17 Jul Over 400,000 Life360 user phone numbers leaked via unsecured API A threat actor has leaked a database containing the personal information of 442,519 Life360 customers collected by abusing a flaw in the login API. […]
17 Jul Yacht giant MarineMax data breach impacts over 123,000 people MarineMax, self-described as the world’s largest recreational boat and yacht retailer, is notifying over 123,000 customers whose personal information was stolen in a March security breach claimed by the Rhysida ransomware gang. […]
16 Jul CISA warns critical Geoserver GeoTools RCE flaw is exploited in attacks CISA is warning that a critical GeoServer GeoTools remote code execution flaw tracked as CVE-2024-36401 is being actively exploited in attacks. […]
16 Jul Email addresses of 15 million Trello users leaked on hacking forum A threat actor has released over 15 million email addresses associated with Trello accounts that were collected using an unsecured API in January. […]
16 Jul Rite Aid says June data breach impacts 2.2 million people Rite Aid, the third-largest drugstore chain in the United States, says that 2.2 million customers’ personal information was stolen last month in what it described as a “data security incident.” […]
16 Jul Microsoft links Scattered Spider hackers to Qilin ransomware attacks Microsoft says the Scattered Spider cybercrime gang has added Qilin ransomware to its arsenal and is now using it in attacks. […]
15 Jul Kaspersky is shutting down its business in the United States Russian cybersecurity company and antivirus software provider Kaspersky Lab will start shutting down operations in the United States on July 20. […]
15 Jul New BugSleep malware implant deployed in MuddyWater attacks The Iranian-backed MuddyWatter hacking group has partially switched to using a new custom-tailored malware implant to steal files and run commands on compromised systems. […]
15 Jul SEXi ransomware rebrands to APT INC, continues VMware ESXi attacks The SEXi ransomware operation, known for targeting VMware ESXi servers, has rebranded under the name APT INC and has targeted numerous organizations in recent attacks. […]
14 Jul Banks in Singapore to phase out one-time passwords in 3 months The Monetary Authority of Singapore (MAS) has announced a new requirement impacting all major retail banks in the country to phase out the use of one-time passwords (OTPs) within the next three months. […]