Snowflake breach snowballs as more victims, perps, come forward

June 23, 2024 at 10:21PM Snowflake breach continues to expand with victims, including Ticketek and Advance Auto Parts. Hacker claims to have accessed Snowflake by compromising third parties. CDK faces ransomware attack and potential payment. Critical vulnerabilities found in Juniper Secure Analytics, CAREL Boss-Mini, Westermo L210-F2G, and RAD Data Communications SecFlow-2. Alleged Apple tools leaked. … Read more

Multifactor Authentication Is Not Enough to Protect Cloud Data

June 21, 2024 at 03:08PM UNC5537, a cybercriminal group, has recently targeted several companies, stealing millions of customer records and demanding large ransoms. An analysis suggests the breaches were due to compromised credentials and poor authentication controls. The incidents highlight the need for stronger security measures, including widespread adoption of multifactor authentication and stricter access … Read more

PandaBuy pays ransom to hacker only to get extorted again

June 6, 2024 at 11:18AM Pandabuy, a Chinese shopping platform, revealed to BleepingComputer that it paid a ransom to prevent stolen data from being leaked. The threat actor, known as ‘Sanggiero’, attempted to extort the company again, claiming to have 17 million rows of data. Pandabuy confirmed fixing previous vulnerabilities and ceased cooperation with the … Read more

Ticketmaster Confirms Cloud Breach, Amid Murky Details

June 3, 2024 at 01:30PM Live Nation confirmed the breach of a third-party cloud database containing customer data, with ShinyHunters claiming to have over half a billion Ticketmaster records for sale. The type of data and its impact remain undisclosed. Snowflake, the affected database, attributes the attack to poor customer configuration, impacting various high-profile clients. … Read more

ShinyHunters claims Santander breach, selling data for 30M customers

May 31, 2024 at 11:51AM ShinyHunters, a notorious threat actor, is allegedly selling a massive trove of Santander Bank’s data, impacting 30 million customers and employees. This follows a recent data breach affecting the bank. ShinyHunters is known for similar activities and has a history of selling stolen data from various companies. The legitimacy of … Read more

Hackers Boast Ticketmaster Breach on Relaunched BreachForums

May 31, 2024 at 05:48AM A hacking group announced the theft of data from 560 million Ticketmaster users on a new BreachForums site. This is the third BreachForums iteration following legal interventions. The group is selling the data for $500,000, containing sensitive user information going back to 2011. Ticketmaster and the Australian government are investigating. … Read more

Miscreants claim they’ve snatched 560M people’s info from Ticketmaster

May 29, 2024 at 07:05PM Ticketmaster was reportedly breached by cybercriminals who claim to have stolen 1.3TB of data on 560 million customers. The stolen data includes personal information and credit card details. The miscreants are offering the data for sale. The breach comes amidst legal challenges and customer dissatisfaction, which could greatly impact Ticketmaster’s … Read more

Leak Site BreachForums Springs Back to Life Weeks After FBI Takedown

May 29, 2024 at 05:41PM Following the shutdown of BreachForums by the FBI and the DOJ, the alleged reappearance of the site has raised suspicions among researchers. The revival includes attempts to sell purported personal data of 560 million customers. There are doubts regarding the legitimacy of the revival, with experts pointing to potential law … Read more

BreachForums Returns Just Weeks After FBI Seizure – Honeypot or Blunder?

May 29, 2024 at 03:37AM BreachForums, a criminal bazaar, has resurfaced despite a law enforcement takedown. The revived site offers a 1.3 TB database of Ticketmaster customers’ details for $500,000, with visitors now required to sign up. Law enforcement seized new domains and the Telegram channel, hinting at administrator arrests. Uncertainty remains around the individual … Read more

BreachForums returns, just weeks after FBI-led takedown

May 28, 2024 at 02:49PM BreachForums has reemerged under the control of ShinyHunters just weeks after law enforcement seized it. The FBI’s takedown did not fully dismantle the site, as ShinyHunters claimed to escape unscathed and regained access. Former FBI agent Austin Berglas noted that while the action was a success, fully dismantling criminal groups … Read more