Tag: data
-
Russia used Cellebrite phone-hacking tool to crack down on dissident after firm cut off country
The continued use of the powerful data extraction product soon after the company in March 2021 said it would stop working with Russia suggests the firm has been unable to pull back its technology from authoritarian government customers, researchers say. First seen on therecord.media Jump to article: therecord.media/russia-used-cellebrite-tool-after-company-pulled-out-of-country
-
Russia’s Gamaredon Adapts Tactics to Target Ukraine
Tags: cloud, data, espionage, infrastructure, malware, phishing, russia, spear-phishing, tactics, ukraineEset Documents New Malware Families and Infrastructure Tactics. Eset found Russia’s FSB-linked Gamaredon expanded its malware toolkit, launched dozens of spear-phishing campaigns, and increasingly relied on legitimate cloud, tunneling and social platforms to conceal C2 infrastructure, exfiltrate data and sustain espionage operations targeting Ukraine. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/russias-gamaredon-adapts-tactics-to-target-ukraine-a-32068
-
Healthcare Vendor Xsolis Reports Breach Affecting 1.4M People
Xsolis confirmed a healthcare data breach affecting nearly 1.4 million people after a phishing attack exposed health and identity data. The post Healthcare Vendor Xsolis Reports Breach Affecting 1.4M People appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-xsolis-healthcare-data-breach/
-
LastPass Confirms Vendor Breach Exposed Customer Contact, Support Data
LastPass said customer contact and support data were exposed after attackers used stolen Klue OAuth tokens to access its Salesforce environment and CRM records. The post LastPass Confirms Vendor Breach Exposed Customer Contact, Support Data appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-lastpass-klue-oauth-token-salesforce-data-exposure/
-
Five Quantum Questions Every Bank CISO Should Ask
Quantum Deadlines Loom. Most Banks Can’t Say Where Their Cryptography Is Deployed The standards are written, CERT-In has issued its CBOM guidance and adversaries are already harvesting encrypted data to decrypt later. The gap isn’t quantum hardware. It’s visibility. Here are five questions every bank CISO should answer now, starting with one: Do we have…
-
Ransomware attacks grew in 2025 as traditional data breaches fell
In a new report, Bitsight charted a massive surge in internet-exposed AI services. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/ransomware-data-breaches-ai-bitsight/823649/
-
Madison Square Garden Hack Exposes 26 Million Visitor Records
Tags: dataMadison Square Garden faces a 26M-record hack tied to visitor data, facial recognition, and security records from its venue operations, with fallout from the leak. The post Madison Square Garden Hack Exposes 26 Million Visitor Records appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-madison-square-garden-hack-26m-records/
-
New Forescout Data Reveals Slow Progress Toward Quantum-Safe Security
Despite growing awareness of quantum computing risks and increasing pressure on organisations to prepare for the transition to post-quantum cryptography (PQC), most internet-facing systems remain unprepared for a quantum-safe future, according to new research from Forescout Research Vedere Labs. The report, published today, reveals that while adoption of PQC-capable technologies has accelerated over the The…
-
New GhostShell Hacking Group Targets Ukraine’s Drone Defense Sector
Researchers warn GhostShell is using fake drone documents to target Ukrainian defence teams, stealing passwords and sensitive data in a new cyber campaign. First seen on hackread.com Jump to article: hackread.com/ghostshell-hacking-group-ukraine-drone-defense-sector/
-
FortiBleed: The Broker Who Turned 73,000 Firewalls Into a Product Catalog
FortiBleed exposed valid credentials for 73,000+ Fortinet firewalls, revealing a large-scale access-brokering operation targeting organizations worldwide. In mid-June 2026, researcher Volodymyr >>Bob<< Diachenko found a live, exposed server containing working login credentials for tens of thousands of Fortinet firewalls, a data leak code-named FortiBleed. The headline number, valid remote-access logins for 73,932 devices across 21,632…
-
LastPass customer data exposed through Klue supply chain attack
LastPass disclosed that attackers used OAuth tokens compromised in a supply chain attack on Klue, a market intelligence platform that integrates with CRM and sales tools … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/24/lastpass-klue-data-breach-salesforce-environment/
-
KDDI Data Breach May Have Exposed Up to 14.22 Million Email Accounts
Japanese telecommunications company KDDI has disclosed a major cybersecurity incident in which up to 14.22 million email addresses and passwords may have been exposed through systems used by multiple internet service providers. The KDDI data breach has now become one of the most recent security events involving shared ISP infrastructure in Japan. First seen on…
-
4 vulnerabilities in Dify expose cross-tenant data
First seen on scworld.com Jump to article: www.scworld.com/brief/four-vulnerabilities-in-dify-expose-cross-tenant-data
-
Meta pauses employee-tracking program amid data exposure concerns
Tags: dataFirst seen on scworld.com Jump to article: www.scworld.com/brief/meta-pauses-employee-tracking-program-amid-data-exposure-concerns
-
Xsolis breach exposes personal and health data of 1.4 million people
First seen on scworld.com Jump to article: www.scworld.com/brief/xsolis-breach-exposes-personal-and-health-data-of-1-4-million-people
-
Tata Electronics confirms data breach after sensitive files appear online
First seen on scworld.com Jump to article: www.scworld.com/brief/tata-electronics-confirms-data-breach-after-sensitive-files-appear-online
-
Underground services offer targeted credential searches from infostealer data
First seen on scworld.com Jump to article: www.scworld.com/brief/underground-services-offer-targeted-credential-searches-from-infostealer-data
-
London Hydro customer data potentially compromised in security incident
First seen on scworld.com Jump to article: www.scworld.com/brief/london-hydro-customer-data-potentially-compromised-in-security-incident
-
Veeam’s Shiva Pillay: Ensuring data trust and contextualization for AI security
First seen on scworld.com Jump to article: www.scworld.com/resource/veeams-shiva-pillay-ensuring-data-trust-and-contextualization-for-ai-security
-
Federal data center law set to expire without a replacement
First seen on scworld.com Jump to article: www.scworld.com/brief/federal-data-center-law-set-to-expire-without-a-replacement
-
Why Security Firm Varonis Is Eyeing a Sale to Private Equity
Tags: dataStock Struggles, Unfavorable Comps to Cyera Could Make Private Deal Appealing. Private equity firms Blackstone, Thoma Bravo and Vista Equity Partners have expressed preliminary interest in Miami-based data security vendor Varonis, according to Bloomberg. The company is working with advisors and exploring options including a potential sale after receiving takeover interest. First seen on govinfosecurity.com…
-
Most Companies Overestimate Their AI Maturity
EXL Study Finds Data, Business Processes Separate Leaders from Laggards. Most companies believe they are ahead on AI, but EXL’s latest enterprise AI study suggests few have truly scaled it. The leaders are pulling away by integrating AI across functions, improving data access and redesigning workflows around measurable business value. First seen on govinfosecurity.com Jump…
-
Coupang’s $409M Fine Shows the Real Cost of Weak AI Governance
Recent AI and data security actions show why AI governance now belongs with boards, not just IT teams managing tools and access. The post Coupang’s $409M Fine Shows the Real Cost of Weak AI Governance appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-coupang-fine-ai-governance-board-risk/
-
Tata Electronics confirms cyberattack as hackers leak data
Tata Electronics has confirmed in a statement to BleepingComputer that it was the target of a cyberattack that impacted parts of its IT infrastructure. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/tata-electronics-confirms-cyberattack-as-hackers-leak-data/
-
Scope of Salesforce Attacks Expands as Icarus Leaks Data
More victims have emerged after attackers breached application vendor Klue and used its OAuth tokens to steal customers’ Salesforce data. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/scope-salesforce-attacks-expands-icarus-leaks-data
-
Klue says hackers stole credential from 2022 that led to customer data breaches
It’s unclear why Klue had not revoked the credential after the limited pilot, which hackers then used to breach a system holding keys for accessing customers’ data. First seen on techcrunch.com Jump to article: techcrunch.com/2026/06/23/klue-says-hackers-stole-credential-from-2022-that-led-to-customer-data-breaches/
-
Healthtech firm Xolis suffers data breach impacting 1.4 million people
Healthcare technology company Xsolis says that sensitive data belonging to nearly 1.4 million individuals was compromised in a phishing attack that gave attackers access to its network. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/healthtech-firm-xolis-suffers-data-breach-impacting-14-million-people/
-
LastPass Confirms Customer Data Breach After Klue OAuth Token Theft
LastPass has confirmed it was affected by the Klue supply chain incident, saying an unauthorised actor used stolen… First seen on hackread.com Jump to article: hackread.com/lastpass-customer-data-breach-klue-oauth-token/
-
DifyTap: Four Bugs Put over 1 million AI Apps at Risk
Four flaws in Dify exposed cross-tenant data, documents and AI conversations. Two critical bugs enabled unauthenticated access and data theft. Zafran Labs researchers disclosed four vulnerabilities in Dify, the open-source AI platform used by major companies like Volvo and Maersk to run over a million applications across over 60 industries. Two vulnerabilities are of critical…
-
Trump directs federal agencies to protect US data from quantum threats
An executive order signed Monday aims to accelerate the government’s transition to post-quantum cryptography (PQC), a new generation of encryption designed to protect data from the powerful quantum computers expected in the future. First seen on therecord.media Jump to article: therecord.media/trump-directs-federal-agencies-quantum-cryptography

