Data leak

Security Firms Say Evidence Seems to Confirm Oracle Cloud Hack

Security Firms Say Evidence Seems to Confirm Oracle Cloud Hack 2025-03-26 at 12:24 By Eduard Kovacs Despite Oracle categorically denying that its Cloud systems have been breached, sample data released by the hacker seems to prove otherwise. The post Security Firms Say Evidence Seems to Confirm Oracle Cloud Hack appeared first on SecurityWeek. This article […]

React to this headline:

Loading spinner

Security Firms Say Evidence Seems to Confirm Oracle Cloud Hack Read More »

70% of leaked secrets remain active two years later

70% of leaked secrets remain active two years later 2025-03-20 at 07:01 By Help Net Security Long-lived plaintext credentials have been involved in most breaches over the last several years, according to GitGuardian. When valid credentials, such as API keys, passwords, and authentication tokens, leak, attackers at any skill level can gain initial access or

React to this headline:

Loading spinner

70% of leaked secrets remain active two years later Read More »

How to prevent data leakage in collaboration tools like Slack and Teams

How to prevent data leakage in collaboration tools like Slack and Teams 2025-03-06 at 08:03 By Help Net Security In recent years, collaboration tools have become an absolute necessity for remote and hybrid work. This primarily increased during the COVID-19 pandemic due to the impossibility of communicating in person. So, tools like Slack, Microsoft Teams,

React to this headline:

Loading spinner

How to prevent data leakage in collaboration tools like Slack and Teams Read More »

Black Basta Leak Offers Glimpse Into Group’s Inner Workings 

Black Basta Leak Offers Glimpse Into Group’s Inner Workings  2025-03-03 at 13:04 By Kevin Townsend A massive hoard of internal chats has been leaked from Black Basta, rivalling the Conti leaks of late February 2022. The post Black Basta Leak Offers Glimpse Into Group’s Inner Workings  appeared first on SecurityWeek. This article is an excerpt

React to this headline:

Loading spinner

Black Basta Leak Offers Glimpse Into Group’s Inner Workings  Read More »

Cyble Finds Thousands of Security Vendor Credentials on Dark Web

Cyble Finds Thousands of Security Vendor Credentials on Dark Web 2025-01-22 at 10:23 By Paul Shread Overview Account credentials from some of the largest cybersecurity vendors can be found on the dark web, a result of the growing problem of infostealers, according to an analysis of Cyble threat intelligence data. The credentials – available for

React to this headline:

Loading spinner

Cyble Finds Thousands of Security Vendor Credentials on Dark Web Read More »

Configuration files for 15,000 Fortinet firewalls leaked. Are yours among them?

Configuration files for 15,000 Fortinet firewalls leaked. Are yours among them? 2025-01-16 at 13:03 By Zeljka Zorz A threat actor has leaked configuration files (aka configs) for over 15,000 Fortinet Fortigate firewalls and associated admin and user credentials. The collection has been leaked on Monday and publicized on an underground forum by the threat actor

React to this headline:

Loading spinner

Configuration files for 15,000 Fortinet firewalls leaked. Are yours among them? Read More »

UN aviation agency investigating possible data breach

UN aviation agency investigating possible data breach 2025-01-07 at 16:49 By Zeljka Zorz The United Nation’s International Civil Aviation Organization (ICAO) confirmed on Monday that it’s “actively investigating reports of a potential information security incident allegedly linked to a threat actor known for targeting international organizations.” The statement came a few days after 42,000 documents

React to this headline:

Loading spinner

UN aviation agency investigating possible data breach Read More »

Preventing data leakage in low-node/no-code environments

Preventing data leakage in low-node/no-code environments 2024-12-10 at 07:34 By Help Net Security Low-code/no-code (LCNC) platforms enable application development by citizen developers, often generating “shadow engineering” projects that evade security oversight. While LCNC solutions like Power BI reports and automated workflows foster agility and innovation, they also introduce significant risks, including data leakage. Data leakage

React to this headline:

Loading spinner

Preventing data leakage in low-node/no-code environments Read More »

Massive troves of Amazon, HSBC employee data leaked

Massive troves of Amazon, HSBC employee data leaked 2024-11-12 at 12:18 By Zeljka Zorz A threat actor who goes by the online moniker “Nam3L3ss” has leaked employee data belonging to a number of corporations – including Amazon, 3M, HSBC and HP – ostensibly compromised during the May 2023 MOVEit hack by the Cl0p ransomware gang,

React to this headline:

Loading spinner

Massive troves of Amazon, HSBC employee data leaked Read More »

Patching problems: The “return” of a Windows Themes spoofing vulnerability

Patching problems: The “return” of a Windows Themes spoofing vulnerability 2024-10-29 at 12:18 By Zeljka Zorz Despite two patching attempts, a security issue that may allow attackers to compromise Windows user’s NTLM (authentication) credentials via a malicious Windows themes file still affects Microsoft’s operating system, 0patch researchers have discovered. The path to discovery The story

React to this headline:

Loading spinner

Patching problems: The “return” of a Windows Themes spoofing vulnerability Read More »

Data Breach and DDoS Attacks Take Archive.org and Open Library Offline

Data Breach and DDoS Attacks Take Archive.org and Open Library Offline 2024-10-12 at 03:19 By Paul Shread Key Takeaways Overview The Internet Archive has taken its Archive.org and OpenLibrary.org sites offline in response to a data breach and repeated DDoS attacks. The breach of a user authentication database, which exposed the email addresses and credentials

React to this headline:

Loading spinner

Data Breach and DDoS Attacks Take Archive.org and Open Library Offline Read More »

Internet Archive data breach, defacement, and DDoS: Users’ data compromised

Internet Archive data breach, defacement, and DDoS: Users’ data compromised 2024-10-10 at 12:46 By Zeljka Zorz The Internet Archive has suffered a data breach, leading to the compromise of email addresses, screen names and bcrypt password hashes of some 31 million users. The compromise was revealed on Wednesday afternoon, when the digital library’s website began

React to this headline:

Loading spinner

Internet Archive data breach, defacement, and DDoS: Users’ data compromised Read More »

Deloitte Says No Threat to Sensitive Data After Hacker Claims Server Breach

Deloitte Says No Threat to Sensitive Data After Hacker Claims Server Breach 2024-09-24 at 12:16 By Eduard Kovacs Deloitte says no sensitive data exposed after a notorious hacker leaked what he claimed to be internal communications.  The post Deloitte Says No Threat to Sensitive Data After Hacker Claims Server Breach appeared first on SecurityWeek. This

React to this headline:

Loading spinner

Deloitte Says No Threat to Sensitive Data After Hacker Claims Server Breach Read More »

Cloud Storage Bucket Security: PII Leak Brings Renewed Focus to Storage Bucket Access Controls

Cloud Storage Bucket Security: PII Leak Brings Renewed Focus to Storage Bucket Access Controls 2024-08-27 at 18:16 By dakshsharma16 Key Takeaways Overview A Google Cloud Storage bucket leak has brought renewed attention to the risk of misconfigured cloud storage buckets, one of the most common cloud security issues and causes of data leaks. Alice’s Table,

React to this headline:

Loading spinner

Cloud Storage Bucket Security: PII Leak Brings Renewed Focus to Storage Bucket Access Controls Read More »

Disney Investigating Hacker Group’s Data Theft Claims

Disney Investigating Hacker Group’s Data Theft Claims 2024-07-16 at 15:02 By Eduard Kovacs Disney has launched an investigation after a hacker group named NullBulge leaked data allegedly stolen from the company. The post Disney Investigating Hacker Group’s Data Theft Claims appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original

React to this headline:

Loading spinner

Disney Investigating Hacker Group’s Data Theft Claims Read More »

Major data breaches that have rocked organizations in 2024

Major data breaches that have rocked organizations in 2024 2024-07-16 at 06:31 By Help Net Security This article provides an overview of the major data breaches we covered in 2024 so far, highlighting incidents involving Trello, AnyDesk, France Travail, Nissan, MITRE, Dropbox, BBC Pension Scheme, TeamViewer, Advance Auto Parts, and AT&T. Find out what led

React to this headline:

Loading spinner

Major data breaches that have rocked organizations in 2024 Read More »

Data of Millions of mSpy Customers Leaked Online

Data of Millions of mSpy Customers Leaked Online 2024-07-15 at 17:16 By Ionut Arghire Over 310 GB of data from mSpy, including 2.4 million email addresses and other user data, was leaked online. The post Data of Millions of mSpy Customers Leaked Online appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS

React to this headline:

Loading spinner

Data of Millions of mSpy Customers Leaked Online Read More »

Using Authy? Beware of impending phishing attempts

Using Authy? Beware of impending phishing attempts 2024-07-11 at 15:46 By Zeljka Zorz Do you use Authy for your multi-factor authentication needs? If you do, you should keep an eye out for phishing attempts, as well as implement defenses against SIM swapping attacks. What happened? On July 1, Twilio – the company that develops the

React to this headline:

Loading spinner

Using Authy? Beware of impending phishing attempts Read More »

Evolve Bank Data Leaked After LockBit’s ‘Federal Reserve Hack’ 

Evolve Bank Data Leaked After LockBit’s ‘Federal Reserve Hack’  2024-06-27 at 13:56 By Eduard Kovacs The LockBit ransomware group claimed to have hacked the US Federal Reserve, but leaked data from an Arkansas-based bank. The post Evolve Bank Data Leaked After LockBit’s ‘Federal Reserve Hack’  appeared first on SecurityWeek. This article is an excerpt from

React to this headline:

Loading spinner

Evolve Bank Data Leaked After LockBit’s ‘Federal Reserve Hack’  Read More »

‘Phantom’ Source Code Secrets Haunt Major Organizations

‘Phantom’ Source Code Secrets Haunt Major Organizations 2024-06-27 at 13:01 By Ionut Arghire Aqua Security shows that code in repositories remains accessible even after being deleted or overwritten, continuing to leak secrets. The post ‘Phantom’ Source Code Secrets Haunt Major Organizations appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

React to this headline:

Loading spinner

‘Phantom’ Source Code Secrets Haunt Major Organizations Read More »