The Breach News

Kurdish Websites Targeted in Watering Hole Attack Distributing Malicious APKs and Spyware

In a recent cybersecurity incident, approximately 25 websites associated with the Kurdish minority have fallen victim to a sophisticated watering hole attack designed to collect sensitive information over an extended period of time, reportedly lasting more than 18 months. French cybersecurity firm Sekoia disclosed the details of the campaign, labeled…

Read MoreKurdish Websites Targeted in Watering Hole Attack Distributing Malicious APKs and Spyware

Urgent: Major Apache HugeGraph Vulnerability Exploited – Apply Patch Immediately

A recently uncovered security vulnerability in Apache HugeGraph-Server is currently being exploited by cybercriminals, posing a significant risk to users. This critical flaw has the potential to enable remote code execution (RCE) attacks, allowing attackers to gain control of affected systems. The vulnerability, identified as CVE-2024-27348 with a CVSS score…

Read MoreUrgent: Major Apache HugeGraph Vulnerability Exploited – Apply Patch Immediately

Finland Accuses APT31, a Chinese Hacking Group, of Cyber Attack on Parliament

The Finnish Police, known as Poliisi, has officially implicated a state-sponsored actor from China, identified as APT31, in the cyber attack aimed at the Finnish Parliament that took place between late 2020 and early 2021. This development follows a lengthy and complex investigation involving in-depth analysis of the sophisticated criminal…

Read MoreFinland Accuses APT31, a Chinese Hacking Group, of Cyber Attack on Parliament

NationalPublicData.com Breach Exposes Sensitive Information Nationwide – Krebs on Security

On July 21, 2024, a significant data breach was reported involving NationalPublicData.com, a consumer data broker based in Florida known for collecting information for background checks. An alarming 4 terabytes of data were released on Breachforums, an underground platform frequented by cybercriminals. This incident has shaken the trust of many…

Read MoreNationalPublicData.com Breach Exposes Sensitive Information Nationwide – Krebs on Security

Virgin Media Data Breach Exposes Personal Information of 900,000 Customers

Virgin Media has publicly acknowledged a significant data breach that has compromised the personal information of approximately 900,000 customers. The company reported that this breach resulted from a misconfiguration of one of its marketing databases, which inadvertently allowed unauthorized access to sensitive customer data. The affected database, as confirmed by…

Read MoreVirgin Media Data Breach Exposes Personal Information of 900,000 Customers

U.K. Hacker Indicted in $3.75 Million Insider Trading Operation Involving Compromised Executive Emails

The U.S. Department of Justice (DoJ) has taken action against Robert Westbrook, a 39-year-old national from the United Kingdom, who has been arrested for orchestrating a hack-to-trade fraud scheme that allegedly profited him nearly $3.75 million. This case highlights significant vulnerabilities in the digital infrastructure utilized by corporate executives to…

Read MoreU.K. Hacker Indicted in $3.75 Million Insider Trading Operation Involving Compromised Executive Emails

A Dilemma in Data Protection

Understanding the Increased Risk of Third-Party Breaches in Cybersecurity Cyber breaches present an ever-growing concern for organizations, and one significant area of vulnerability lies within third-party relationships. Clyde Williamson, Chief Security Architect at Protegrity, examines the rise of these breaches and their implications on sensitive data security. As businesses increasingly…

Read MoreA Dilemma in Data Protection