CISA Warns of Credential Risks Tied to Oracle Cloud Breach
Summary: Oracle has informed select clients about a security breach where attackers accessed legacy environments, exposing outdated user credentials. Data from the breach, including usernames and hashed passwords, has been shared publicly, raising concerns due to the potential for misuse. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning around the risks of compromised credentials in this incident.…
Read More
Unprotected APIs Expose Data of 33,000 Employees
Summary: A recent report by CloudSEK’s BeVigil platform has revealed that unprotected APIs belonging to a major tech service provider were exposed, compromising sensitive data for over 33,000 employees. The discovery highlights critical security risks, including unauthorized access and potential identity theft. Immediate actions are recommended to safeguard API endpoints and sensitive information.…
Read More
Experts Uncover Four New Privilege Escalation Flaws in Windows Task Scheduler
Summary: Cybersecurity researchers have identified four vulnerabilities in the Windows task scheduling service that allow local attackers to gain privilege escalation and erase critical audit logs. These vulnerabilities relate to the “schtasks.exe” binary, which can be exploited through methods like Batch Logon authentication. This can lead to unauthorized access and data theft while enabling attackers to cover their tracks effectively.…
Read More
From Third-Party Vendors to U.S. Tariffs: The New Cyber Risks Facing Supply Chains
Summary: Cyber threats targeting supply chains have significantly increased, with attackers exploiting vulnerabilities in third-party vendors and interconnected systems. Notable incidents, such as the 2024 ransomware attack on Change Healthcare, underscore the need for improved security measures to protect sensitive data. Industries including manufacturing, healthcare, retail, energy, and finance are particularly vulnerable, necessitating proactive security strategies to mitigate risks and ensure operational continuity.…
Read More
4Chan Outage Sparks Cyberattack Rumors and Data Leak Concerns
Summary: On April 14, 2025, 4Chan experienced significant downtime, leading to speculation about a potential cyberattack. User reports indicated that the outage was linked to server issues, and leaked backend data raised suspicions of a security breach. The incident has reignited concerns regarding 4Chan’s vulnerabilities and reputation amid a history of controversy and cyberattacks.…
Read More
4chan Suffers Major Cyberattack, Sensitive Data Leaked
Summary: The online forum 4chan has suffered a severe cyberattack, resulting in the leak of sensitive data including source code and user information. The attackers claim to have infiltrated the site for over a year, leading to potential concerns over further intelligence breaches. As 4chan is currently inaccessible, there are indications that the attack may be driven by animosity rather than financial motives.…
Read More
Hertz disclosed a data breach following 2024 Cleo zero-day attack
Summary: Hertz Corporation disclosed a data breach affecting its brands due to vulnerabilities in Cleo’s file transfer software, which were exploited by threat actors. Over 3,400 Maine residents were specifically impacted, and sensitive customer data may have been compromised. The Clop ransomware group claimed responsibility, threatening to publish the stolen data if ransom demands were not met.…
Read More
Landmark Admin data breach impact now reaches 1.6 million people
Summary: Landmark Admin has reported that a cyberattack from May 2024 has impacted approximately 1.6 million individuals, significantly more than initially estimated. The breach exposed various personal information, including Social Security numbers and medical details. Landmark is actively notifying affected individuals and offering credit monitoring services to mitigate risks related to the data exposure.…
Read More
Insurance Firm Lemonade Says API Glitch Exposed Some Driver’s License Numbers
Summary: Lemonade, an insurance firm, is notifying approximately 190,000 individuals that their driver’s license numbers may have been exposed due to a technical glitch from April 2023 to September 2024. The vulnerability in the online application’s quote flow allowed unauthorized access to these numbers, though the company claims no evidence of misuse has been found.…
Read More
William Buck Responds to Cybersecurity Incident with External Investigation

Date Reported: 2025-04-14 Country: BEL | Belgium Victim: Administration communale de Jemeppe-sur-Sambre | Jemeppe-sur-Sambre Municipal Administration Website: jemeppe-sur-sambre.be Information :The municipal administration of Jemeppe-sur-Sambre was the victim of a cyberattack. Employees were unable to connect to the server or access their email accounts. Authorities contacted the federal judicial police for assistance.…
Read More