Recent Data Breaches

Lumma Stealer Takedown

Summary Law enforcement agencies and cybersecurity firms collaborated to dismantle the Lumma Stealer malware network. This operation led to the seizure of 2,300 malicious domains and disrupted the malware’s command-and-control infrastructure. The takedown aimed to […]

Recent Data Breaches

Scattered Spider Webinar: 2025 TTPs

Summary This article discusses the notorious cybercriminal group Scattered Spider, their evolving tactics, and a new webinar designed to help organizations defend against their attacks. The webinar will cover Scattered Spider’s latest identity attack techniques […]

Recent Data Breaches

M&S Data Breach: A Third-Party Risk

Summary Marks & Spencer (M&S) suffered a data breach due to compromised third-party credentials. The attackers, believed to be the Scattered Spider group, gained access through Tata Consultancy Services (TCS), an IT services provider. The […]

Recent Data Breaches

VanHelsing Ransomware Builder Leaked

Summary The VanHelsing ransomware operation leaked its own source code after a former developer tried to sell it. This leak includes the builder for the Windows version, the affiliate panel, and the data leak blog. […]

Recent Data Breaches

Blue Shield Data Leak Exposes Millions

Summary A misconfiguration in Google Analytics led to Blue Shield of California leaking the personal data of 4.7 million members to Google Ads for almost three years. The leaked data included sensitive information such as […]

Recent Data Breaches

Ransomware’s Human Target

Summary Ransomware attacks increasingly target service desks through social engineering, exploiting human vulnerabilities to gain initial access. This article analyzes recent attacks, the tactics used, and provides strategies for bolstering service desk security without sacrificing […]

Recent Data Breaches

KeePass Trap Leads to ESXi Ransomware

Summary Cybercriminals are distributing a trojanized version of the KeePass password manager. This malicious software installs Cobalt Strike, steals credentials, and deploys ransomware, primarily targeting ESXi servers. The attack highlights the importance of downloading software […]

Recent Data Breaches

Insight Partners Breach Exposes Data

Summary Insight Partners, a prominent venture capital firm, confirms a data breach stemming from a January 2025 social engineering attack. The breach exposed sensitive data, including fund information, banking details, and personal information of employees […]

Recent Data Breaches

Dark Web Infiltration

Summary This article explores the shadowy world of ransomware gangs operating on the dark web, focusing on how cybersecurity experts and law enforcement agencies infiltrate these groups to disrupt their operations. It discusses the methods […]

Recent Data Breaches

Türkiye Hackers Target Kurdish Servers

Summary A Turkish state-sponsored hacker group, Marbled Dust, exploited a zero-day vulnerability in Output Messenger to compromise Kurdish servers. The attacks, ongoing since April 2024, targeted users associated with the Kurdish military in Iraq. This […]