LATEST POST

FEATURE

Trump files $10B lawsuit against IRS over alleged tax return leaks to major news outlets

Data Breach News
257 views 34 secs

Fox News reports: President Donald Trump has filed a $10 billion lawsuit against the IRS, accusing the agency of unlawfully leaking his confidential tax returns in a politically motivated violation of federal privacy laws. A spokesman for Trump’s legal team told Fox News “a rogue, politically motivated” IRS employee disclosed private and confidential tax information involving Trump, his family […]

FEATURE

A Grok AI Toy Breach Exposed 50,000 Private Chats

Data Breach News
263 views 26 secs

WebProNews reports: An AI toy called Grok exposed 50,000 conversation logs between children and the device to anyone with a Gmail account due to a cloud storage misconfiguration, raising serious questions about data security, regulatory compliance, and the protection of children’s privacy in AI-enabled products. … According to Wired, the breach originated from a fundamental misconfiguration […]

FEATURE

Infamous RAMP cybercrime forum seized by FBI

Data Breach News
266 views 13 secs

The Record reports: Websites for the RAMP cybercrime forum, a notorious Russian marketplace widely used by ransomware groups and initial access brokers, have been replaced with a splash page declaring they have been seized by the FBI. Domain name server (DNS) records reportedly initially showed RAMP’s clearnet site redirecting to an FBI domain regularly used […]

FEATURE

SLSH Malicious “Supergroup” Targeting 100+ Organizations via Live Phishing Panels

Data Breach News
352 views 44 secs

Silent Push reports: A massive identity-theft campaign is currently active, targeting Okta Single Sign-On (SSO) and other SSO platform accounts across 100+ high-value enterprises. Silent Push has identified a surge in infrastructure deployment that mirrors the TTPs (Tactics, Techniques, and Procedures) of SLSH—a predatory alliance between Scattered Spider, LAPSUS$, and ShinyHunters. This isn’t a standard automated spray-and-pray attack; it is a […]

FEATURE

Double Trouble: Two Gangs Both Attack and Encrypt the Same Revenue Cycle Management Firm

Data Breach News
372 views 4 mins

SuspectFile reports that two well-known ransomware gangs independently attacked and encrypted files from Resource Corporation of America (RCA), a revenue cycle management business associate headquartered in Texas. What happened next is not totally clear because neither the Qilin gang nor the victim provided any details, but SuspectFile reports that the Medusa gang provided some information […]

FEATURE

ShinyHunters claim to be behind SSO-account data theft attacks

News
251 views 6 secs

BleepingComputer reports: The ShinyHunters extortion gang claims it is behind a wave of ongoing voice phishing attacks targeting single sign-on (SSO) accounts at Okta, Microsoft, and Google, enabling threat actors to breach corporate SaaS platforms and steal company data for extortion. In these attacks, threat actors impersonate IT support and call employees, tricking them into […]

FEATURE

Charlotte man loses more than $1 million in cryptocurrency phone scam

Consumer Alerts
275 views 2 mins

Action 5 News reports a real-life example of a consumer who was scammed into revealing his cryptocurrency wallet seed phrase — with all-too-sad and predictable results: A Charlotte man lost more than $1 million in cryptocurrency after falling victim to a phone scam that began with a caller claiming to be from a legitimate crypto […]

FEATURE

Millions of people imperiled through sign-in links sent by SMS

Consumer Alerts
234 views 56 secs

Ars Technica reports: Websites that authenticate users through links and codes sent in text messages are imperiling the privacy of millions of people, leaving them vulnerable to scams, identity theft, and other crimes, recently published research has found. The links are sent to people seeking a range of services, including those offering insurance quotes, job […]