Security news

Latest security news

110 of 1,259 storiesTopic: Data BreachesClear all

Thu, 10 Sept 2026

Wed, 9 Sept 2026

  1. Smashing Security podcast #484: How websites are tracking you with silence

    When a chap called Matt noticed his Bluetooth headphones wouldn't switch to his phone, he was surprised to realise the reason was a single AliExpress webpage sitting open in his browser - playing nothing at all, at zero volume. And yet somehow his hardware could hear it. Audio fingerprinting is one of the sneakiest tracking tricks on the web. Meanwhile, the intelligence agencies of the "Five Eyes" (not Five Guys) have got together and published advice on how companies should communicate after a cyber attack. The summary? For the love of God, stop calling every breach "sophisticated." All this and more in episode 484 of the "Smashing Security" podcast with cybersecurity expert and keynote speaker Graham Cluley, and special guest Danny Palmer.

    Graham Cluley
  2. FTC rescinds policy requiring health apps to notify customers after a breach

    The policy, passed under the Biden administration, forced health apps to disclose when users’ personal health records were exposed in a breach or shared without authorization.

    CyberScoop
  3. Electronic health record company says customer data stolen in breach

    Veradigm said access was limited to a specific interface, and did not impact the company’s broader environment such as its networks, servers or databases. The incident did not result in operational disruptions, the company added.

    The Record
  4. Veradigm warns of patient data breach after ransomware gang claims attack

    Healthcare technology company Veradigm disclosed a data breach after a cybersecurity incident at one of its third-party vendors exposed patients' personal data.

    BleepingComputer

Tue, 8 Sept 2026

  1. Hackers breach F5 BIG-IP APM devices to deploy Linux rootkit

    A Linux rootkit targeting devices in F5 BIG-IP APM environments can intercept PHP file loading and inject a fileless web shell directly into memory, avoiding the need to write malicious code to disk.

    BleepingComputerF5, Linux
  2. ShinyHunters hackers claim breach of Florida "DAVID" DMV database

    The ShinyHunters extortion gang claims it breached an online platform for the Florida Department of Motor Vehicles database known as "DAVID" and stole over 200,000 records about drivers in the state.

    BleepingComputer
  3. Webinar: The forgotten Google Workspace access that can lead to a breach

    Third-party applications connected to Google Workspace can retain access long after their original purpose is forgotten. This webinar examines how overly permissive integrations contribute to breaches and which security controls can help fast-growing companies reduce their exposure.

    BleepingComputerGoogle
  4. Trezor Supply Chain Breach Now Impacts 81,000 Customers

    Crypto wallet-maker Trezor says a data breach at supplier ShipMonk is far worse than originally thought

    Infosecurity Magazine
  5. Grindr to Pay £26 Million to Settle U.K. Claims Over HIV Status Data Sharing

    Online dating app Grindr has opted to pay £26 million ($35.1 million) to settle a lawsuit in the U.K. over allegations that it shared users' personal information, including their HIV status, with third-parties. Grindr, which is the largest LGBTQ+ dating app, was sued in April 2024, accusing it of violating U.K. privacy laws by sharing sensitive data for commercial purposes such as advertising.

    The Hacker News

About this news

1,259
Stories
33
Added in the last 24 hours
17
Critical in the last 7 days
4
Reported by several outlets