Security News

2.28M MeetMindful Daters Compromised in Data Breach
2021-01-25 21:08

The ShinyHunters hacking group offer a raft of information, from location and contact info to dating preferences and bodily descriptions, as a free download. More than 2.28 million members of the online dating site MeetMindful have reportedly been caught up in a wide-ranging data breach that exposes everything from Facebook tokens to physical characteristics. The ShinyHunters hacking group has stolen and published the personally identifiable data of MeetMindful users, according to a report from ZDNet.

SonicWall Breach Stems from ‘Probable’ Zero-Days
2021-01-25 17:04

UPDATE. SonicWall said a zero-day in its SMA 100 series 10.x code was targeted by "Highly-sophisticated" attackers. "On Sunday, January 31, 2021, the NCC Group alerted the SonicWall Product Security Incident Response Team about a potential zero-day vulnerability in the SMA 100 series. Our engineering team confirmed their submission as a critical zero-day in the SMA 100 series 10.x code," said SonicWall in an updated statement.

Australian securities regulator discloses security breach
2021-01-25 16:54

The Australian Securities and Investments Commission has revealed that one of its servers has been accessed by an unknown threat actor following a security breach. ASIC is an independent Australian government commission tasked with the regulation of insurance, securities, and financial services, as well with consumer protection as Australia's national corporate regulator.

Clothing Brand Bonobos Notifies Users of Data Breach
2021-01-25 16:02

Menswear brand Bonobos has started informing customers of a data breach that may have resulted in their personal information getting compromised. Over the weekend, the company started informing users of a data breach that may have resulted in their personal information being stolen.

Data breach at Buyucoin crypto exchange leaks user info, trades
2021-01-24 18:16

A threat actor has leaked the stolen database for Indian cryptocurrency exchange Buyucoin on a hacking forum for free. Over the weekend, a threat actor known as ShinyHunters posted the link to an archive that contains the alleged database dumps for the Buyucoin cryptocurrency exchange.

Bonobos clothing store suffers a data breach, hacker leaks 70GB database
2021-01-22 19:11

Bonobos men's clothing store has suffered a massive data breach exposing millions of customers' personal information after a cloud backup of their database was downloaded by a threat actor. Bonobos started as an online men's clothing store but later expanded to sixty locations to try on clothes before purchasing them.

Bonobos clothing store confirms breach after hacker leaks 70GB database
2021-01-22 14:11

Bonobos men's clothing store has suffered a massive data breach exposing millions of customers' personal information after a cloud backup of their database was downloaded by a threat actor. Bonobos started as an online men's clothing store but later expanded to sixty locations to try on clothes before purchasing them.

Einstein Healthcare Network Announces August Breach
2021-01-21 20:00

Einstein Health Network, a Pennsylvania-based company operating medical rehab, outpatient and primary care centers, announced a breach of its employee email system, which exposed patient personal and medical information. Einstein emphasized the breach didn't affect all patients, just those contained within employee email accounts.

The aftermath of the SolarWinds breach: Organizations need to be more vigilant
2021-01-19 22:01

Security experts say organizations are, and should, implement a number of changes ranging from how they vet vendors to handling application updates. The way Nick Fuchs sees it, in the aftermath of the massive SolarWinds breach, there has been one silver lining: A greater understanding of the important role security needs to play in any organization.

OpenWrt Informs Users of Forum Breach
2021-01-19 12:07

The OpenWrt Project, the developer of the open source Linux operating system for embedded devices, informed users on Monday that someone had breached its forum over the weekend. In a security notice posted on the OpenWrt forum, users were told that the hacker gained access to the account of an administrator on January 16.