Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2020-01-14 12:27:00 UTC
The Daily Swig
The Daily Swig
Discord users warned over QR code login scam that can result in pwned accounts

Login window reduced to two minutes, but is this enough to combat fraudsters?

2020-01-14 11:41:00 UTC
Naked Security | Sophos
Naked Security | Sophos
‘Cable Haunt’ vulnerability exposes 200 million cable modem users

A fortnight in to 2020 and we have the first security flaw to be given its own name: Cable Haunt - complete with eye-catching logo.

Security Threats Vulnerability Broadcom Buffer Flaws Cable Haunt Cable Modem Flaw Lyrebirds Vulnerability
2020-01-14 11:31:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Google tests biometric authentication for Android autofill

Google is testing out a feature to make Android's built-in password manager safer.

Android Google Mobile Operating Systems Autofill Bad Passwords Biometrics Password Manager Password Security
2020-01-14 11:18:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Lottery hacker gets 9 months for his £5 cut of the loot

We don't care how little you made from your crimes, the judge said. We care that you went after an outfit that gives a ton to charities.

Data Loss Law & Order Privacy Security Threats Anwar Batson Automated Password Guessing Brute Force Brute Force Attack Brute Force Tool Computer Misuse Act 1990 Cracking Credential Stuffing Daniel Thompson Dark Web Edwin Salter Hacking Tool Idris Akinwunmi Lottery National Lottery Password Reuse Rosegold Sentence Sentry MBA Stolen Credentials UK User Credentials
2020-01-14 10:51:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Microsoft now reviewing Skype audio in ‘secure’ places (not China)

A former contractor in Beijing: “It sounds a bit crazy now [...] that they gave me the URL, a username and password sent over email.”

Microsoft Privacy Audio China Clips Privacy Policy Skype Voice Assistants Voice Recognition
2020-01-14 09:59:00 UTC
The Daily Swig
The Daily Swig
The kitchen is closed for Windows 7, as decade-old OS reaches end of life

No more software updates. No more technical support. No more patches. You have been warned.

2020-01-13 22:17:00 UTC
Krebs on Security
Krebs on Security
Cryptic Rumblings Ahead of First 2020 Patch Tuesday

Sources tell KrebsOnSecurity that Microsoft Corp. is slated to release a software update on Tuesday to fix an extraordinarily serious security vulnerability in a core cryptographic component present in all versions of Windows. Those sources say Microsoft has quietly shipped a patch for the bug to branches of the U.S. military and to other high-value customers/targets that manage key Internet infrastructure, and that those organizations have been asked to sign agreements preventing them from disclosing details of the flaw prior to Jan. 14, the first Patch Tuesday of 2020.

Time To Patch Anne Neuberger CERT Coordination Center CERT-CC Crypt32.dll Microsoft Microsoft CryptoAPI National Security Agency Nsa Patch Tuesday January 2020 Will Dormann Windows
2020-01-13 22:00:00 UTC
Dark Reading
Dark Reading
Website Collecting Australian Fire Donations Hit by Magecart

The attack may have compromised donors' payment information.

2020-01-13 21:05:00 UTC
ThreatPost
ThreatPost
Scammers Dupe Texas School District Out of $2.3M

The wide-scale phishing scam reportedly started in early November and continued through December, before it was discovered by the Texas school district.

Web Security BEC Business Email Compromise Email Scam Manor Independent School District Phishing Scam
2020-01-13 21:04:00 UTC
ThreatPost
ThreatPost
Joker Android Malware Snowballs on Google Play

Google has removed 17,000 Joker-infested apps from the Play store to date.

Malware Mobile Security 17000 Apps Analysis Android Code Analysis Google Google Play Joker Mobile Malware Obfuscation

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Point of View

OUR TAKE ON TRENDING STORIES
March 2024
By SUE DENIM
TikTok Ban, Discord Bot Community Attack, and Telecom Company's Breach Resurgence.
Ah, the dramatic saga of TikTok in the United States! Picture this: a ban looming over TikTok, akin to a dark cloud threatening to rain on our digital parade. Congress is all up in arms, waving their "think of the children" banners while TikTok nervously checks its watch, wondering if it should start packing its bags for a forced sale. Meanwhile, nobody bats an eye at the plethora of Chinese gadge...

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES
15 April 2024
BREACHAWARE HQ

A total of 15 breaches were found and analysed resulting in 10,110,194 leaked accounts containing a total of 23 different data types. The breaches found publicly and freely available included US Environmental Protection Agency (EPA), Stealer Log 0448, Stealer Log 0449, Believe and Carding Team