amidst ongoing military tensions in Ukraine. This recent attack, discovered by Slovak cybersecurity firm ESET, adds to the alarm surrounding persistent cyber assaults as the conflict endures. Diving into the specifics, CaddyWiper…

Read MoreCaddyWiper: A New Data-Wiping Malware Aiming at Ukrainian Networks