Coverage
Data Breaches
482 articles on breaches and ransomware
Advertisement
Citrix NetScaler CVE-2026-3055: Critical Data Leak Patch Guidance
Citrix releases critical security updates for NetScaler ADC and Gateway to address CVE-2026-3055, an unauthenticated memory overread and data leak flaw.
U.S. Sentences Yanluowang Ransomware Facilitator Aleksei Volkov
Russian national Aleksei Volkov sentenced to 81 months for facilitating Yanluowang ransomware attacks, causing $9M in damages to U.S. organizations.
Mazda Data Breach Exposes Employee and Partner Information
Mazda Motor Corporation discloses a security breach impacting employee and business partner data, detected in December. Learn implications and recommended actions.
Crunchyroll Breach Claims: 6.8M User Data Potentially Stolen
Crunchyroll investigates claims of a data breach impacting 6.8 million users, potentially exposing personal information and raising user privacy concerns.
M-Trends 2026: Evolving Ransomware, Persistence, and SaaS Attack Vectors
M-Trends 2026 reveals critical shifts in adversary TTPs: destructive ransomware, zero-day exploitation for persistence, and voice phishing for SaaS access.
Mandiant M-Trends 2026: Handoff Time Shrinks to 22 Seconds
Mandiant's M-Trends 2026 report reveals a drastic reduction in initial access handoff times to 22 seconds, demanding faster detection and response.
Iranian Handala Group Leverages Telegram for Malware Delivery and C2
FBI alerts organizations to Handala, an Iranian MOIS-linked group using Telegram APIs for data exfiltration, ransomware, and wiper attacks across sectors.
Beast Gang OpSec Fail: Ransomware Server Exposes TTPs
Beast Gang's OpSec failure exposes their cloud ransomware server, revealing aggressive tactics against network backups. Defenders gain insight into their TTPs.
Interlock Ransomware Targets Cisco Firewalls via CVE-2024-20481
Interlock ransomware operators exploited a critical Cisco ASA vulnerability before public disclosure. Learn how to detect and mitigate these targeted attacks.
Android Security Safeguards and UK Cyber Reporting Mandates
Analysis of new Android live threat detection features, the Operation Alice takedown, and updated UK cybersecurity reporting regulations for 2024.
Navia Data Breach Exposes Health Information of 2.7 Million Users
Navia Benefit Solutions reports a significant data breach affecting 2.7 million people, involving the theft of personal and health plan information.
Navia Data Breach: 2.7M Individuals' Sensitive Data Exposed
Navia Benefit Solutions discloses a data breach exposing sensitive information for nearly 2.7 million individuals. Understand the impact and mitigation.
54 EDR Killers Use BYOVD to Abuse 34 Signed Drivers
Analysis reveals 54 EDR killer programs abusing 34 signed drivers via BYOVD to neutralize security before ransomware deployment.
Marquis Data Breach: Impact Analysis for 672,000 Individuals
Marquis Companies confirms a data breach impacting 672,211 individuals, exposing Social Security numbers and medical records after unauthorized network access.
DJI Romo Remote Camera Access via MQTT Vulnerability
An MQTT misconfiguration in DJI Romo vacuums allows unauthorized remote control and camera access for 7,000 devices. Learn the risks and mitigation steps.
Secure Microsoft Intune Systems Against Wipe Attacks - CISA Warning
CISA urges organizations to secure Microsoft Intune following a breach at Stryker where attackers used the management tool to wipe corporate systems.
CISA KEV Update: CVE-2025-66376 Zimbra and SharePoint Exploits
CISA warns of active exploitation for Zimbra CVE-2025-66376, SharePoint flaws, and Cisco zero-days used in ransomware attacks. Secure your systems now.
Aura Marketing Database Breach: Impact on 900,000 Customer Contacts
Identity protection firm Aura confirms a data breach exposing nearly 900,000 marketing records. Learn about the risks of phishing and social engineering.
Marquis Ransomware Attack Impacts 74 Banks and 672,000 Individuals
Marquis financial services reports a massive 2025 data breach affecting 74 US banks and 672,000 customers following a ransomware incident in August.
CVE-2026-20131: Interlock Ransomware Exploits Cisco FMC — Patch Now
Interlock ransomware actors are exploiting CVE-2026-20131, a critical 10.0 CVSS zero-day in Cisco FMC, to gain unauthenticated root access and deploy malware.
Ransomware TTPs Shift: From Cobalt Strike to Native Tools, Data Theft Surges
Ransomware actors are abandoning Cobalt Strike for native Windows tools as payment rates decline, leading to a significant surge in data theft.
Warlock Ransomware: BYOVD Techniques and Post-Exploitation Analysis
The Warlock ransomware group has evolved its tactics, utilizing BYOVD techniques and stealthy cross-network activity to bypass EDR and security controls.
UK Companies House Vulnerability: API Flaw Exposed Millions of Firms
A broken access control vulnerability at UK Companies House allowed unauthorized access to sensitive records and potential modification of corporate filings.
LeakNet Ransomware: ClickFix Exploitation and Deno Loader Analysis
LeakNet ransomware leverages ClickFix social engineering and Deno-based in-memory loaders to bypass traditional security controls and deploy payloads.