Important: BreachAware does not operate under any other brand name and will never provide unauthorised access to compromised credentials. We ask our users to beware of illegitimate websites imitating BreachAware.

Global News Feed

POPULAR CYBERSECURITY PUBLICATIONS
2019-10-07 20:33:00 UTC
ThreatPost
ThreatPost
California Bans Deepfakes in Elections, Porn

A pair of laws provides recourse for victims of deepfake technology.

Facebook Hacks Privacy Adult Content. Legislation Ban California Deepfake Election Influence Campaign
2019-10-07 20:31:00 UTC
ThreatPost
ThreatPost
Vulnerable Twitter API Leaves Tens of Thousands of iOS Apps Open to Attacks

Millions of iOS users could be vulnerable to man-in-the-middle attacks that trace back to flawed Twitter code used in popular iPhone apps.

Mobile Security Vulnerabilities CVE-2019-16263 Fraunhofer SIT Ios Iphone It-sa 2019 Oauth Twitter API Twitter Kit
2019-10-07 18:16:00 UTC
ThreatPost
ThreatPost
D-Link Home Routers Open to Remote Takeover Will Remain Unpatched

CVE-2019-16920 allows remote unauthenticated attackers to execute code on a target device.

Vulnerabilities CVE-2019-16920 D-Link End-of-life Home Routers Remote Code Execution Unpatched
2019-10-07 18:10:00 UTC
Dark Reading
Dark Reading
Magecart Skimmers Spotted on 2M Websites

Researchers say supply chain attacks are responsible for the most significant spikes in Magecart detections.

2019-10-07 16:49:00 UTC
HackRead
HackRead
Signal app flaw allowed incoming calls to be connected without user interaction

By Sudais

This little eavesdropping process happened to be possible because of a method named "handleCallConnected" in their Android client.

This is a post from HackRead.com Read the original post: Signal app flaw allowed incoming calls to be connected without user interaction

Privacy Security Chatting Encyrption Security Signal
2019-10-07 16:05:00 UTC
The Daily Swig
The Daily Swig
Autopsy class in HackMD flaws offered

XSS and RCE marked down for vulnerabilities

2019-10-07 15:56:00 UTC
ThreatPost
ThreatPost
Alabama Hospitals Pay Up in Ransomware Attack

A trio of Alabama hospitals have decided to pay for a decryption key.

Cryptography Hacks Malware Alabama Dch Health System Hospitals Payment Ransomware
2019-10-07 14:37:00 UTC
The Daily Swig
The Daily Swig
Reductor malware bundles tricks to compromise TLS traffic

Rogue digital certificates and a not-so-random PRNG

2019-10-07 12:24:00 UTC
ThreatPost
ThreatPost
Iran-linked Hackers Target Trump 2020 Campaign, Microsoft says

A group called Phosphorous has been trying to access Microsoft-based email accounts of people associated with the campaign.

Government Web Security 2020 Election Cyber Attacks Cyber Warfare Hackers Irán Microsoft Microsoft Threat Intelligence Center Phosphorus President Trump
2019-10-07 11:41:00 UTC
Naked Security | Sophos
Naked Security | Sophos
Android devices hit by zero-day exploit Google thought it had patched

Android smartphones are vulnerable to a zero-day exploit that Google thought it had patched for good two years ago.

Android Google Mobile Operating Systems Privacy Security Threats Vulnerability CVE-2019-2215 Google Project Zero NSO Group Pegasus Vulnerability Zero Day Vulnerability

BreachAware Insight

THE LATEST CURATED INTEL FROM OUR RESEARCH CENTRE
BreachAware Podcast

Listen to our podcast, where Andrew, the visionary CEO of BreachAware, sits down with unsung heroes of the cyber security industry. Get ready to uncover the stories and insights of industry trailblazers you might not have heard of before, as they share their experiences, opinions, and insider intel. But beware, it's not all serious talk—expect a healthy dose of humour (and the odd cussing) sprinkled throughout the conversation.

Amazon Music Apple Podcasts Spotify Podcast BreachAware YouTube Channel

Point of View

OUR TAKE ON TRENDING STORIES

Weekly Summary

SPOTLIGHT, VULNERABILITY CHAT & PRIVACY HEADLINES