Red Hat confirms security incident after hackers breach GitLab instance

 Crimson Collective, cyber criminal gang claims to have stolen nearly 570GB of compressed data across 28,000 internal development respositories, with the company confirming it was a breach of one of its GitLab instances. This data allegedly includes approximately 800 Customer Engagement Reports (CERs), which can contain sensitive information about a customer’s network and platforms. Red…

Read More

UAE Cyber Security Council warns 1.4 billion accounts hacked monthly worldwide

The UAE Cybersecurity Council has warned the public against the dangers of neglecting personal digital footprints, cautioning that every login, post, or interaction online leaves behind a trail that can be exploited by hackers or untrustworthy applications. In a statement carried by the Emirates News Agency (WAM), the council noted that more than 1.4 billion…

Read More

Palo Alto Networks, Zscaler, Cloudflare hit by the latest data breach

When three prominent vendors, Palo Alto Networks, ZScaler, and Cloudflare, announced on Tuesday that they were hit by a cyber attack, it was a stark reminder that today’s interconnected enterprise environment means that one vendor’s security hole can hurt users globally. Palo Alto said, “this supply chain attack impacted hundreds of organizations, including Palo Alto Networks”…

Read More

Financial impact from severe OT related threats rise to $300B

$330 Billion OT Cyber Risk impacting business at large OT networks under active attack due to critical RCE flaw Attackers are exploiting a critical remote code execution (RCE) vulnerability in the Erlang programming language’s Open Telecom Platform, widely used in OT networks and critical infrastructure. The flaw enables unauthenticated users to execute commands through SSH…

Read More

Google suffers data breach in ongoing Salesforce data theft attacks

Google is the latest company to suffer a data breach in an ongoing wave of Salesforce CRM data theft attacks conducted by the ShinyHunters extortion group. In June, Google warned that a threat actor they classify as ‘UNC6040′ is targeting companies’ employees in voice phishing (vishing) social engineering attacks to breach Salesforce instances and download customer data….

Read More