Security News

70% of leaked secrets remain active two years later
2025-03-20 05:00

Long-lived plaintext credentials have been involved in most breaches over the last several years, according to GitGuardian. When valid credentials, such as API keys, passwords, and authentication...

Leaked Black Basta Chats Suggest Russian Officials Aided Leader's Escape from Armenia
2025-03-19 13:50

The recently leaked trove of internal chat logs among members of the Black Basta ransomware operation has revealed possible connections between the e-crime gang and Russian authorities. The leak,...

Leaked Black Basta Ransomware Chat Logs Reveal Inner Workings and Internal Conflicts
2025-02-26 13:54

More than a year's worth of internal chat logs from a ransomware gang known as Black Basta have been published online in a leak that provides unprecedented visibility into their tactics and...

Microsoft Identifies 3,000 Leaked ASP.NET Keys Enabling Code Injection Attacks
2025-02-07 11:01

Microsoft is warning of an insecure practice wherein software developers are incorporating publicly disclosed ASP.NET machine keys from publicly accessible resources, thereby putting their...

DeepSeek AI Database Exposed: Over 1 Million Log Lines, Secret Keys Leaked
2025-01-30 10:09

Buzzy Chinese artificial intelligence (AI) startup DeepSeek, which has had a meteoric rise in popularity in recent days, left one of its databases exposed on the internet, which could have allowed...

Week in review: AWS S3 data encrypted without ransomware, data of 15k Fortinet firewalls leaked
2025-01-19 09:00

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Attackers are encrypting AWS S3 data without using ransomware A ransomware gang dubbed Codefinger...

Configuration files for 15,000 Fortinet firewalls leaked. Are yours among them?
2025-01-16 11:01

A threat actor has leaked configuration files (aka configs) for over 15,000 Fortinet Fortigate firewalls and associated admin and user credentials. The collection has been leaked on Monday and...

Helpline for Yakuza victims fears it leaked their personal info
2024-11-22 05:24

Organized crime types tend not to be kind to those who go against them, so this is nasty A local Japanese government agency dedicated to preventing organized crime has apologized after...

Week in review: Microsoft patches actively exploited 0-days, Amazon and HSBC employee data leaked
2024-11-17 09:00

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Microsoft fixes actively exploited zero-days (CVE-2024-43451, CVE-2024-49039) November 2024 Patch...

Leaked info of 122 million linked to B2B data aggregator breach
2024-11-13 21:41

The business contact information for 122 million people circulating since February 2024 is now confirmed to have been stolen from a B2B demand generation platform. [...]