Data Breach News
June 06, 2025
219 views 4 secs 0

Google: Hackers target Salesforce accounts in data extortion attacks

BleepingComputer reports that there may be some cooperation or collaboration between the threat actor groups known as ShinyHunters and the loose collective known as “The Com:” Google has observed hackers claiming to be the ShinyHunters extortion group conducting social engineering attacks against multi-national companies to steal data from organizations’ Salesforce platforms. According to Google’s Threat […]

Data Breach News
June 06, 2025
563 views 33 secs 0

M&S hackers sent abusive ransom demand directly to CEO

It is not unusual for ransomware gangs to send threatening emails to the executives of their target. Some send emails that mention personal details about the executives or their families. Others threaten regulator punishment or other consequences of a highly publicized breach. But DragonForce reportedly included their travel itinerary to the target. As the BBC […]

Data Breach News, Legal News, News
June 05, 2025
775 views 15 secs 0

Germany fines Vodafone $51 million for privacy, security breaches

Vodafone GmbH has been hit with a massive fine by the German data protection agency for privacy and data security violations. BleepingComputer reports: The German data protection authority (BfDI) has fined Vodafone GmbH, the telecommunications company’s German subsidiary, €45 million ($51.4 million) for privacy and security violations. “Due to malicious employees in partner agencies who […]

Data Breach News
June 05, 2025
574 views 2 mins 0

‘Everything Was Deleted’: Grocery Delivery Firm Crippled After Hackers Wipe Servers Clean

Most cyberattacks do not include threat actors maliciously wiping servers and deleting all data. But when they do, the consequences are devastating to any victim that doesn’t have an updated and usable backup that can be used to restore. The420.in reports: KiranaPro, a Bengaluru-based grocery delivery platform operating on the Indian government’s Open Network for […]

Critical Infrastructure, Data Breach News, News
June 04, 2025
697 views 17 secs 0

Pro-Ukraine hacker group Black Owl poses ‘major threat’ to Russia – Kaspersky

The Record reports that a hacking group known as BO Team or Black Owl has emerged as a major threat to Russia: A little-known hacking group has emerged as a major threat to Russian state institutions and critical industries, carrying out attacks aimed at causing maximum disruption and extracting financial gain, according to a new […]

Data Breach News
June 04, 2025
144 views 45 secs 0

Crooks fleece The North Face accounts with recycled logins

The Register reports: Joining the long queue of retailers dealing with cyber mishaps is outdoorsy fashion brand The North Face, which says crooks broke into some customer accounts using login creds pinched from breaches elsewhere. According to a consumer notice filed with the Vermont Attorney General’s Office, the outdoor gear seller spotted unusual activity on […]

Data Breach News
June 03, 2025
144 views 51 secs 0

Cartier latest luxury brand hit by consumer data breach

The Korea Times reports: Luxury jewelry brand Cartier has confirmed a breach of customer data, raising concerns over data security among high-end brands following recent incidents involving Dior and Tiffany. The company sent out an email Tuesday informing its customers that an “unauthorized third party” accessed its systems temporarily and obtained certain customer information. While […]

Vendor News, Data Breach News
June 03, 2025
387 views 40 secs 0

Security bug at compliance firm Vanta exposed customer data to other users

TechRadar reports: Security and compliance automation company Vanta has confirmed sharing sensitive customer data with other customers by mistake. In a statement (via TechCrunch), the company said a change it had made in the code resulted in a security breach. In it, some sensitive data from a small subset of customers was shared with other customers. […]

Vulnerabilities, Data Breach News
June 02, 2025
547 views 29 secs 0

0day for vBulletin: PoC is already online, but no one is installing the patch

When criminals note that there is an unpatched vulnerability, expect more attacks to follow. A Russian-language forum recently picked up a report from SecurityLab.ru. It begins (translation): Popular forums on vBulletin have once again been found to have holes through which arbitrary code can be executed directly on the server – without a login and […]