BreachFeed

Security news

Everything BreachFeed is tracking across the industry, as it publishes.

Trending this week

Spotlight

Twilio status·Outage
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmua430da0923hnu2l2ut9kc8

SMS Delivery Receipt Delays from Twilio to Liberty Mobile Puerto Rico

Minor impact · Investigating — Twilio customers may be experiencing SMS delivery receipt delays from Twilio to Liberty Mobile network subscribers in Puerto Rico. Our team is actively investigating this issue. Message delivery may succeed, but delivery receipts may be delayed. We will provide another update in 1 hour or as soon as more information becomes available.

Cyber Security Headlines·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu5rjzp7002rhku202rv5gsy

Manchester Airports breach, ATF agency breach, clothier Carhartt breach

Manchester Airports Group suffers cyber incident ATF suffers data breach Clothing retailer Carhartt suffers data breach Get the show notes here: https://cisoseries.com/cybersecurity-news-manchester-airports-breach-atf-agency-breach-clothier-carhartt-breach/ Huge thanks to our episode sponsor, ThreatDown SMBs face enterprise-level, AI-driven threats every day, often sacrificing robust security in favor of operational agility. You don't have to choose between moving fast and staying protected.…

Snowflake status·Outage
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu7hgenj000khmu2clx3phd9

INC20000150

Minor impact · Identified — Current status: We've taken additional steps with our warehouse team to reduce provisioning latencies for virtual warehouses, and we've observed some improvement in provisioning latencies as a result. Resource availability remains variable and correlated to overall demand, with some intermittent delays occurring during high-volume times. We're continuing to work closely with our warehouse team to maintain available capacity and keep provisioning times low. Our…

Washington AG breach notices·Confirmed Breach
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu7q4v8e031bhmu25lqgicse

Greystar Real Estate Partners, LLC: data breach notification (Washington Attorney General)

Reported to the Washington Attorney General on 08/27/2026. Date of breach: 05/01/2026. 333 Washington residents affected. Information compromised: Name; Social Security Number; Driver's License or Washington ID Card Number; Financial & Banking Information; Full Date of Birth; Other.

CISA Advisories·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu6trql21e2bhou2gogvthzo

CISA Adds Three Known Exploited Vulnerabilities to Catalog

CISA has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2023-49105 ownCloud Improper Authentication Vulnerability CVE-2026-53362 Linux Kernel Unspecified Vulnerability CVE-2026-66384 JFrog Artifactory Improper Limitation of a Pathname to a Restricted Directory Vulnerability These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risks to the federal…

CISA Advisories·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu6trql21e24hou25kly3q3a

Mitsubishi Electric Multiple FA Products (Update D)

View CSAF Summary Successful exploitation of this vulnerability could allow a remote attacker to cause a denial-of-service (DoS) condition, a timeout error, or a communication delay by sending a specially crafted UDP packet to the product. The following versions of Mitsubishi Electric Multiple FA Products (Update D) are affected: Mitsubishi Electric CC-Link IE TSN Remote I/O module NZ2GN2S1-32D <=09 (CVE-2025-3511) Mitsubishi Electric CC-Link IE TSN Remote I/O module NZ2GN2S1-32T <=09…

Also reported by 1 other source
CISA Advisories·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmttk1y7r000thnu29jl778ak

All-Line Equipment Company Fuel-Boss

View CSAF Summary Successful exploitation of these vulnerabilities could allow attackers to execute arbitrary commands or code remotely on affected systems. The following versions of All-Line Equipment Company Fuel-Boss are affected: Fuel-Boss V1 Standard >=| =| =| =| =| =|<=PHP_7.1.5_7.1.5, All-Line Equipment Compa

CISA Advisories·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmttk1y7r000shnu2cyqt9z56

Applied Systems Engineering ASE2000 V2 Communications Test Set

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to read or write arbitrary local files, cause the application to issue outbound network requests, or intercept the connection to impersonate the trusted peer, complete the TLS handshake, and read or modify the protected communications. The following versions of Applied Systems Engineering ASE2000 V2 Communications Test Set are affected: ASE2000 >=2.25| =2.25|<=2.37 Product Status: known_affected…

CISA Advisories·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmttk1y7r000rhnu2yrfu00f7

Rockwell Automation OTTO Fleet Manager

View CSAF Summary Successful exploitation of this vulnerability could reduce the computational cost required for an attacker to perform offline brute-force attacks against stored password hashes. The following versions of Rockwell Automation OTTO Fleet Manager are affected: OTTO Fleet Manager <=V2.36.2 (CVE-2026-75112) CVSS Vendor Equipment Vulnerabilities v3 6.8 Rockwell Automation Rockwell Automation OTTO Fleet Manager Use of Password Hash With Insufficient Computational Effort Background…

CISA Advisories·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmttk1y7r000qhnu2qhbm2o00

Ebyte NA111-M

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to fully compromise the device. The following versions of Ebyte NA111-M are affected: NA111-M Firmware 9013-2-17 (CVE-2026-73125, CVE-2026-76179, CVE-2026-75814, CVE-2026-76940, CVE-2026-77966, CVE-2026-73809, CVE-2026-71187, CVE-2026-75548, CVE-2026-69658, CVE-2026-76133, CVE-2026-73819, CVE-2026-77975, CVE-2026-77977) CVSS Vendor Equipment Vulnerabilities v3 9.8 Ebyte Ebyte NA111-M Missing…

CISA Advisories·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmttk1y7r000phnu27daxoy7z

Xiiaozet LK100W

View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to take control over the device. The following versions of Xiiaozet LK100W are affected: LK100W <2.1.240 (CVE-2026-78037, CVE-2026-78239, CVE-2026-76943) CVSS Vendor Equipment Vulnerabilities v3 9.8 Xiiaozet Xiiaozet LK100W Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection'), Missing Authentication for Critical Function, Authentication Bypass Using an Alternate Path…

KrebsOnSecurity·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmttk1ycq000whnu26uziwt44

Two Alleged ‘TeamPCP’ Hackers Arrested in Australia

Authorities in Australia have arrested two men believed to be members of TeamPCP, a prolific cybercrime and data extortion group blamed for perpetrating the longest running spree of software supply chain attacks ever. In a statement released today, the Australian Federal Police (AFP) said two unnamed suspects from Western Australia, aged 21 and 23, were arrested in connection with a "sophisticated cybercrime syndicate that allegedly created malicious open-source software to rob thousands of…

Graham Cluley·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmttl38q700dqhmu23p9b61zl

US Navy tells sailors and their families: scrub your social media, enemies are watching

The US Navy has told its entire workforce of 340,000 active-duty personnel, 58,000 reservists, and 210,000 civilian employees to clean up their social media profiles, because adversaries might be using them to determine who they are, where they live, and when they may not be at home. Read more in my article on the Hot for Security blog.

Cyber Security Headlines·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu5rjzp7002shku2a2nsgw7p

Chinese hackers hit US agencies, Ring locks out police, Boston Scientific feels cyber pain

China contractor hack hits US agencies Ring throws away the key Boston Scientific feels cyber pain Get the show notes here: https://cisoseries.com/cybersecurity-news-august-27-2026/ Huge thanks to our episode sponsor, ThreatDown SMBs face enterprise-level, AI-driven threats every day, often sacrificing robust security in favor of operational agility. You don't have to choose between moving fast and staying protected. ThreatDown bridges the expertise gap, replacing fragmented, legacy tools with…

Graham Cluley·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmttl38q700drhmu29scqnijm

Smashing Security podcast #482: This hacker leaked GTA 6 – and launched their own cryptocurrency

A hacker calling themselves "CYBERLEEK" has been leaking gameplay footage from GTA 6 ahead of its official reveal this week - but they're not asking Rockstar Games for a ransom. Instead, they've launched their own cryptocurrency, promising to release ever more juicy clips from a virtual strip club... Meanwhile, your smart TV might be doing more than binge-watching Netflix while you sleep. We explore the shadowy world of "residential proxies" - how they end up inside home routers, smart TVs, and…

CADRE·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmttm1yqk019qhmu2ytcykkst

7 Questions to Ask About Check Point Training

Key Takeaways: 7 Questions to Ask About Check Point Training Short answer: Before you book a CCSA, CCSE, or troubleshooting course, ask about instructor field experience, how long you'll have lab access after class ends, whether the content goes past exam objectives, and whether the provider is an Authorized Training Center that can teach the current R82 architecture. Those four factors separate training that actually changes how your team works from training that just prints a certificate.…