Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2020-03-06 12:41:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Researcher finds 670 Microsoft subdomains vulnerable to takeover

Researchers have found it’s still child’s play to hijack subdomains from companies such as Microsoft to use in phishing and malware attacks.

Microsoft Operating Systems Phishing Security Threats Vulnerability Windows Azure CNAME DNS Records Domainsquatting Phishing Skype Subdomain Typosquatting Vullnerability.com
2020-03-06 11:48:00 UTC
The Daily Swig
The Daily Swig
Solar panels expose home WiFi networks to password theft, remote attacks

Omnik solar inverters contain severe security holes, leaving them susceptible to DNS rebinding attacks

2020-03-06 11:43:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Chrome extension cons cryptocurrency users out of hardware wallet key

Ledger has warned users about a rogue Chrome extension that duped users into giving up the keys to their hardware crypto wallets.

Cryptocurrency Security Threats Blockchain Chrome Chrome Extensions Crypto Wallet Cryptocoins Cryptocurrency Google Ledger Ledger Live Seed Phrase
2020-03-06 11:15:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Cathay Pacific fined over crooks slurping its database for over 4 years

The ICO found a "catalog of errors," including backups without passwords, unpatched servers, no-longer-supported OSes and feeble anti-virus.

Data Loss Law & Order Privacy Security Threats Brute Force Attack Cathay Pacific Data Leak Data Protection Act Fine Ico Information Commissioner's Office
2020-03-06 10:53:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Boots yanks loyalty card payouts after 150K accounts get stuffed

The UK pharmacy chain says it wasn't hacked, its systems are fine. It's all the password reusers mucking things up again!

2-factor Authentication Security Threats 2FA Advantage Card Boots Breach Breached Credentials Credential Reuse Credential Stuffing Loyalty Cards Password Manager Password Reuse Password Stuffing
2020-03-05 22:28:00 UTC
HackRead
HackRead
Man hacks Indian tech support scam call center; leaks CCTV footage

By Sudais Asif

The tech support scam call center has now been raided by local police while its entire operation has been shut down.

This is a post from HackRead.com Read the original post: Man hacks Indian tech support scam call center; leaks CCTV footage

Cyber Crime Scams And Fraud CCTV Crooks Fraud Hacking India Kolkata Malware Scam
2020-03-05 21:30:00 UTC
Dark Reading
Dark Reading
3 Data Breaches Disclosed This Week: J.Crew, T-Mobile, and Carnival

The separate incidents show how data theft knows no market-based limits.

2020-03-05 21:25:00 UTC
Dark Reading
Dark Reading
Attackers Distributing Malware Under Guise of Security Certificate Updates

Approach is a twist to the old method of using fake software, browser updates, Kaspersky says.

2020-03-05 20:42:00 UTC
ThreatPost
ThreatPost
Zynga Faces Lawsuit Over Massive Words with Friends Breach

Meanwhile, breach incidents have hit Carnival Cruise Lines, T-Mobile and J. Crew customers.

Breach Hacks Web Security Account Takeover Ato Carnival Cruise Lines Class Action Lawsuit Credential Stuffing Cyberattacks Data Breach J. Crew T-Mobile Words With Friends Zynga
2020-03-05 20:07:00 UTC
The Daily Swig
The Daily Swig
IoT security: Singapore launches labeling scheme for WiFi routers and home hubs

A simple plan for smart security

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Point of View

OUR TAKE ON TRENDING STORIES
March 2024
By SUE DENIM
TikTok Ban, Discord Bot Community Attack, and Telecom Company's Breach Resurgence.
Ah, the dramatic saga of TikTok in the United States! Picture this: a ban looming over TikTok, akin to a dark cloud threatening to rain on our digital parade. Congress is all up in arms, waving their "think of the children" banners while TikTok nervously checks its watch, wondering if it should start packing its bags for a forced sale. Meanwhile, nobody bats an eye at the plethora of Chinese gadge...

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES
22 April 2024
BREACHAWARE HQ

A total of 11 breaches were found and analysed resulting in 8,670,369 leaked accounts containing a total of 26 different data types. The breaches found publicly and freely available included A MONEY, Raychat, Bin Weevils, ZOON and Stealer Log 0450