A leading UK software company exposed personal information and legal documents belonging to over 190 law firms through a data leak from an unsecured online database.
Unit 42 threat intel division has detected ongoing exploitation of Palo Alto firewalls via patched PAN-OS web interface zero-day vulnerabilities CVE-2024-0012 and CVE-2024-9474.
Account information of over 2.6 million Duolingo users was obtained via data scraping of an exposed API, and recently leaked on an underground hacking forum.
Over 200,000 OpenAI credentials are listed for sale on dark web marketplaces as interest in the generative AI chatbot peaks within the black hat community.
Digital Shadows Photon Research team found that over 24 billion stolen user credentials were available for sale on the dark web market in 2022, an increase of 65% in two years.
Law firm Wolf Haldenstein Adler Freeman & Herz LLP has notified more than 3.4 million people that a December 2023 data breach exposed their personal information.
The FBI, CISA, and MS-ISAC have issued a joint cybersecurity advisory on the Medusa ransomware attacks impacting over 300 critical infrastructure organizations.
Over 300 malicious apps engaged in a massive ad fraud and credential and credit card theft campaign have been downloaded over 60 million times on Google Play Store.
A threat actor listed on a hacker forum data belonging to over 17 companies containing over 34 million records. Victims include Eatigo and Alibaba-owned Lazada's RedMart online grocery.
Nearly 25,000 active websites have over 47,000 malicious WordPress plugins installed, putting them at risk of attacks, including complete takeover by cybercriminals.










