Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Infosec News Feed

An aggregated list of cybersecurity publications
2023-09-27 14:17:00 UTC
Dark Reading
Dark Reading
Hackers Trick Outlook into Showing Fake AV Scans

Researchers spot attackers using an existing phishing obfuscation tactic in order to better ensure recipients fall for their scam.

2023-09-27 14:14:00 UTC
Dark Reading
Dark Reading
Kenyan Financial Firm Fined for Mishandling Data

Kenyan data protection regulator issues monetary penalties to multiple firms for improper handling of personal data.

2023-09-27 14:05:00 UTC
HackRead
HackRead
JetBrains Patches Severe TeamCity Flaw Allowing RCE and Server Hijacking

By Deeba Ahmed

JetBrains has fixed this flaw in version 2023.05.4 of the product released on September 18. It also released a security advisory but didn't disclose technical details of the vulnerability for now.

This is a post from HackRead.com Read the original post: JetBrains Patches Severe TeamCity Flaw Allowing RCE and Server Hijacking

Security JetBrains RCE Security Supply Chain TeamCity Vulnerability
2023-09-27 14:00:00 UTC
Dark Reading
Dark Reading
How the Okta Cross-Tenant Impersonation Attacks Succeeded

Sophisticated attacks on MGM and Caesars underscore the reality that even robust identity and access management may not be enough to protect you.

2023-09-27 11:48:00 UTC
Krebs on Security
Krebs on Security
‘Snatch’ Ransom Group Exposes Visitor IP Addresses

The victim shaming site operated by the Snatch ransomware group is leaking data about its true online location and internal operations, as well as the Internet addresses of its visitors, KrebsOnSecurity has found. The leaked data suggest that Snatch is one of several ransomware groups using paid ads on Google.com to trick people into installing malware disguised as popular free software, such as Microsoft Teams, Adobe Reader, Mozilla Thunderbird, and Discord.

Breadcrumbs Data Breaches Ne'er-Do-Well News Ransomware 8Base Ransomware @htmalgae AtomicStealer DomainTools.com Google.com Malwarebytes Microsoft Teams Mihail Kolesnikov Rilide Trustwave Spiderlabs
2023-09-27 01:02:00 UTC
HackRead
HackRead
Google Indexed Trove of Bard AI User Chats in Search Results

By Waqas

At the time of writing, over 300 pages of Bard AI user conversations were indexed on Google Search.

This is a post from HackRead.com Read the original post: Google Indexed Trove of Bard AI User Chats in Search Results

Security Artificial Intelligence Leaks AI Bard AI Chatbot Google Google Bard Privacy
2023-09-26 21:20:00 UTC
Dark Reading
Dark Reading
Suspicious New Ransomware Group Claims Sony Hack

A deceitful threat actor claims its biggest haul yet. But what, if any, Sony data does it actually have?