Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2019-08-15 19:20:00 UTC
ThreatPost
ThreatPost
HTTP Bugs Open Websites to DoS Attacks

Eight vulnerabilities in the HTTP/2 server implementations were found in vendors Amazon, Apple, Microsoft and Apache.

Critical Infrastructure Vulnerabilities Web Security Akamai Ambassador Apache Traffic Server Apple CloudFlare CVE-2019-9511 CVE-2019-9512 CVE-2019-9513 CVE-2019-9514 CVE-2019-9515 CVE-2019-9516 CVE-2019-9517 Envoy Google Microsoft Netty Project Nghttp2 NGINX Node.js SWIFT
2019-08-15 18:49:00 UTC
ThreatPost
ThreatPost
Energy Sector Phish Swims Past Microsoft Email Security via Google Drive

The savvy technique of avoiding malicious links in the email allowed the phishing attack to reach its targets.

Web Security Credentials Email Security Gateway Energy Company Google Drive Microsoft Spearphishing
2019-08-15 18:41:00 UTC
ThreatPost
ThreatPost
Apache Security Advisories Red Flag Wrong Versions in Patching Gaffe

Up to 24 Apache Struts Security Advisories listed the wrong versions that were impacted by vulnerabilities, researchers warn.

Vulnerabilities Apache Software Foundation Apache Struts Security Advisory Vulnerability Vulnerability Disclosure
2019-08-15 18:30:00 UTC
Dark Reading
Dark Reading
New Research Finds More Struts Vulnerabilities

Despite aggressive updating and patching, many organizations are still using versions of Apache Struts with known -- and new -- vulnerabilities.

2019-08-15 18:00:00 UTC
Dark Reading
Dark Reading
The Flaw in Vulnerability Management: It's Time to Get Real

Companies will never be 100% immune to cyberattacks. But by having a realistic view of the basics, starting with endpoint vulnerabilities, we can build for a safer future.

2019-08-15 17:04:00 UTC
ThreatPost
ThreatPost
Choice Hotels Breach Showcases Need for Shared Responsibility Model

700,000 customer records were exposed after being housed on a vendor's server that lacked appropriate security.

Breach Cloud Security Privacy Choice Hotels Cloud Storage Data Breach MongoDB Shared Responsibility Supply Chain Unsecured
2019-08-15 16:16:00 UTC
ThreatPost
ThreatPost
Clickjacking Evolves to Hook Millions of Visitors to Top Sites

Researchers said that clickjacking is a threat that's evolving, with new tactics just starting to emerge.

Hacks Web Security Ad Fraud Chrome Click Interception Clickjacking Malware Microsoft Research Spam USENIX
2019-08-15 16:16:00 UTC
ThreatPost
ThreatPost
Clickjacking Evolves to Hook Millions of Top-Site Visitors

Researchers said that clickjacking is a threat that's evolving, with new tactics just starting to emerge.

Hacks Web Security Ad Fraud Chrome Click Interception Clickjacking Malware Microsoft Research Spam USENIX
2019-08-15 16:11:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Firefox fixes “master password” security bypass bug

The bug's in Firefox, but our advice is worth reading whether you use Firefox or not.

Firefox Mozilla Vulnerability 2FA Password Manager Patch
2019-08-15 15:08:00 UTC
The Daily Swig
The Daily Swig
US supermarket chain Hy-Vee probes possible payment card data breach

A smile in every aisle replaced by furrowed brow

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE
BreachAware Podcast

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Amazon Music Apple Podcasts Spotify Podcast BreachAware YouTube Channel

Point of View

OUR TAKE ON TRENDING STORIES

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES
16 September 2024
BREACHAWARE HQ
Toilet Breach Exposure Monitoring