Tag: data
-
Investigating Cobalt Strike Beacons Using Shodan: A Researcher’s Guide
Security researcher has revealed a robust method for gathering threat intelligence on Cobalt Strike beacons using Shodan and PowerShell, filling the gap left by the popular @cobaltstrikebot Twitter account that went offline in June 2023. The technique allows security professionals to independently collect valuable configuration data from active Cobalt Strike servers, specifically focusing on beacon…
-
Volkswagen Car Hack Exposes Owner’s Personal Data and Service Records
Tech-savvy Volkswagen owner has uncovered critical security flaws in the My Volkswagen app that potentially exposed sensitive personal data and vehicle information of thousands of customers. The vulnerabilities, which have since been patched, allowed anyone with access to a vehicle’s VIN number to retrieve comprehensive owner data, service records, and potentially control connected features without…
-
Cocospy stalkerware apps go offline after data breach
The trio of spyware apps, hacked earlier this year, no longer work. First seen on techcrunch.com Jump to article: techcrunch.com/2025/05/19/cocospy-stalkerware-apps-go-offline-after-data-breach/
-
BSidesLV24 GroundFloor Building Data Driven Access With The Tools You Have
Author/Presenter: John Evans Our sincere appreciation to BSidesLV, and the Presenters/Authors for publishing their erudite Security BSidesLV24 content. Originating from the conference’s events located at the Tuscany Suites & Casino; and via the organizations YouTube channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/05/bsideslv24-groundfloor-building-data-driven-access-with-the-tools-you-have/
-
UK Legal Aid Agency confirms applicant data stolen in data breach
The United Kingdom’s Legal Aid Agency (LAA) has confirmed that a recent cyberattack is more serious than first believed, with hackers stealing a large trove of sensitive applicant data in a data breach. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/uk-legal-aid-agency-confirms-applicant-data-stolen-in-data-breach/
-
Google Reveals Hackers Targeting US Following UK Retailer Attacks
The Google Threat Intelligence Group (GTIG) recently revealed that the well-known hacker collective UNC3944, which also overlaps with the widely publicized Scattered Spider, is a persistent and dynamic cyberthreat. Initially focused on telecommunications for SIM swap operations, UNC3944 has since pivoted to ransomware and data theft extortion tactics since early 2023, casting a wider net…
-
Ransomware Gangs Use Skitnet Malware for Stealthy Data Theft and Remote Access
Several ransomware actors are using a malware called Skitnet as part of their post-exploitation efforts to steal sensitive data and establish remote control over compromised hosts.”Skitnet has been sold on underground forums like RAMP since April 2024,” Swiss cybersecurity company PRODAFT told The Hacker News. “However, since early 2025, we have observed multiple ransomware operators…
-
We’re Answering Your Exposure Management Questions
Each Monday, the Tenable Exposure Management Academy provides the practical, real-world guidance you need to shift from vulnerability management to exposure management. In this Exposure Management Academy FAQ, we help CISOs understand exposure management, look at how advanced you might be and outline how to structure a program. You can read the entire Exposure Management…
-
Pharma giant Regeneron to buy 23andMe and its customers’ data for $256M
Tags: data23andMe was sold by bankruptcy auction, a year after the company had a massive data breach. First seen on techcrunch.com Jump to article: techcrunch.com/2025/05/19/pharma-giant-regeneron-to-buy-23andme-and-its-customers-data-for-256m/
-
SK Telecom USIM Data Compromise: Millions of Customers at Risk
SK Telecom faces a major data breach affecting millions. Learn how to protect your USIM data and stay secure with our comprehensive guide. First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/05/sk-telecom-usim-data-compromise-millions-of-customers-at-risk/
-
New Cyera Funding Round Doubles Valuation To $6 Billion: Reports
Fast-growing data security startup Cyera has reportedly raised new funding, and doubled its valuation to $6 billion, weeks after hiring a new channel chief to accelerate its work with partners. First seen on crn.com Jump to article: www.crn.com/news/security/2025/new-cyera-funding-round-doubles-valuation-to-6-billion-reports
-
Official UK records confirm cyberattacks put NHS patients at risk of clinical harm
Data obtained by Recorded Future News from the U.K.’s National Health Service show that two incidents last year put patients at risk of clinical harm. First seen on therecord.media Jump to article: therecord.media/uk-nhs-data-two-cyberattacks-clinical-harm-2024
-
UK government confirms massive data breach following hack of Legal Aid Agency
A large cache of sensitive data about people who applied for legal aid in the U.K. is potentially in the possession of cybercriminals, the government said. First seen on therecord.media Jump to article: therecord.media/uk-legal-aid-agency-data-breach
-
Brussels Court Slams Tracking-Based Ads, Upholds GDPR Privacy Standards
The Brussels Court of Appeal ruled on May 14, 2025, that the consent model used in tracking-based advertising by major tech companies such as Google, Microsoft, Amazon, and X (formerly Twitter) does not comply with EU privacy laws, including the General Data Protection Regulation (GDPR). First seen on thecyberexpress.com Jump to article: thecyberexpress.com/brussels-court-tracking-ads-gdpr/
-
Millions at risk after attackers steal UK legal aid data dating back 15 years
Cybercriminals lifted info including addresses, ID numbers, and financial records from agency systems First seen on theregister.com Jump to article: www.theregister.com/2025/05/19/legal_aid_agency_data_theft/
-
Firefox Patches 2 Zero-Days Exploited at Pwn2Own Berlin with $100K in Rewards
Mozilla has released security updates to address two critical security flaws in its Firefox browser that could be potentially exploited to access sensitive data or achieve code execution.The vulnerabilities, both of which were exploited as a zero-day at Pwn2Own Berlin, are listed below -CVE-2025-4918 – An out-of-bounds access vulnerability when resolving Promise objects that could…
-
Health Care Data Breach Costs BreachForums Admin $700,000 Fine
Conor Brian Fitzpatrick, the 22-year-old former administrator of cybercrime forum Breachforums, will forfeit approximately $700,000 to settle a civil lawsuit stemming from a healthcare data breach. The settlement marks a rare instance where a cybercriminal’s assets will directly compensate victims of a data breach. Fitzpatrick, known online as >>Pompompurin,
-
Legal Aid Agency Admits Major Breach of Applicant Data
The UK government says that hackers accessed a “large amount” of personal information in attack on Legal Aid Agency First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/legal-aid-agency-admits-major/
-
Tracking Accusations May Have Roblox Back in Court
Roblox is accused of secretly tracking the data of children without consent, an activity that the plaintiffs say violates their privacy under federal law. First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/05/tracking-accusations-may-have-roblox-back-in-court/
-
Legal aid hack: data from hundreds of thousands of people accessed, says MoJ
Data including criminal records downloaded in ‘significant’ cyber-attack at Legal Aid Agency in April, ministry confirmsThe personal data of hundreds of thousands of legal aid applicants in England and Wales dating back to 2010, including criminal records and financial details, has been accessed and downloaded in a “significant” cyber-attack.Officials admit that the data may have…
-
Significant amount of personal data accessed in Legal Aid Agency data breach, says MoJ
Information including applicants’ criminal records downloaded in April cyber-attack, justice ministry confirmsA “significant amount of personal data” of people who applied online to the Legal Aid Agency since 2010, including criminal records, was accessed and downloaded in a cyber-attack in April, the Ministry of Justice has said.<em>More details soon “¦</em><br> <a href=”https://www.theguardian.com/law/2025/may/19/significant-amount-of-personal-data-accessed-in-legal-aid-agency-data-breach-says-moj”>Continue reading… First seen…
-
Smart Strategies for Comprehensive Data Protection
Why Non-Human Identities (NHIs) Management is Key in Data Protection Strategies? With cyber threats escalating at an alarming rate, Non-Human Identities (NHIs) management has become an indispensable part of comprehensive security strategies. But why are NHIs so vital in cybersecurity? To put it simply, they ensure a secure cloud by bridging the gap between security……
-
Cyber! Take your dadgum Medicine!
Learn the Bitter Lesson Bitter Lesson, an essay by one of the creators of reinforcement learning, first published back in 2019, recently made the rounds again now that its author, Professor Richard Sutton, was named a winner of this year’s ACM Turing Award. In it, he points out that general methods have won, again and again,…
-
Stay Ahead of Security Breaches with Proactive Measures
Are You Proactively Managing NHIs and Secrets for Cloud Security? Safeguarding Non-Human Identities (NHIs) and secrets are pivotal. Careful management of these crucial elements can profoundly enhance our control over cloud security. Are organizations deploying proactive security measures to stay ahead of data breaches? Understanding NHIs and Secrets in Cybersecurity It is essential to consider……
-
Coinbase Will Reimburse Customers Up to $400 Million After Data Breach
Plus: 12 more people are indicted over a $263 million crypto heist, and a former FBI director is accused of threatening Donald Trump thanks to an Instagram post of seashells. First seen on wired.com Jump to article: www.wired.com/story/coinbase-will-reimburse-customers-up-to-400-million-after-data-breach/
-
America’s consumer watchdog drops leash on proposed data broker crackdown
Crooks must be licking their lips at the possibilities First seen on theregister.com Jump to article: www.theregister.com/2025/05/16/cfpb_data_broker/

