Recent research has surfaced serious security vulnerabilities within ChatGPT plugins, raising concerns about potential data breaches and account takeovers. These flaws could allow attackers to gain control of organisational accounts on third-party platforms and access sensitive user data, incl…
Category: Cyber Attack
R00TK1T, a hacking group, has released a statement challenging the Malaysian government’s assertion that the PADU system remains uncompromised. The group has substantiated its claim with a series of screenshots and access credentials obtained from the system’s users. In a bold move to underscore the…
Restoro and Reimage agree to a $26 million settlement after selling fake antivirus and tech services to undercover FTC agents.
The post Tech Support Firms Agree to $26M FTC Settlement Over Fake Services appeared first on SecurityWeek….
Recent data breach at unemployment agency France Travail (Pôle Emploi) could impact 43 million people.
The post 43 Million Possibly Impacted by French Government Agency Data Breach appeared first on SecurityWeek….
A threat actor has purportedly put up for sale access to the backoffice/admin panel of a leading Spanish cryptocurrency exchange. According to the actor, this access grants entry to the largest crypto exchange platform in Spain. Allegedly, this access enables users to look up sensitive information s…
In a recent cyber incident, the Handala team has purportedly infiltrated the servers of Viber Messenger, a popular messaging platform. According to their claims, the group successfully extracted a comprehensive array of sensitive data and the source code of Viber Messenger. The volume of data compro…
A purported threat actor has purportedly disclosed the database of Banregio Grupo Financiero, a financial group in Mexico, with a size of 340MB and file types including doc, xlsx, csv, sql, and html. According to the actor, access to the control panel was gained due to system malfunctions and errors…
The ransomware attack that hit the systems of Nissan Oceania in December 2023 impacted roughly 100,000 individuals. Nissan Oceania, the regional division of the multinational carmaker, announced in December 2023 that it had suffered a cyber attack and launched an investigation into the incident. Nissan immediately notified the Australian Cyber Security…
BotGuard OU raises $13 million in Series A funding to help hosting providers filter traffic and protect infrastructures.
The post BotGuard Raises $13 Million to Protect Against Harmful Web Traffic appeared first on SecurityWeek….
A 34-year-old Russian-Canadian national has been sentenced to nearly four years in jail in Canada for his participation in the LockBit global ransomware operation.
Mikhail Vasiliev, an Ontario resident, was originally arrested in November 2022 and charged by the U.S. Department of Justice (DoJ) with “conspiring with others to intentionally damage protected computers and…
Overzealous policies and blanket bans on AI tools risk forcing users underground to use unknown tools with unknown consequences.
The post Shadow AI – Should I be Worried? appeared first on SecurityWeek….
The HHS is investigating whether protected health information was compromised in the Change Healthcare data breach.
The post Government Launches Probe Into Change Healthcare Data Breach appeared first on SecurityWeek….
A possible ransomware attack has exposed government and personal data of Australians and New Zealanders, encompassing the carmaker’s customers, dealers, and employees….
One of the most common misconceptions in file upload cybersecurity is that certain tools are “enough” on their own—this is simply not the case. In our latest whitepaper OPSWAT CEO and Founder, Benny Czarny, takes a comprehensive look at what it takes to prevent malware threats in today’s ever-evolving file upload security landscape,…
A data breach impacting more than 15,000 consumers was revealed by streaming giant Roku. The attackers employed stolen login credentials to gain unauthorised access and make fraudulent purchases. Roku notified customers of the breach last Friday, stating that hackers used a technique known as “…