Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2020-05-22 14:12:00 UTC
ThreatPost
ThreatPost
NSO Group Impersonates Facebook Security Team to Spread Spyware — Report

An investigation traces an NSO Group-controlled IP address to a fake Facebook security portal.

Cloud Security Facebook Hacks Vulnerabilities Web Security Amazon Cloud Infrastructure Lawsuit NSO Group Security Team Portal Spoofed Page Spyware U.s. Operations WhatsApp
2020-05-22 13:30:00 UTC
ThreatPost
ThreatPost
Chafer APT Hits Middle East Govs With Latest Cyber-Espionage Attacks

Government and air transportation companies in Kuwait and Saudi Arabia were targeted in a recent attack tracked back to the Chafer APT.

Hacks Apt Chafer Chafer APT Cyber Espionage Cyberattack Hack Middle East Attack
2020-05-22 13:10:00 UTC
The Daily Swig
The Daily Swig
How to perform an HTTP header smuggling attack through an unset reverse proxy

Technique could be used to bypass authentication and compromise critical internal applications

2020-05-22 13:10:00 UTC
The Daily Swig
The Daily Swig
How to perform an HTTP header smuggling attack through a reverse proxy

Technique could be used to bypass authentication and compromise critical internal applications

2020-05-22 12:39:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Apple and Google launch COVID-19 contact tracing API

The first phase of Apple and Google's contact tracing framework allows public health authorities across the world to connect their apps with data that could help them identify people at risk from coronavirus.

Apple Google API Exposure Notification
2020-05-22 11:10:00 UTC
The Daily Swig
The Daily Swig
Signal patches (minor) approximate location disclosure flaw

WebRTC DNS lookups exploited in clever hack

2020-05-21 21:50:00 UTC
Dark Reading
Dark Reading
Security 101: Cross-Site Scripting

Cross-site scripting has been around longer than most security professionals have been on the job. Why is it still such an issue when we've known about it for so long?

2020-05-21 20:00:00 UTC
Dark Reading
Dark Reading
Hackers Serve Up Stolen Credentials from Home Chef

Some 8 million of the meal delivery company's customer records have been offered for sale on the Dark Web.

2020-05-21 19:01:00 UTC
ThreatPost
ThreatPost
Long Tail Analysis: A New Hope in the Cybercrime Battle

Looking for niche anomalies in an automated way with AI and machine learning is the future.

Breach Cloud Security InfoSec Insider Mobile Security Vulnerabilities Web Security Anomalies Chris Calvert Cybercrime Infosec Insider Intrusion Detection Long Tail Analysis Machine Learning Respond Software Threat Hunting
2020-05-21 18:07:00 UTC
HackRead
HackRead
Hacker leaks 2.3 million Indonesian citizenship data for free download

By Waqas

The stolen Indonesian citizenship and electoral data is currently available for free download on a hacker forum.

This is a post from HackRead.com Read the original post: Hacker leaks 2.3 million Indonesian citizenship data for free download

Leaks Security Cyber Attack Cyber Crime Hacking Indonesia LEAKS Privacy

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Point of View

OUR TAKE ON TRENDING STORIES
March 2024
By SUE DENIM
TikTok Ban, Discord Bot Community Attack, and Telecom Company's Breach Resurgence.
Ah, the dramatic saga of TikTok in the United States! Picture this: a ban looming over TikTok, akin to a dark cloud threatening to rain on our digital parade. Congress is all up in arms, waving their "think of the children" banners while TikTok nervously checks its watch, wondering if it should start packing its bags for a forced sale. Meanwhile, nobody bats an eye at the plethora of Chinese gadge...

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES
22 April 2024
BREACHAWARE HQ

A total of 11 breaches were found and analysed resulting in 8,670,369 leaked accounts containing a total of 26 different data types. The breaches found publicly and freely available included A MONEY, Raychat, Bin Weevils, ZOON and Stealer Log 0450