A new set of 16 billion login credentials is not an intentional public leak or data breach. It was accidentally exposed to the internet via improperly secured Elasticsearch and object storage instances for a short period, but long enough for security researchers to hit upon it.
Trend Micro finds the Chinese APT group has compromised at least 70 government organizations over the last two years, in 23 different countries. But the group's logs indicate it has targeted over 110 organizations in 10 additional nations.
Healthcare web application attacks increased by 51% since the introduction of COVID-19 vaccines. Cross-site scripting (XSS) and SQL injections were the most detected by volume.
Russia's current conflict with Ukraine is so far playing out with cyber attacks rather than physical warfare. A series of defacement attacks on government websites appears to be the opening salvo.
UK retailer Harrods is the most recent victim of a cyber attack, hot on the heels of similar cybersecurity incidents affecting Marks & Spencer and the Co-op, prompting an NSCS advisory.
German fuel suppliers have been hit by a cyber attack threatens fuel supply. Nature of attack has yet to be identified, but the extent of the disruption would indicate ransomware or a malicious malware attack that wiped files.
French luxury giant Dior suffered a cyber attack that resulted in a data breach in numerous countries after unauthorized individuals accessed its information systems.
New papers from OpenAI discussing the rogue actions of their AI models are becoming almost a weekly feature at this point. The latest of these, titled "Our framework for reporting model misalignment," describes six newly-documented instances that took place sometime in the last few months.
New California and Oregon IoT security laws aim to address the growing concerns on the security of Internet-connected devices that seem to be expanding endlessly.
Australian Clinical Labs reportedly detected the attack not long after it occurred and was contacted by government authorities in March, and were also notified in June that some of the patient data had been found available for sale on the dark web.










