Security

Google Fi breached, customer data compromised

Google Fi customer data has been compromised by hackers, and the incident is most likely linked to the massive T-Mobile hack on January 19
Read more about Google Fi breached, customer data compromised

Circle K US spills partial credit card details, among other sensitive data

A popular chain of convenience stores and gas stations exposed a treasure trove of employee and customer information to the public.
Read more about Circle K US spills partial credit card details, among other sensitive data

RPG game Guidus exposed 100k players' progress data

Popular mobile role-playing game (RPG) Guidus spilled data about users’ game progress.
Read more about RPG game Guidus exposed 100k players' progress data

Puma investigates claims of leaking more than 230k customers’ data

Private data allegedly belonging to more than 230,000 Puma customers in Chile has been found on a hacker forum.
Read more about Puma investigates claims of leaking more than 230k customers’ data

French rugby club leaks source code

Prestigious club Stade Français potentially endangered its fans for over a year after leaking its website’s source code.
Read more about French rugby club leaks source code

Apple shows love for older iPhones with zero-day patch

Apple appears to have cemented its commitment to take care of the forlorn iOS 12 version, issuing a fresh update that contains a zero-day vulnerability patch for the outdated handsets.
Read more about Apple shows love for older iPhones with zero-day patch

‘Bring your own vulnerable driver’ attack technique is becoming popular among threat actors

1
Cybercriminal groups and nation-state actors are devising new attack techniques to compromise systems worldwide and bypass security solutions.
Read more about ‘Bring your own vulnerable driver’ attack technique is becoming popular among threat actors

Personal information of 9m+ people exposed in Indian HR data leak

HR management platform myrocket.co has exposed the personal information of hundreds of thousands of employees and millions of job candidates.
Read more about Personal information of 9m+ people exposed in Indian HR data leak

LockBit uses Starlink to avoid detection

1
LockBit ransomware syndicate has intimate ties with other major cybercrime groups, employs smear campaigns to stay on top, and subscribes to Starlink internet connection to avoid detection.
Read more about LockBit uses Starlink to avoid detection

Norton Password Manager breach: nearly one million users targeted

Norton LifeLock – the company that promises to keep you 'cyber safe' – said it discovered an unauthorized third party trying to log into a large swath of customer accounts during a recent December 2022 breach.
Read more about Norton Password Manager breach: nearly one million users targeted

Social marketplace exposes nearly half a million users

Security loopholes on social marketplace website trustanduse.com exposed data of around 439,000 users including many businesses for at least six months.
Read more about Social marketplace exposes nearly half a million users

Threat actors can use ChatGPT to create deployable malware

New research shows hackers are exploiting ChatGPT to write usable malware and sharing their results on the dark web.
Read more about Threat actors can use ChatGPT to create deployable malware

Facebook users targeted in copyright infringement scam

69
Hackers are sending fake copyright infringement notices to Facebook users to steal their credentials, a new research by Avanan has found.
Read more about Facebook users targeted in copyright infringement scam

LastPass hack aftermath: can we trust password managers?

Hackers stole copies of LastPass customers' vaults and might attempt to decrypt them. The incident has undoubtedly shaken an online community that has repeatedly been asked to trust password managers.
Read more about LastPass hack aftermath: can we trust password managers?

Gotta catch ‘em all: cybercriminals target victims with fake Pokémon game

Threat actors capitalize on the popularity of a Pokémon franchise and a buoyant NFT card trading market to spread malware.
Read more about Gotta catch ‘em all: cybercriminals target victims with fake Pokémon game

Russian threat group using other crooks’ malware to target Ukraine, says watchdog

A suspected Russian threat group is believed to have begun targeting victims in Ukraine, piggybacking off previously deployed malware to install backdoors of its own and siphon off data, cybersecurity watchdog Mandiant reports.
Read more about Russian threat group using other crooks’ malware to target Ukraine, says watchdog

How hackers might be exploiting ChatGPT

The viral AI chatbot ChatGPT might advise threat actors how to hack into networks with ease.
Read more about How hackers might be exploiting ChatGPT

Slack admits security breach

A popular workspace platform Slack disclosed a security incident that took place as the new year drew near.
Read more about Slack admits security breach

Cricket-oriented platform ‘drops a dolly’ exposing user data

Social platform for the cricket community exposed over 100k entries of private customer data and admin credentials.
Read more about Cricket-oriented platform ‘drops a dolly’ exposing user data

Researchers discover critical vulnerabilities in Ferrari, BMW, Toyota, and other automotive giants

Security researchers, including Web application security researcher Sam Curry, discovered severe vulnerabilities in Ferrari, BMW, Toyota, Ford, and other automotive companies.
Read more about Researchers discover critical vulnerabilities in Ferrari, BMW, Toyota, and other automotive giants