Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2020-02-26 16:44:00 UTC
The Daily Swig
The Daily Swig
Magento security: Exploit released for payment plugin vulnerability

Insecure module opened the door for attackers to hijack payments

2020-02-26 16:28:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Apple’s iOS pasteboard leaks location data to spy apps

A developer has discovered that malicious apps could exploit the pasteboard to work out a user’s location.

Apple IOS Operating Systems OS X Privacy Security Threats Copy And Paste GPS Data Ios Location Data Mysk Pasteboard
2020-02-26 16:27:00 UTC
Naked Security | Sophos
Naked Security | Sophos
LTE vulnerability allows impersonation of other mobile devices

Researchers have found a way to impersonate mobile devices on 4G and 5G mobile networks, and are calling on operators and standards bodies to fix the flaw that caused it.

Data Loss Mobile Privacy Security Threats 4g 5G DNS Spoofing IMP4GT Impersonation Attacks Impersonation Attacks In 4G Networks LTE Man In The Middle Attack Mobile Operators
2020-02-26 15:45:00 UTC
The Daily Swig
The Daily Swig
Casey Ellis on IoT bug bounties: ‘We need locksmiths as well as burglars’

The Bugcrowd founder discusses the growth of IoT bug bounty programs ahead of a live hacking event at the RSA Conference today

2020-02-26 15:45:00 UTC
The Daily Swig
The Daily Swig
Casey Ellis on IoT bug bounties and live hacking events

The Bugcrowd founder discusses the growth of IoT bug bounty programs ahead of a live hacking event at RSA Conference today

2020-02-26 15:45:00 UTC
The Daily Swig
The Daily Swig
Knowledge transfer: Casey Ellis on IoT bug bounties and live hacking events

The Bugcrowd founder discusses the growth of IoT bug bounty programs ahead of a live hacking event at RSA Conference today

2020-02-26 15:00:00 UTC
Dark Reading
Dark Reading
5 Ways to Up Your Threat Management Game

Good security programs start with a mindset that it's not about the tools, it's what you do with them. Here's how to get out of a reactive fire-drill mode with vulnerability management.

2020-02-26 14:43:00 UTC
Krebs on Security
Krebs on Security
Zyxel 0day Affects its Firewall Products, Too

On Monday, networking hardware maker Zyxel released security updates to plug a critical security hole in its network attached storage (NAS) devices that is being actively exploited by crooks who specialize in deploying ransomware. Today, Zyxel acknowledged the same flaw is present in many of its firewall products.

Latest Warnings Time To Patch 0day Alex Holden Zero Day ZyXel
2020-02-26 14:00:00 UTC
ThreatPost
ThreatPost
Iranian APT Targets Govs With New Malware

A new campaign is targeting governments with the ForeLord malware, which steals credentials.

Government Malware Advanced Persistent Threat Actor Cobalt Ulster Credential Theft Forelord Irán Iran APT Malware Muddywater APT
2020-02-26 14:00:00 UTC
ThreatPost
ThreatPost
Unpatched Security Flaws Open Connected Vacuum to Takeover

A connected, robotic vacuum cleaner has serious vulnerabilities that could allow remote hackers to view its video footage and launch denial of service attacks.

Hacks IoT RSAC Connected Vacuum Cleaner IoT Security Ironpie M6 RSA RSA Conference 2020 Trifo Vulnerability

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Point of View

OUR TAKE ON TRENDING STORIES
March 2024
By SUE DENIM
TikTok Ban, Discord Bot Community Attack, and Telecom Company's Breach Resurgence.
Ah, the dramatic saga of TikTok in the United States! Picture this: a ban looming over TikTok, akin to a dark cloud threatening to rain on our digital parade. Congress is all up in arms, waving their "think of the children" banners while TikTok nervously checks its watch, wondering if it should start packing its bags for a forced sale. Meanwhile, nobody bats an eye at the plethora of Chinese gadge...

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES
22 April 2024
BREACHAWARE HQ

A total of 11 breaches were found and analysed resulting in 8,670,369 leaked accounts containing a total of 26 different data types. The breaches found publicly and freely available included A MONEY, Raychat, Bin Weevils, ZOON and Stealer Log 0450