US federal agency breached by hackers using GeoServer exploit

In mid-July 2024, a threat actor managed to break into a US Federal Civilian Executive Branch (FCEB) agency by exploiting a critical remote code execution (RCE) vulnerability in GeoServer, the government has confirmed. In an in-depth report detailing the incident, Read More …

Top auto insurance firm leaked over 5 million records

ClaimPix, a company which streamlines car insurance claims, was leaking sensitive customer data on the clearweb, including people’s phone numbers, and email addresses, an expert has warned. Security researcher Jeremiah Fowler, known for hunting down misconfigured and unprotected databases, recently Read More …

Stellantis detects breach at third-party provider for North American customers

Stellantis detected unauthorized access to a third-party service provider’s platform that supports its North American customer service operations, the company said in a statement on Sunday. The automaker said the incident, which is under investigation, exposed only basic contact information Read More …

SonicWall customers told to reset credentials following firewall data breach

SonicWall is urging its firewall customers to reset their passwords after confirming it suffering a security incident which may have exposed their data. In a security announcement, SonicWall outlined how unnamed threat actors brute-forced their way into the company’s MySonicWall Read More …

Gucci, Balenciaga and Alexander McQueen private data ransomed by hackers

Cyber criminals have stolen the private details of potentially millions of Balenciaga, Gucci and Alexander McQueen customers in an attack. The stolen data includes names, email addresses, phone numbers, addresses and the total amount spent in the luxury stores around Read More …

Facebook data breach settlement payments are starting to roll out

If you used Facebook at any time during a 15-year period, keep an eye on your bank account. Settlement payments related to the several-years-old Cambridge Analytica data breach scandal are starting to roll out this month, per CBS News. A Read More …

Vietnam Investigates Hackers Targeting National Credit Database Exposing Sensitive Financial Data

Vietnam is investigating a serious cyberattack on a large database that contains information about creditors across the country. The database belongs to the National Credit Information Center, also known as CIC. This center is managed by the State Bank of Read More …

Israel: Dozens of actors fall victim to Iranian phishing attack

Dozens of Israeli actors have fallen victim to a phishing attack believed to originate from Iranian sources. According to a statement from the National Cyber Directorate, the actors were asked to submit filmed auditions and sensitive personal information—including photos of Read More …

South Korea’s KT admits data breach

KT Corp has become the second South Korean mobile operator this year to report a cybersecurity breach to the country’s data protection authorities, with the operator confirming on Thursday that 5,561 customers may have had their subscriber data stolen by Read More …

Attacker steals customer data from UK rail operator LNER during break-in at supplier

One of the UK’s largest rail operators, LNER, is the latest organization to spill user data via a third-party data breach.… It confirmed the incident on Wednesday, saying customer contact details and “some information about previous journeys” was accessed at Read More …