Security News

Coinbase was primary target of recent GitHub Actions breaches
2025-03-21 23:35

Researchers have determined that Coinbase was the primary target in a recent GitHub Actions cascading supply chain attack that compromised secrets in hundreds of repositories. [...]

US seizes $23 million in crypto linked to LastPass breaches
2025-03-07 19:13

U.S. authorities have seized over $23 million in cryptocurrency linked to the theft of $150 million from a Ripple crypto wallet in January 2024. Investigators believe hackers who breached LastPass...

US charges Chinese hackers linked to critical infrastructure breaches
2025-03-05 17:23

The US Justice Department has charged Chinese state security officers along with APT27 and i-Soon hackers for network breaches and cyberattacks that have targeted victims globally since 2011. [...]

⚡ THN Weekly Recap: Alerts on Zero-Day Exploits, AI Breaches, and Crypto Heists
2025-03-03 11:58

This week, a 23-year-old Serbian activist found themselves at the crossroads of digital danger when a sneaky zero-day exploit turned their Android device into a target. Meanwhile, Microsoft pulled...

EncryptHub breaches 618 orgs to deploy infostealers, ransomware
2025-02-26 15:31

A threat actor tracked as 'EncryptHub,' aka Larva-208, has been targeting organizations worldwide with spear-phishing and social engineering attacks to gain access to corporate networks. [...]

Silent breaches are happening right now, most companies have no clue
2025-02-12 04:30

The breaches and ransomware attacks of 2024 highlighted systemic vulnerabilities, demonstrating how third-party and fourth-party dependencies amplify risks across industries, according to a Black...

Amazon Redshift gets new default settings to prevent data breaches
2025-02-03 21:37

Amazon has announced key security enhancements for Redshift, a popular data warehousing solution, to help prevent data exposures due to misconfigurations and insecure default settings. [...]

The $10 Cyber Threat Responsible for the Biggest Breaches of 2024
2025-01-16 11:30

You can tell the story of the current state of stolen credential-based attacks in three numbers: Stolen credentials were the #1 attacker action in 2023/24, and the breach vector for 80% of web app...

GoDaddy slapped with wet lettuce for years of lax security and 'several major breaches'
2025-01-15 23:47

Watchdog alleged it had no SIEM or MFA, orders rapid adoption of basic infosec tools GoDaddy has failed to protect its web-hosting platform with even basic infosec tools and practices since 2018,...

Every minute, 4,080 records are compromised in data breaches
2025-01-03 04:30

A recent Domo report shows that the world’s internet population has reached a record high of 5.52 billion people and uncovers signs that AI may be unseating digital juggernauts as it brings in new...