Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2020-10-07 15:55:00 UTC
The Daily Swig
The Daily Swig
Researchers map threat actors’ use of open source offensive security tools

Malware cartographers offer their insights

2020-10-07 15:50:00 UTC
ThreatPost
ThreatPost
Google’s Chrome 86: Critical Payments Bug, Password Checker Among Security Notables

Google is rolling out 35 security fixes, and a new password feature, in Chrome 86 versions for Windows, Mac, Android and iOS users.

Vulnerabilities Web Security Android Chrome Chrome 86 Compromised Password Credential Stuffing CVE-2020-15967 CVE-2020-15969 CVE-2020-15971 CVE-2020-15972 CVE-2020-15991 Encryption Google Google Payments HTTPS Ios Linux Mac Password Check Patches Safety Check Security Fix Security Improvements Windows
2020-10-07 14:58:00 UTC
Krebs on Security
Krebs on Security
Promising Infusions of Cash, Fake Investor John Bernard Walked Away With $30M

September featured two stories on a phony tech investor named John Bernard, a pseudonym used by a convicted thief named John Clifton Davies who's fleeced dozens of technology companies out of an estimated $30 million with the promise of lucrative investments. Those stories prompted a flood of tips from Davies' victims that paint a much clearer picture of this serial con man and his cohorts, including allegations of hacking, smuggling, bank fraud and murder.

A Little Sunshine Ne'er-Do-Well News Docklands Enterprise Ltd. Ecaterina Dudorenko Inside Knowledge Solutions Ltd. Iryna Davies John Bernard John Clifton Davies Katherine Miller Organized Crime And Corruption Reporting Project Pravda SafeSwiss Secure Communication AG Secure Swiss Data Sergey Valentinov Pankov The Inside Knowledge The Private Office Of John Bernard The-private-office.ch
2020-10-07 13:25:00 UTC
ThreatPost
ThreatPost
PoetRAT Resurfaces in Attacks in Azerbaijan Amid Escalating Conflict

Spear-phishing attacks targeting VIPs and others show key malware changes and are likely linked to the current conflict with Armenia.

Government Malware Web Security Armenia Azerbaijan Cisco Talos Conflict Dostoevsky Email Espionage Government Macros Malicious Documents Malware Analysis Microsoft Word Nation State PoetRAT Public Sector Spearphishing Spyware The Brothers Karamazov Threat Actors War
2020-10-07 13:14:00 UTC
ThreatPost
ThreatPost
IRS COVID-19 Relief Payment Deadlines Anchor Convincing Phish

The upcoming deadlines for applying for coronavirus relief are the lure for a phish that gets around email security gateways by using a legitimate SharePoint page for data-harvesting.

Web Security Armorblox Campaign COVID-19 Deadlines Direct Payments Economic Impact Payment Email Security Gateway IRS Non-filers Phishing Scam Sharepoint Page
2020-10-07 13:00:00 UTC
ThreatPost
ThreatPost
Comcast TV Remote Hack Opens Homes to Snooping

Researchers disclosed the 'WarezTheRemote' attack, affecting Comcast's XR11 voice remote control.

Hacks IoT Vulnerabilities Comcast Comcast XR11 Cyberattack Hack Internet Of Things RF Tv Remote Vulnerability WarezTheRemote
2020-10-07 12:24:00 UTC
The Daily Swig
The Daily Swig
Swiss Post releases bug bounty safe harbor wording under Creative Commons license

Move hoped to spark wider adoption of vulnerability disclosure policies among Swiss organizations

2020-10-07 11:41:00 UTC
HackRead
HackRead
Brave Browser enters dark web with its own Tor Onion service

By Deeba Ahmed

Now Brave browser pages will be accessible on the Dark Web via the Tor gateway.

This is a post from HackRead.com Read the original post: Brave Browser enters dark web with its own Tor Onion service

Technology News Brave Browser Dark Web Onion Privacy Security Tor
2020-10-06 21:50:00 UTC
Dark Reading
Dark Reading
Zerologon Vulnerability Used in APT Attacks

MERCURY, the Iranian advanced persistent threat group, is using Zerologon in a new series of attacks detected by Microsoft.

2020-10-06 21:21:00 UTC
HackRead
HackRead
Ransomware attack on health tech firm disrupted COVID-19 medical trials

By Waqas

Philadelphia-based Health Tech eResearchTechnology (ERT) Firm Suffered Ransomware Attack.

This is a post from HackRead.com Read the original post: Ransomware attack on health tech firm disrupted COVID-19 medical trials

Cyber Attacks Cyber Crime Cyber Attack Hacking Healthcare Malware Medical Ransomware

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Point of View

OUR TAKE ON TRENDING STORIES
March 2024
By SUE DENIM
TikTok Ban, Discord Bot Community Attack, and Telecom Company's Breach Resurgence.
Ah, the dramatic saga of TikTok in the United States! Picture this: a ban looming over TikTok, akin to a dark cloud threatening to rain on our digital parade. Congress is all up in arms, waving their "think of the children" banners while TikTok nervously checks its watch, wondering if it should start packing its bags for a forced sale. Meanwhile, nobody bats an eye at the plethora of Chinese gadge...

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES
22 April 2024
BREACHAWARE HQ

A total of 11 breaches were found and analysed resulting in 8,670,369 leaked accounts containing a total of 26 different data types. The breaches found publicly and freely available included A MONEY, Raychat, Bin Weevils, ZOON and Stealer Log 0450