The Breach News

“77,000 Fidelity Customer Records Compromised in August Data Breach” • The Register

Data Breach at Fidelity Investments Affects Over 77,000 Customers Fidelity Investments has reported that a data breach occurring in August has compromised the personal information of approximately 77,099 individuals. While specific details regarding the type of data accessed by the attackers remain undisclosed, the firm has reassured customers that their…

Read More“77,000 Fidelity Customer Records Compromised in August Data Breach” • The Register

Microsoft Uncovers Four OpenVPN Vulnerabilities Paving the Way for Potential RCE and LPE Attacks

OpenVPN Vulnerabilities Disclosed by Microsoft: A Potential Attack Vector Microsoft recently announced the discovery of four medium-severity security vulnerabilities within the open-source OpenVPN software, which could be exploited in conjunction to enable remote code execution (RCE) and local privilege escalation (LPE). The implications of these flaws are significant, as they…

Read MoreMicrosoft Uncovers Four OpenVPN Vulnerabilities Paving the Way for Potential RCE and LPE Attacks

Andariel Hackers Strike South Korean Institutions with New Dora RAT Malware

North Korean Threat Actor Deploys New Golang-Based Backdoor Targeting South Korean Sectors Recent reports indicate that the North Korea-affiliated threat actor known as Andariel has introduced a new backdoor, identified as Dora RAT, into their cyberattack arsenal. This malware has been employed in attacks that primarily target educational institutions, manufacturing…

Read MoreAndariel Hackers Strike South Korean Institutions with New Dora RAT Malware

Internet Archive (Archive.Org) Breach: 31 Million Accounts Exposed

Internet Archive Faces Major Cyberattack, Exposing 31 Million User Records In a significant cybersecurity incident, the Internet Archive has fallen victim to a large-scale cyberattack resulting in a data breach that has compromised the personal details of approximately 31 million users. This incident not only threatens the security of user…

Read MoreInternet Archive (Archive.Org) Breach: 31 Million Accounts Exposed

Marriott Settles Data Breach Lawsuit with $50 Million Payout to Users Across All 50 States

Marriott Agrees to $51 Million Settlement Following Data Breaches Marriott International, in conjunction with Starwood Hotels, has agreed to a significant settlement of $51 million as a consequence of their inadequate protection of user data during a series of substantial data breaches. The financial penalty is set to benefit approximately…

Read MoreMarriott Settles Data Breach Lawsuit with $50 Million Payout to Users Across All 50 States

FTC Resolves Prolonged Investigation into Marriott’s Security Shortcomings

Marriott International has taken significant steps to enhance its information security protocols in light of a series of data breaches that collectively impacted approximately 344 million individuals globally between 2014 and 2020. The Federal Trade Commission (FTC) announced the proposed settlement on Wednesday, which includes commitments from Marriott to improve…

Read MoreFTC Resolves Prolonged Investigation into Marriott’s Security Shortcomings

Microsoft Alerts Users to Unresolved Office Vulnerability Posing Data Exposure Risks

Microsoft Reports Unpatched Zero-Day Vulnerability in Office Suite Microsoft has recently revealed a serious unpatched vulnerability in its Office suite, identified as CVE-2024-38200. This zero-day flaw presents the risk of unauthorized exposure of sensitive information to malicious entities if successfully exploited. The vulnerability, which has a CVSS score of 7.5,…

Read MoreMicrosoft Alerts Users to Unresolved Office Vulnerability Posing Data Exposure Risks

Snowflake Issues Warning: Credential Theft Campaign Affects Cloud Customers

Cloud computing and analytics company Snowflake has reported that a select group of its clients is under targeted attack. In a recent joint statement, Snowflake, alongside cybersecurity firms CrowdStrike and Mandiant, clarified that there is no evidence linking this activity to a vulnerability, misconfiguration, or breach within their platform. Additionally,…

Read MoreSnowflake Issues Warning: Credential Theft Campaign Affects Cloud Customers