Tag: security

CDK suffered another data breach as it was attempting to recover

Car dealer software provider CDK has allegedly suffered a second cyberattack – as it was trying to recuperate from the first one. As a result of this follow-up attack, the company was forced to turn most of its services back offline and now says it doesn’t know how long it…

Read More

Microsoft Power BI is apparently exposing user data online

Cybersecurity researchers from the Nokod Research Team have discovered Power BI, Microsoft’s business intelligence tool, is leaking sensitive data in a way that’s quite simple to extract. In a blog post detailing the findings, Nokod said the vulnerability affects “tens of thousands” of organizations globally, and that malicious actors could…

Read More

Ecommerce sites across the world could be at risk from this dangerous security flaw, so patch now

A catastrophic vulnerability was recently discovered in Adobe Commerce and Magento, but ecommerce websites operating these platforms seem largely uninterested in applying a patch.  As a result, “millions” of sites are open to attacks that could have devastating consequences, experts have warned. As reported by BleepingComputer, cybersecurity researchers from Sansec…

Read More

T-Mobile denies it was hacked, despite hacker claiming to have leaked company data

Popular data leaker IntelBroker is selling a database allegedly belonging to the telecommunications giant T-Mobile, but the company has denied this is the case. In a new post published on a dark web forum, IntelBroker said they were selling “Source code, SQL files, Images, Terraform data, t-mobile.com certifications, Siloprograms.”  They…

Read More

Beware — that new VPN you’ve found could be infected with malware

Chinese users looking for VPN products, AI tools, and adult content, are being targeted in a new campaign whose goal is to spread a backdoor called Winos. A new report from Trend Micro claims a new threat cluster, dubbed Void Arachne, is behind the campaign, and the malware can lead…

Read More

Security bug could have allowed anyone to spoof Microsoft employee emails

Security researchers recently claimed to have found a flaw that could allow threat actors to spoof Microsoft corporate emails. A cybersecurity researcher with the alias Slonser (full name Vsevolod Kokorin, according to TechCrunch) recently posted on X with a telling screenshot that appeared to show an email seemingly coming from…

Read More