A threat actor called 888 claims to have stolen 35GB of secrets and other files from Accenture.
Five KDDI clients were also affected when a threat actor exploited a vulnerability in third-party software.
No one has claimed responsibility for AssuranceAmerica attack yet.
A misconfigured cloud database spills secrets, but Nextcloud was quick to remedy.
An LLM-based ransomware attack has been detected by researchers, and is notable for losing the data it encrypted…

Baby Boomers are the most likely to frequently change passwords, but often rely on unsecure methods of storage.
The attack abused misconfigured conditional access policies to bypass multi-factor authentication protections.
The bug was reported to Apple over a year ago, but still nothing has been done.

Researchers at Socket found two “VPN Go” browser extensions for Chrome and Firefox that posed as free VPNs while quietly stealing clipboard data through later updates.

Norton’s scam detection will let you ask Claude whether an email or online deal looks suspicious without leaving the AI chatbot.