Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2019-09-28 19:11:00 UTC
HackRead
HackRead
Hackers used fake job website to scam jobless US veterans

By Sudais

If users who happen to be mostly military veterans, in this case, followed standard principles of double-checking URLs and not downloading files from untrusted sources, they could have remained safe and avoided being the victim.

This is a post from HackRead.com Read the original post: Hackers used fake job website to scam jobless US veterans

Cyber Crime Phishing Scam Scams And Fraud Jobs Scam Security Veterans
2019-09-27 21:42:00 UTC
HackRead
HackRead
Hacker publishes ‘unpatchable’ permanent jailbreak for iPhone 4s to iPhone X

By Sudais

Apple's jailbreak just became easier.

This is a post from HackRead.com Read the original post: Hacker publishes ‘unpatchable’ permanent jailbreak for iPhone 4s to iPhone X

Apple News IPhone Security Apple Hacking Jailbreak Security Technology
2019-09-27 18:54:00 UTC
ThreatPost
ThreatPost
iOS Exploit ‘Checkm8’ Could Allow Permanent iPhone Jailbreaks

A new BootROM exploit - which is unpatchable - potentially opens the door to jailbreaks, a researcher said.

Hacks Mobile Security Apple Apple Exploit Apple Jailbreak Apple Security Checkm8 Exploit Ios IOS Device Iphone Jailbreak
2019-09-27 17:31:00 UTC
ThreatPost
ThreatPost
Masad Spyware Uses Telegram Bots for Command-and-Control

The malware harvests data, steals cryptocurrency and drops additional malware, while masquerading as a Fortnite aimbot and more.

Malware Aimbot C2 Cryptocurrency Stealer Fortnite Juniper Malware Analysis Masad Spyware Telegram Bot
2019-09-27 16:17:00 UTC
Krebs on Security
Krebs on Security
MyPayrollHR CEO Arrested, Admits to $70M Fraud

Earlier this month, employees at more than 1,000 companies saw one or two paycheck's worth of funds deducted from their bank accounts after the CEO of their cloud payroll provider absconded with $35 million in payroll deposits from customers. On Monday, the CEO was arrested and allegedly confessed that the diversion was the last desperate gasp of a financial shell game that earned him $70 million over several years.

A Little Sunshine Ne'er-Do-Well News Michael T. Mann MypayrollHR
2019-09-27 15:24:00 UTC
ThreatPost
ThreatPost
Dunkin’ Donuts Gets Hit with Lawsuit Over 2015 Attack

Lawsuit alleges Dunkin' Donuts failed to act fast enough to notify and protect customers and is in violation of New York State data breach notification laws.

Hacks Vulnerabilities Breach Notification Laws Credential Stuffing Dunkin Brand Dunkin Donuts New York Attorney General
2019-09-27 14:42:00 UTC
ThreatPost
ThreatPost
Arcane Stealer V Takes Aim at the Low End of the Dark Web

This data-harvesting tool is perfect for the deep well of low-skilled adversaries looking to make their cybercrime mark.

Malware Arcane Stealer V Dark Web Fidelis Gui Dashboards Low Skilled Adversaries Malware Analysis Russian Actor
2019-09-27 14:39:00 UTC
ThreatPost
ThreatPost
Microsoft Blacklists Dozens of New File Extensions in Outlook

In total, Microsoft has now blocked 142 file extensions that it deems as at risk or that are typically sent as malicious attachments in emails.

Vulnerabilities Web Security Block Email File Extension Java Malicious Attachment Microsoft Outook Python
2019-09-27 14:30:00 UTC
Dark Reading
Dark Reading
DoorDash Breach Affects 4.9M Merchants, Customers, Workers

The May 4 incident exposed data belonging to users on the platform on or before April 5, 2018.

2019-09-27 14:29:00 UTC
The Daily Swig
The Daily Swig
#SocialSec – Hot takes on this week’s biggest cybersecurity news (Sept 27)

CrowdStrike mentioned in Trump–Zelensky transcript; ‘502 bad gateway’ error referenced in UK parliamentary proceedings; and privacy concerns raised over Dropbox Paper

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE
BreachAware Podcast

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Amazon Music Apple Podcasts Spotify Podcast BreachAware YouTube Channel

Point of View

OUR TAKE ON TRENDING STORIES

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES