Data Breach News & Threat Intelligence

Data Breach News & Threat Intelligence

data security news

Pro-Iran hackers who claimed to have disrupted Microsoft 365 in the early days of the war said Thursday that they came back for another round of “targeting systems managed by the West that are actively used to serve the enemy by processing data and assisting in carrying out attacks.” Reports of problems with Microsoft 365… A critical access control vulnerability in the Vatican’s official “Click to Pray” platform has exposed the personal data of more than 700,000 users, highlighting… With 17 billion internet-connected devices worldwide, AI is subtly creeping into our everyday lives – and making us more vulnerable to cyberattacks.

Responding to questions about Spur’s research, LG Senior Vice President John Taylor told KrebsOnSecurity the company https://www.mon-expression.info/why-arent-as-bad-as-you-think-5/ was working with app developers to remove the residential proxy option from their apps on the webOS platform. For developers and security teams, tracking these patterns isnt just about awareness, it’s about action. Weak passwords, reused credentials, or a single overlooked configuration can expose sensitive data to the public. Leaving a storage bucket or API open to the public (whether on AWS, Azure, or another platform) can give anyone access to sensitive data with just a few clicks.

data security news

A receipt from Star Fraud Chat’s SIM-swapping service targeting a T-Mobile customer after the group gained access to internal T-Mobile employee tools. According to prosecutors, Jubair co-ran a bustling Telegram channel called Star Chat, the home of a SIM-swapping group that used voice- and SMS-based phishing attacks to steal credentials from employees at the major wireless providers in the U.S. and U.K. Multiple sources familiar with those investigations said Flowers was the Scattered Spider member who anonymously gave interviews to the media in the days after the group’s September 2023 ransomware attacks disrupted operations at Las Vegas casinos operated by MGM Resorts and Caesars Entertainment. The duo were key members of a prolific cybercrime group known as Scattered Spider, and their guilty pleas came on the first day of what was expected to be a six-week trial. Two men pleaded guilty in the United Kingdom this week to criminal charges stemming from an August 2024 cyberattack that crippled Transport for London, the entity responsible for the public transport network in the Greater London area. Google said it disabled Google accounts and services used by NetNut for malware command and control, and that it shared technical intelligence on NetNut’s software development kits (SDKs) and backend infrastructure with platform providers, law enforcement and research firms.

Cisco is betting that enterprises will see value in having AI quickly identify the handful of files worthy of investigation by human software vulnerability researchers. Security consultants agree that the move will briefly slow down phishing attacks, but it’s less clear how long that slowdown will last. Research reveals that slopsquatting remains a threat to developers using AI to aid coding. The Certighost vulnerability exploits a little-known AD CS fallback mechanism to trick certificate authorities into issuing trusted credentials.

PokemonGym.nl Database Allegedly Leaked With 19,600 User Records

When organizations grow quickly or rely on multiple cloud platforms, it becomes harder to track every system, dependency, or user account, leaving blind spots for attackers to target. Once they have valid credentials, they can log in as real users and move quietly through systems often leading to larger breaches. If even just one is breached, attackers can quickly move through the supply chain, affecting companies downstream. Every year, companies deal with data leaks, ransomware attacks, or unauthorized access to sensitive information, often because of preventable mistakes in their software or infrastructure. CISA’s Malware Analysis service provides stakeholders a dynamic analysis of malicious code, including recommendations for malware removal and recovery activities.

data security news

OpenAI-Hugging Face attack doesn’t mean agents are evil – unless you tell them to be

  • The sandbox testing platform gives organizations the ability to test PQC (post-quantum cryptography) assets as well as educate users about PQC integration into existing PKI (public key infrastructure) systems and issue PQC certificates.
  • Check Point found The Gentlemen are the second most active ransomware group by victim count so far this year, claiming at least 332 published victims since the group’s inception in mid-2025 and more than 240 in 2026 alone.
  • Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba’s JSON library for Java.
  • Sectigo unveiled a platform aimed at helping to enable the transition to quantum-resistant cryptography with the launch of Sectigo PQC Labs.
  • Command injection vulns land on exploited list after researchers spot abuse attempts

Netskope recently debuted a number of updates to its SASE platform, Netskope One, including a unified console for centralized management of policies, data and analytics. Microsoft’s recently launched Entra Agent ID offering enables organizations to gain improved visibility into AI agents while also allowing for application of identity and access policies through Microsoft’s Conditional Access capabilities. Crucial offerings from Keyfactor for enabling the shift to post-quantum cryptography include capabilities for assembling a cryptographic inventory. Key capabilities include a browser extension that can automatically assist with protecting credentials even if an employee takes no action, the company said. With its recently released Omnix platform, Dashlane is aiming to offer comprehensive credential security in a unified platform, according to the company. Cyera launched a major expansion in data loss prevention with the debut of its Omni DLP offering, which provides unified, adaptive data security across all environments and tools.

Biometrics can help companies to be more efficient and to improve their products but there’s a growing need for transparency. Some period trackers can import information from other apps and wearables, and data can be used by third parties, sometimes without app users’ consent. I’m Maggie, PCMag’s AI-powered product finder, exclusively powered by our deep library of reviews and buying advice written by our expert team of technology journalists. Despite the RAM crunch, two lawmakers urge the Trump administration to ban US companies from buying memory chips from Chinese manufacturers like CXMT. With 1Password for Claude, the chatbot can complete browser tasks that require logins and one-time passcodes, without you handing over passwords to Anthropic’s chatbot. The selfie video offers an easy way to log in when you’re away from your device or have forgotten your password.

  • Despite the RAM crunch, two lawmakers urge the Trump administration to ban US companies from buying memory chips from Chinese manufacturers like CXMT.
  • From vendors offering identity and data security to providers of security service edge, here’s a look at 20 key companies in identity, access and data security.
  • In what OpenAI said was the first-ever incident of its kind, an advanced AI model escaped its “sandbox” to the internet and used stolen credentials to break into the servers of Hugging Face.
  • On May 15, 2026, the security firm GitGuardian asked for help in notifying CISA about the existence of a public GitHub repository called “Private CISA” that included 844 MB of sensitive CISA-related data.
  • Key capabilities include a browser extension that can automatically assist with protecting credentials even if an employee takes no action, the company said.
  • Use tools like Static Application Security Testing (SAST) to analyze code as it’s written, catching vulnerabilities earlier on when they’re easier, and cheaper to fix.

Nvidia weighs funding massive Ohio data center for OpenAI

NVIDIA, Microsoft, and CrowdStrike have joined a broad coalition of technology, cybersecurity, and open-source organizations to launch the Open Secure AI Alliance. The attempted murder of an off-duty officer just a few months ago is clear evidence of what can happen when the personal information of PSNI staff becomes public. But we are entering a bargain with unclear terms around data privacy and public revenue.

For four days, dozens of Romanian hospitals went offline, as cyber-experts sought to defeat the hackers. The site next to GCHQ aims to bring together government officials, academics and private companies. It is one of the first publicly disclosed cyber-attacks carried out by AI without direct human involvement.

data security news

Mindgard researcher Aaron Portnoy disclosed a code execution flaw in Cursor AI editor that silently runs trojanized git.exe files when developers clone malicious repos. Interlock ransomware targeted DC’s public housing agency; Play posted five victims across four countries; Nova added three more in a multi-group batch. CISA widens alert beyond Rockwell controllers as intruders target internet-facing devices across critical infrastructure Aftermarket dealer-installed KARR/SWDS security systems all use the same secure key, say UCSD researchers Russian cyberespionage hackers are targeting a vulnerability in Zimbra Collaboration Suite – a patch is available – that enables them to execute a malicious, data- and email-stealing script simply if a user of a vulnerable client opens their email, warn Western cybersecurity agencies. The operators of the DevMan ransomware-as-a-service (RaaS) scheme are maintaining a dedicated web platform that offers affiliates the ability to build payloads, oversee earnings, and manage various aspects related to victims.

Group-IB documented ClickLock, a macOS stealer using a 210ms app-kill loop to coerce macOS passwords, hitting more than 100 victims across 33 countries. PEAR ransomware group claimed 3 TB stolen from MCBS, a medical billing firm whose breach exposed 1.26 million patients at seven healthcare organizations. Get a snapshot of the issues affecting CIOs, three times a week in your inbox. Source’ after crook claims to offer source code, keys, and cloud creds for sale

OpenAI model escape puts enterprise AI defenses on notice

This guide aims to help network defenders harden on-premises Exchange servers against exploitation by malicious actors. Designed to help public and private organizations defend against the rise in ransomware cases, https://alliancetac.com/computer-skills-training/directory-courses-seminars-workshops-and-trainers StopRansomware is a whole-of-government approach that gives one central location for ransomware resources and alerts. Alerts provide timely information about current security issues, vulnerabilities, and exploits. Learn how cryptocurrency works, from blockchains and wallets to private keys, custody, and secure transactions, with practical security tips.… Google Search indexed public Claude AI chat links, letting people find shared conversations through the site query before those listings…