Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2020-09-22 14:12:00 UTC
ThreatPost
ThreatPost
Google Cloud Buckets Exposed in Rampant Misconfiguration

A too-large percentage of cloud databases containing highly sensitive information are publicly available, an analysis shows.

Breach Cloud Security Most Recent ThreatLists Privacy Amazon S3 Analysis Cloud Buckets Cloud Databases Comparitech Data Breach Elasticsearch Google Cloud Misconfiguration Paul Bischoff Publicly Available
2020-09-22 12:56:00 UTC
The Daily Swig
The Daily Swig
Growing ‘cultural divide’ between DevOps and AppSec workers could lead to less secure software – report

Survey warns that working relationships must improve among developers

2020-09-22 12:21:00 UTC
The Daily Swig
The Daily Swig
Youth unemployment risks fueling Indian cybercrime boom

Many young Indians are turning to the dark side to generate additional income, a new report claims

2020-09-21 21:27:00 UTC
ThreatPost
ThreatPost
Fileless Malware Tops Critical Endpoint Threats for 1H 2020

When it comes to endpoint security, a handful of threats make up the bulk of the most serious attack tools and tactics.

Malware Most Recent ThreatLists Web Security Cisco Cobalt Strike Credential Dumping Detection Evasion Dual-use Tools Endpoint Security Fileless Malware First Half 2020 Mimikatz MITRE ATT&CK Persistence Ransomware
2020-09-21 20:25:00 UTC
Dark Reading
Dark Reading
'Dark Overlord' Cyber Extortionist Pleads Guilty

Nathan Wyatt was sentenced to five years in prison after changing a previously not guilty plea.

2020-09-21 20:07:00 UTC
ThreatPost
ThreatPost
Unsecured Microsoft Bing Server Leaks Search Queries, Location Data

Data exposed included search terms, location coordinates, and device information - but no personal data.

Hacks Web Security Cyber Blackmail Cybercriminals Data Exposed Exposed Server Hack Meow Attack Microsoft Microsoft Bing Microsoft Security Misconfiguration Phishing Scams Search Queries Security Hack Unsecured Server
2020-09-21 19:29:00 UTC
ThreatPost
ThreatPost
DHS Issues Dire Patch Warning for ‘Zerologon’

The deadline looms for U.S. Cybersecurity and Infrastructure Security Agency’s emergency directive for federal agencies to patch against the so-called ‘Zerologon’ vulnerability.

Critical Infrastructure Government Vulnerabilities Web Security Active Directory Christopher Krebs CISA ComputeNetlogonCredential CVE-2020-1472 Cybersecurity And Infrastructure Security Agency Github Microsoft Windows Netlogon Remote Protocol MS-NRPC Patch Tuesday Windows Server OS Zerologon
2020-09-21 17:03:00 UTC
The Daily Swig
The Daily Swig
Critical stored XSS vulnerability in Instagram’s Spark AR Studio nets 14-year-old researcher $25,000

Facebook triage team escalated an open redirect flaw found by the Brazilian teenager in the augmented reality tool

2020-09-21 17:01:00 UTC
ThreatPost
ThreatPost
Firefox for Android Bug Allows ‘Epic Rick-Rolling’

Anyone on the same Wi-Fi network can force websites to launch, with no user interaction.

Mobile Security Vulnerabilities Web Security
2020-09-21 16:17:00 UTC
HackRead
HackRead
Whitehat hacker bypasses SQL injection filter for Cloudflare

By Sudais Asif

This was then subsequently reported to Cloudflare who fixed it in a few days.

This is a post from HackRead.com Read the original post: Whitehat hacker bypasses SQL injection filter for Cloudflare

Security CloudFlare Hacking Security SQL Vulnerability

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Point of View

OUR TAKE ON TRENDING STORIES
April 2024
By SUE DENIM
Cyber Warfare: Breaches, Alerts, and Cybersecurity Policy
In cyber warfare, it seems no sector is safe from the relentless clutches of threat actors. Take, for instance, a Russian food manufacturing giant finding itself in the crosshairs of a Ukrainian hacker collective. With a flair for the dramatic, the group proudly proclaimed their conquest in a channel dedicated to airing their digital conquests. Their loot? A whopping 6TB of sensitive data, includi...

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES
13 May 2024
BREACHAWARE HQ

A total of 35 breaches were found and analysed resulting in 4,063,408 leaked accounts containing a total of 26 different data types. The breaches found publicly and freely available included ESN, Stealer Log 0456, SVR Labs, Kuchenland and Stealer Log 0455