Cybernox allegedly leaked the Bloctel Do-Not-Call Register, publishing free mirrored copies that claim to contain 3 million French phone numbers and registration identifiers. If true, the leak would invert a consumer-protection system into a target list for callers and fraudsters, especially affecting older consumers in France. #Bloctel #Cybernox #France…
Category: Cyber Attack
An actor using the name citizengod allegedly posted data tied to the Schools Division of Iloilo, including staff, student, and family records, along with source code and server details. The claimed leak also includes fingerprint templates, identity numbers, attendance records, and weak password hashes, but the report says the breach is…
Frey Wille, the Austrian jewelry retailer, was hit by a cyberattack in early August that compromised business and personal customer data, including contact, contractual, communication, and billing details. The company is working with cybersecurity and forensic specialists, has notified authorities and police, and is warning potentially affected people to watch for phishing attempts. #FreyWille #phishing
An alleged seller is offering data said to come from CARMA, including contact details and client configuration records for more than 3,500 organisations worldwide. The exposed information may reveal sensitive client activity, internal comments, and possible API tokens, but the claim remains unverified. #CARMA #2019…
A seller using the name weykofa is allegedly offering data said to belong to the Fédération Française de Basketball, including 75,831 individuals, 6,873 clubs, and 2,030 CVs for $700 in Bitcoin. The claim is unverified, but the posted sample suggests the dataset may include personal contact details, street addresses, and résumé…
The Universidad Autónoma de San Luis Potosí (UASLP) suffered a cybersecurity incident that disrupted several university systems, including the Caja Virtual platform, which was temporarily taken offline. As a result, the university extended the deadline for enrollment and re-enrollment payments while providing no further details about the attack or the full scope of affected systems. #UASLP #CajaVirtual #UniversidadAutónomadeSanLuisPotosí
Washburn County is currently experiencing a cyberattack that has forced officials to take all county systems offline. Emergency 911 services remain operational despite the disruption. #WashburnCounty #911
Apple’s iCloud Private Relay protects Safari traffic, but it is not a full device-wide VPN and can fail to hide real IP and DNS data during passkey authentication and other WebKit-related network actions. Security researchers found that WebAuthn, DNS prefetching, and WebTransport can expose user network identifiers, affecting both Safari and…
An actor calling itself LaPampaLeaks claims to have breached Uruguay’s CEIP GURI primary education platform and is offering more than 1 million children’s records for sale and query. The alleged data includes highly sensitive personal and school-history details, but the claim remains unverified. #LaPampaLeaks #CEIP #GURI #Uruguay…
North Carolina Ports was hit by a cyberattack that disrupted operations across its Wilmington, Morehead City, and Charlotte facilities, forcing the activation of its cybersecurity contingency plan and a temporary switch to manual gate processing. The incident has been contained, but no timeline has been given for full system restoration and no sensitive data compromise has been reported. #NCPorts #Wilmington #MoreheadCity #Charlotte
HostDZire suffered a ransomware attack that impacted multiple VMware ESXi virtualization nodes, encrypting virtual disks and causing total data loss on the affected systems. The incident disrupted VMware-based services in India, the Netherlands, and the United States, while KVM and Leaseweb VPS services remained unaffected. #HostDZire #VMwareESXi #LeasewebVPS
Caravan.kz was hit by a ransomware attack claimed by the Black Field group, which demanded payment and threatened to leak copied or falsified corporate and personal data. The technical team worked continuously to contain the incident and restore services, while Kazakhstan’s authorities were notified and are assisting with the case. #Caravan.kz #BlackField
The SharePoint servers of the Canton of Graubünden’s cantonal administration were hit by a cyberattack, likely through the exploitation of Microsoft SharePoint software vulnerabilities. Initial analysis found no evidence of data loss or compromised accounts, but the authority is throttling the website to apply a security update after a similar incident affected the federal government. #SharePoint #Microsoft #CantonofGraubünden
The Municipality of Sithonia in Greece was hit by a ransomware attack that disrupted both the central administration and the management of local ports and boat shelters. Authorities are investigating the incident, while the extent of intercepted data and the availability of usable backups remain unclear. #Sithonia #HellenicPolice #PersonalDataProtectionAuthority
A Canadian man, Connor Moucka, pleaded guilty for his role in the Snowflake data breach that hit 165 organizations, including AT&T, Ticketmaster, and Santander Bank. He and his co-conspirators extorted victims for millions of dollars, profited through stolen data sales, and are now facing sentencing after a multinational law enforcement investigation. #Snowflake #ConnorMoucka #ATandT #Ticketmaster #SantanderBank