Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2020-02-19 12:49:00 UTC
The Daily Swig
The Daily Swig
Browser slurping takes backseat with Chrome removal of malicious extensions

Foul play, potentially

2020-02-19 12:03:00 UTC
ThreatPost
ThreatPost
Latest Tax Scams Target Apps and Tax-Prep Websites

Traditional e-mail based scams are also in the mix this year, one in particular that uses the legitimate app TeamViewer to take over victims’ systems.

Hacks Malware Credential Threat Cybercrime Email Scams Income Taxes Malware Proofpoint Small Business Tax Preparation Tax Season Taxes TeamViewer The Trick Website Compromise
2020-02-19 11:49:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Private photos leaked by PhotoSquared’s unsecured cloud storage

With no password required and no encryption in place, a burglar or ID thief could have seen your photos, your address and more.

Android Data Loss IOS Mobile Phishing Privacy Security Threats Amazon S3 Amazon Simple Storage Service (S3) Bucket Amazon Web Services Amazon Web Services (AWS) Storage Bucket AWS Breach CCPA Cloud Cloud Storage Credit Card Fraud Data Breach Data Leak Data Loss Exposed Database Financial Fraud Identity Theft Leak Personally Identifiable Information Photo Apps PhotoSquared Pii Port Scanning S3 Database VpnMentor Web Mapping
2020-02-19 11:37:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Facebook asks to be regulated kinda like a newspaper, kinda like telco

Zuckerberg is in Brussels right in time for the European Commission's release of its manifesto on regulating AI.

Facebook Fake News Law & Order Privacy Social Networks Content Moderation European Commission Extremist Content Harms Regulation Mark Zuckerberg Political Advertising Regulations Regulators Rules For The Internet UK
2020-02-19 11:21:00 UTC
Naked Security | Sophos
Naked Security | Sophos
WordPress plugin hole could have allowed attackers to wipe websites

A WordPress plugin with over 100,000 active installations had a bug that could have allowed unauthorised attackers to wipe its users' blogs clean, it emerged this week.

Data Loss Security Threats Vulnerability Demo Importer Plugin Plugin Developer Plugins ThemeGrill WebARX Wordpress WordPress Plugin
2020-02-19 11:00:00 UTC
Naked Security | Sophos
Naked Security | Sophos
OpenSSH eases admin hassles with FIDO U2F token support

OpenSSH version 8.2 is out and the big news is that the world’s most popular remote management software now supports authentication using any FIDO (Fast Identity Online) U2F hardware token.

Cryptography Privacy 2FA Cryptographic Keys FIDO FIDO U2F Hashing Openssh Passwordless Login Sha-1 Ssh
2020-02-18 22:41:00 UTC
HackRead
HackRead
Russia Blocks Encrypted Email Service Tutanota

By Deeba Ahmed

The open-source encrypted email service Tutanota has been blocked in certain parts of Russia over the weekend.

This is a post from HackRead.com Read the original post: Russia Blocks Encrypted Email Service Tutanota

Censorship Cyber Events Email Encryption Russia Security Tutanota
2020-02-18 22:18:00 UTC
ThreatPost
ThreatPost
FC Barcelona Suffers Likely Credential-Stuffing Attack on Twitter

OurMine took over the Spanish powerhouse soccer team's Twitter account.

Hacks Web Security 2FA Account Takeover Champion's League Credential Stuffing FC Barcelona Hack Lionel Messi Neymar Jr OurMine Round Of 16 Soccer Twitter Account Two-factor Authentication
2020-02-18 20:09:00 UTC
ThreatPost
ThreatPost
Ring Mandates 2FA After Rash of Hacks

Ring outlined new security and data privacy measures, Tuesday, following backlash of the connected doorbell in the past year.

Hacks IoT Privacy 2FA Data Abuse Data Privacy Data Security Ring Ring Doorbell Ring Hack Third Party Data Sharing Two Factor Authentication
2020-02-18 19:57:00 UTC
HackRead
HackRead
Plastic surgery company leaks images of 100,000s of customers

By Sudais Asif

Another day, another data breach - This time, a plastic surgery technology company has leaked highly sensitive data and as usual, victims of the breach are unsuspecting customers.

This is a post from HackRead.com Read the original post: Plastic surgery company leaks images of 100,000s of customers

Leaks Privacy Security Amazon AWS Breach LEAKS Plastic Surgery Security

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Point of View

OUR TAKE ON TRENDING STORIES
April 2024
By SUE DENIM
Cyber Warfare: Breaches, Alerts, and Cybersecurity Policy
In cyber warfare, it seems no sector is safe from the relentless clutches of threat actors. Take, for instance, a Russian food manufacturing giant finding itself in the crosshairs of a Ukrainian hacker collective. With a flair for the dramatic, the group proudly proclaimed their conquest in a channel dedicated to airing their digital conquests. Their loot? A whopping 6TB of sensitive data, includi...

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES
20 May 2024
BREACHAWARE HQ

A total of 25 breaches were found and analysed resulting in 61,491,599 leaked accounts containing a total of 25 different data types. The breaches found publicly and freely available included The Post Millennial, Share This, Book 24, Stealer Log 0457 and Stealer Log 0459