A Discord breach report has drawn attention after a regulatory filing claimed that more than 10 million users may have been affected by a security incident. The figure immediately raised concerns because it would rank among the largest incidents ever linked to the popular communication platform. Despite the alarming number, cybersecurity researchers have not found…
A SoFi data breach has affected customers of the company’s Hong Kong subsidiary after attackers gained access to a database operated by a third-party vendor. The incident involves SoFi Securities (Hong Kong) Limited, which recently notified customers that an unauthorized party accessed systems managed by an external service provider. The company says it discovered the…
An Instagram recovery flaw reportedly exposed information linked to roughly 20,000 user accounts through a Meta account recovery tool. A security researcher discovered the issue and warned that attackers could have used it to collect account-related data at scale. Although the vulnerability did not provide direct access to user accounts, the exposed information could have…
Thousands of students and graduates may face increased phishing risks after an incident affecting a careers platform used by the University of Oxford. The Oxford careers breach did not originate within the university’s own systems. Instead, the exposure stemmed from a cybersecurity incident involving a third-party provider responsible for operating the CareerConnect platform. While investigators…
Baker Distributing Company is facing scrutiny after cybercriminals claimed to have stolen and leaked a large volume of corporate data. The alleged incident came to light when the ShinyHunters extortion group published samples of files that it says were taken from the company’s systems. According to researchers who reviewed the leaked materials, the dataset includes…
The DentaQuest data breach affected approximately 2.6 million people after cybercriminals leaked stolen information online. DentaQuest disclosed the incident after investigators confirmed that attackers accessed sensitive data stored within company systems. Attackers breached the company’s network in 2023. Although DentaQuest contained the intrusion and launched an investigation at the time, the recent publication of the…
Cloud misconfigurations are becoming a growing concern for organizations that rely on cloud services to store and manage critical information. A recent warning from the Dutch National Cyber Security Centre (NCSC) highlights how configuration mistakes continue to contribute to data breaches across multiple sectors. Many businesses have accelerated their cloud adoption in recent years. Cloud…
A cybercriminal claims to have obtained sensitive Grindr user data and is now offering the alleged database for sale on a cybercrime forum. The seller says the dataset contains personal information, device details, location records, and password-related data linked to users of the popular dating platform. Cybernews researchers examined sample records attached to the listing,…
A security flaw on Emmy.tv, the platform used to manage Emmy Awards submissions, exposed cloud credentials that could have opened the door to a vast collection of sensitive data. Researchers discovered that Amazon Web Services (AWS) credentials were embedded directly in publicly accessible website code. The mistake potentially allowed access to award submissions, internal communications,…
The Bumble data leak claims circulating on cybercrime forums have triggered fresh concerns about dating app security and user privacy. A threat actor recently claimed to possess data linked to roughly 32 million Bumble accounts. The alleged dataset reportedly appeared on an underground forum known for trading stolen information. Researchers are still examining the authenticity…