Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

Description: EncryptHub, a notorious threat actor linked to breaches at 618 organizations, is believed to have reported two Windows zero-day vulnerabilities to Microsoft, revealing a conflicted figure straddling the line between cybercrime and security research. [...]
Source: BleepingComputer
April 7th, 2025 (2 months ago)
Description: We have breached the internal systems of Guangzhou Shiyuan Electronic Technology, securing sensitive files that, if exposed, would cause serious disruption across operations and partnerships.
Source: Ransomware.live
April 7th, 2025 (2 months ago)
Description: We have breached a U.S.-based financial services firm. 381GB of sensitive data has been secured. The name will be made public in a few hours. This is a warning.
Source: Ransomware.live
April 7th, 2025 (2 months ago)
Description: US food giant WK Kellogg Co is warning employees and vendors that company data was stolen during the 2024 Cleo data theft attacks. [...]
Source: BleepingComputer
April 7th, 2025 (2 months ago)
Description: Alleged Grubhub Data Breach Exposes 70 Million User Records
Source: DarkWebInformer
April 7th, 2025 (2 months ago)
Description: Each Monday, the Tenable Exposure Management Academy provides the practical, real-world guidance you need to shift from vulnerability management to exposure management. In this post, we explore the five steps to take on your journey to exposure management. You can read the entire Exposure Management Academy series here.Chances are, you’re buried in vulnerabilities and other cyber risks and there’s simply no way to address them all. But they keep on coming. You could work day and night and never hope to close them all. Of course, hope is not a strategy — especially with breaches like those that impacted SolarWinds and Colonial Pipeline, which cost millions to mitigate. And even after those companies cleaned up their issues, the damage was done — to their brands, to customer loyalty and to stakeholder confidence. So, faced with building threats, what can you do? In the cyber world, the key to getting ahead of your exposures is focus. That doesn’t mean trying to boil the ocean of threats you face. In fact, it might mean doing less. Pour that ocean into a paper cup. Economist Michael E. Porter wrote in a seminal Harvard Business Review article: "The essence of strategy is choosing what not to do." The upshot here: How can you be strategic if you have to do everything? Or, as the great philosopher Bob Seger once sang in “Against The Wind”: Deadlines and commitmentsWhat to leave in, what to leave outSo, what should you leave in and what should you leave out? Let’s think about it...
Source: Tenable Blog
April 7th, 2025 (2 months ago)
Description: VF Outdoor, the parent company behind The North Face and Timberland, has disclosed a security breach that exposed personal information belonging to over 15,000 customers. The security breach began in March 2023 but was only discovered and remediated two years later, on March 13, 2025. The breach was uncovered after VF Outdoor noticed suspicious activity … The post The North Face and Timberland Inform Customers of Two-Year-Long Breach appeared first on CyberInsider.
Source: CyberInsider
April 7th, 2025 (2 months ago)
Description: A likely lone wolf actor behind the EncryptHub persona was acknowledged by Microsoft for discovering and reporting two security flaws in Windows last month, painting a picture of a "conflicted" individual straddling a legitimate career in cybersecurity and pursuing cybercrime. In a new extensive analysis published by Outpost24 KrakenLabs, the Swedish security company unmasked the up-and-coming
Source: TheHackerNews
April 5th, 2025 (2 months ago)
Description: Purple.com Suffers Major Data Breach: 3 Million Customer and Order Records Allegedly Leaked
Source: DarkWebInformer
April 5th, 2025 (2 months ago)
Description: The organization that runs Seattle-Tacoma International Airport and several container terminals said it is sending breach notification letters to those affected by a ransomware attack, including about 71,000 people in Washington state.
Source: The Record
April 4th, 2025 (2 months ago)