Healthcare SSO Targeted by ShinyHunters
A new advisory from Health-ISAC warns that extortion actors are compromising single-sign-on credentials to exfiltrate cloud data.
Data breaches, ransomware payouts, and phishing operations rarely make the news until the damage is already done. This is where Xploitwire tracks the attackers — who they are, how they got in, and what it means for the organizations and people caught in the blast radius.
A new advisory from Health-ISAC warns that extortion actors are compromising single-sign-on credentials to exfiltrate cloud data.
Threat actors are exploiting technical support discussions on Steam to trick gamers into executing malicious PowerShell cryptominers.
A decade after their most prominent breaches, the figure known as Phineas Fisher remains one of cybersecurity's enduring enigmas.
North Korean threat actors are leveraging AI-driven lures and Telegram account hijacks to target cryptocurrency and finance professionals.
Credential stuffing attacks targeting the Chick-fil-A One platform have exposed the personal data of over 13,000 customers.
From AI-powered infostealers and automotive vulnerabilities to massive kernel patch requirements, recent threats span multiple sectors.
Threat actors are repurposing publicly leaked data to launch targeted sextortion campaigns demanding Bitcoin payments from breach victims.
Cyber CrimeAustralian energy provider Origin confirms unauthorized access to customer records amid claims of a multi-million user data ransom.
Higher education institutions face a shifting threat landscape as specialized ransomware operations increasingly prioritize university targets.
An Illinois man was sentenced to 76 months in federal prison for orchestrating a campaign to compromise 750 social media accounts.
New research details how threat actors are ditching delayed credential harvesting for live, session-based account hijacking.
A centralized portal upgrade aims to standardize affiliate workflows and tighten operational management for the DevMan ransomware group.
Threat actors are exploiting a severe vulnerability in PTC Windchill and FlexPLM to exfiltrate sensitive enterprise product data.
Researchers have uncovered an Iran-linked campaign using fake VPNs and media players to deploy spyware against specific user groups.
Law enforcement has flagged over 4,000 URLs linked to a network that recruits minors for digital extortion and physical violence.
A critical IDOR vulnerability in the Pope's official prayer app has left the personal data of over 700,000 users exposed for months.
A newly uncovered intrusion suggests threat actors are leveraging autonomous AI tools to streamline lateral movement and enumeration.
Researchers report that compromised hotel network gateways are redirecting business travelers to sophisticated phishing portals.
A federal case involving a duress password suggests new legal risks for travelers using privacy-focused mobile software.
New State Department policy revokes visa access for cybercriminals and their families to combat cross-border investment scams.