BreachFeed

Security news

Everything BreachFeed is tracking across the industry, as it publishes.

Trending this week

Spotlight

BankInfoSecurity.com·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu1q89ch5c7ihpu2ifpkii38

Finnish Police Alert Europe Over Fugitive Vastaamo Hacker

Aleksanteri Tomminpoika Kivimäki Has Eluded Finnish Authorities for Months Finnish authorities issued a European Arrest Warrant for convicted Vastaamo hacker Aleksanteri Kivimäki after he failed to return to prison, widening the search for the man who stole 33,000 psychotherapy records and extorted patients.

Also reported by 1 other source
Also reported by 1 other source
CyberScoop·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu1l9h2956nkhpu29osv3tvp

Five alleged leaders of Black Axe’s operations in South Africa extradited to US

Officials said the five individuals concocted various long-running romance scams to trick U.S.-based victims into sending them money. The post Five alleged leaders of Black Axe’s operations in South Africa extradited to US appeared first on CyberScoop.

Data Breach Today·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu1k0hpd55cihpu2imnlscc8

Is Your Organization Mature Enough for AI?

CyberEdBoard Webinar to Explore CMU SEI AI Adoption Maturity Model The CyberEdBoard will host a virtual webinar Sept. 24 to explore a new framework developed by the Carnegie Mellon Software Engineering Institute and Accenture to help organizations assess their AI adoption maturity and build a road map for achieving predictable, repeatable and scalable results.

Also reported by 1 other source
Data Breach Today·2 sources
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu1k0hpd55chhpu265bxbg7r

In-the-Wild Attacks Hit Popular DevSecOps Platform GitLab

Recently Patched Flaw Is Being Actively Exploited to Steal Files and Credentials Attackers are actively targeting a recently patched vulnerability in the popular DevSecOps platform GitLab that they can exploit to steal data and credentials from public-facing, self-hosted GitLab servers. The software developer is urging all self-hosted users to update immediately.

Also reported by 1 other source
The Hacker News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu1n4cn258pwhpu2yy2u622u

3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber Credentials

An attacker was operating inside the network of 3BB, one of Thailand's largest broadband providers, and maintained remote control of internal machines using a legitimate management tool called MeshCentral, threat intelligence firm Hunt.io said. The company uncovered the intrusion by examining a server the attacker had left open on the internet, which held the attacker's own tools and a list of

The Hacker News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu1n4cn258pxhpu2edvdrk1h

Telegram Desktop Flaw Lets Hidden JavaScript Exfiltrate Messages From HTML Exports

A flaw in Telegram Desktop let a bot's message plant hidden JavaScript inside chats that users exported to HTML files, security researchers at ExPatch said in a writeup published on September 12. In Telegram, the message looked ordinary, with a link button, and the script ran only when someone opened the export file in a web browser. It could then copy every message in that file to

The Hacker News·
Share

Link — click to select, then copy:

https://breachfeed.com/article/cmu1imbqr53rshpu225vqxco7

New DDRop Attack Breaks Intel TDX and AMD SEV-SNP Confidential Computing

Researchers have disclosed a new hardware attack, called DDRop, that breaks the memory protection in Intel and AMD confidential computing by silently dropping writes to a server's memory, so the processor keeps reading old encrypted data as if it were current. The attack requires an attacker who already controls the server's software and can briefly access the machine to insert a small circuit