Topic: cybersecurity incident response
-
Oracle PeopleSoft servers breached in ShinyHunters data theft
The ShinyHunters extortion gang is targeting Oracle PeopleSoft servers, claiming to have stolen data from 300 instances across over 100 organizations, with most victims in the education sector. The attackers are exploiting a combination of old vulnerabilities and zero-day exploits, using a "gadge...
Read More » -
Trellix confirms data breach after source code theft
Trellix confirmed a data breach where unauthorized actors accessed a portion of its source code repository, with no evidence yet that the code was exploited or altered. The company is investigating with outside forensic experts and has notified law enforcement, but has not disclosed if corporate ...
Read More » -
Levi Strauss confirms hackers stole corporate data in cyberattack
Levi Strauss & Co. confirmed a cyberattack involving theft of corporate data, after hackers used social engineering to compromise three employees' company-issued computers. The company stated its rapid response contained the breach, with no consumer data impacted, and business operations continue...
Read More » -
Critical Adobe ColdFusion bug exploited in active attacks
Attackers are actively exploiting a critical Adobe ColdFusion vulnerability, CVE-2026-48282, which allows unauthenticated remote code execution on unpatched versions 2025.9, 2023.20, and earlier. Adobe released a patch on Tuesday urging immediate deployment within 72 hours, and real-world exploit...
Read More » -
US Cybersecurity Experts Charged in BlackCat Ransomware Case
Three cybersecurity professionals, including Kevin Tyler Martin and Ryan Clifford Goldberg, have been federally indicted for orchestrating BlackCat ransomware attacks, using their industry expertise to breach networks and extort cryptocurrency payments. The accused, who previously worked as ranso...
Read More » -
HackerOne Employee Data Breached in Navia Attack
A data breach at HackerOne's third-party benefits administrator, Navia, exposed sensitive personal information of 287 employees, including Social Security numbers, addresses, and dates of birth. The breach, caused by a Broken Object Level Authorization vulnerability between late December 2025 and...
Read More » -
Foxconn Ransomware Attack Underscores Ongoing Security Risks
The ransomware group Nitrogen claims to have stolen 8 TB of sensitive data, including schematics from major clients like Apple and Dell, from Foxconn, which confirmed a cyberattack affecting its North American factories. Foxconn is a prime target due to its role as a global manufacturer holding i...
Read More » -
Colt Data Breach: Customer Information Compromised in Cyber-Attack
Colt Technology Services has confirmed a significant data breach potentially exposing sensitive customer information, revising earlier assurances that the attack was contained to internal systems. The company is urgently working to determine the full scope of the compromised data and has set up a...
Read More » -
Aflac Confirms Data Breach Amid Scattered Spider Cyberattacks
Aflac confirmed a cybersecurity breach potentially exposing sensitive customer data, with no ransomware deployed but possible data theft still under investigation. The breach, possibly linked to the cybercrime group Scattered Spider, may have compromised Social Security numbers, health records, a...
Read More » -
University of Phoenix Data Breach Exposes 3.5 Million
A data breach at the University of Phoenix compromised the sensitive personal and financial information of approximately 3.5 million individuals, including students, employees, and suppliers. The attack was executed by the Clop ransomware gang, which exploited a zero-day vulnerability in the univ...
Read More »