Security News

Microsoft SharePoint RCE bug exploited to breach corporate network
2024-11-02 15:19

A recently disclosed Microsoft SharePoint remote code execution (RCE) vulnerability tracked as CVE-2024-38094 is being exploited to gain initial access to corporate networks. [...]

LA housing authority confirms breach claimed by Cactus ransomware
2024-11-01 20:30

The Housing Authority of the City of Los Angeles (HACLA), one of the largest public housing authorities in the United States, confirmed that a cyberattack hit its IT network after recent breach...

Massive Git Config Breach Exposes 15,000 Credentials; 10,000 Private Repos Cloned
2024-11-01 10:27

Cybersecurity researchers have flagged a "massive" campaign that targets exposed Git configurations to siphon credentials, clone private repositories, and even extract cloud credentials from the...

Interbank confirms data breach following failed extortion, data leak
2024-10-30 22:22

​Interbank, one of Peru's leading financial institutions, has confirmed a data breach after a threat actor who hacked into its systems leaked stolen data online. [...]

Free, France’s second largest ISP, confirms data breach after leak
2024-10-28 17:45

Free, a major internet service provider (ISP) in France, confirmed over the weekend that hackers breached its systems and stole customer personal information. [...]

Fog ransomware targets SonicWall VPNs to breach corporate networks
2024-10-27 14:17

Fog and Akira ransomware operators have increased their exploitation efforts of CVE-2024-40766, a critical access control flaw that allows unauthorized access to resources on the SSL VPN feature...

Black Basta ransomware poses as IT support on Microsoft Teams to breach networks
2024-10-25 20:55

The BlackBasta ransomware operation has moved its social engineering attacks to Microsoft Teams, posing as corporate help desks contacting employees to assist them with an ongoing spam attack. [...]

Black Basta poses as IT support on Microsoft Teams to breach networks
2024-10-25 20:55

The BlackBasta ransomware operation has moved its social engineering attacks to Microsoft Teams, posing as corporate help desks contacting employees to assist them with an ongoing spam attack. [...]

UnitedHealth says data of 100 million stolen in Change Healthcare breach
2024-10-25 03:54

UnitedHealth has confirmed for the first time that over 100 million people had their personal information and healthcare data stolen in the Change Healthcare ransomware attack, marking this as the...

Henry Schein discloses data breach a year after ransomware attack
2024-10-24 21:39

Henry Schein has finally disclosed a data breach following at least two back-to-back cyberattacks in 2023 by the BlackCat Ransomware gang, revealing that over 160,000 people had their personal...