Data Breach

Cyber Crime Group ShinyHunters Modus Operandi Detailed by Researchers

ShinyHunters, a notorious cybercriminal underground group that’s been on a data breach spree since last year, has been observed searching companies’ GitHub repository source code for vulnerabilities that can be abused to stage larger scale attacks, an analysis of the hackers’ modus operandi has revealed. The revelation comes as the average cost of a data […]

Cyber Crime Group ShinyHunters Modus Operandi Detailed by Researchers Read More »

Jenkins Project Server Breached via an Atlassian Confluence Flaw

Maintainers of the popular open-source automation server software, Jenkins have disclosed a security breach after unidentified threat actors gained access to one of their servers via the exploitation of a recently disclosed vulnerability in Atlassian Confluence service to install a cryptocurrency miner. The attack is believed to have occurred last week, mounting against its Confluence

Jenkins Project Server Breached via an Atlassian Confluence Flaw Read More »

UK MoD Suffers Another Data Breach as More Afghan Citizens Data gets Exposed

The UK’s Ministry of Defence (MoD) reportedly suffers another data breach that has exposing details of more Afghan citizens who may be at risk of reprisals from Taliban forces. The government department was forced to apologize earlier this week for sending an email which exposed the data of more than 250 Afghan interpreters who worked

UK MoD Suffers Another Data Breach as More Afghan Citizens Data gets Exposed Read More »

ERMAC: 378 Banking Apps Financial Data Stolen by New Android Malware

BlackRock mobile malware operators have resurfaced with a new Android banking trojan called ERMAC targeting Poland with roots in the well known Cerberus malware, according to the latest research. “The new trojan has active distribution campaigns targeting 378 banking and wallet apps with overlays,” Cengiz Han Sahin the ThreatFabric’s CEO said in an emailed statement.

ERMAC: 378 Banking Apps Financial Data Stolen by New Android Malware Read More »

100,000 Windows Domain Credentials Leaked due to Microsoft Exchange Bug

100,000 login names and passwords for Windows domains worldwide has been leaked as a result of an unpatched design flaw in the implementation of Microsoft Exchange’s Autodiscover protocol. “This is a severe security issue, since if an attacker can control such domains or has the ability to ‘sniff’ traffic in the same network, they can

100,000 Windows Domain Credentials Leaked due to Microsoft Exchange Bug Read More »