Skip to content
Hacked dAily
All Episodes

Hacked dAily Episodes

Every episode of Hacked dAily: 558 daily cybersecurity briefings and counting. Breaking news on breaches, ransomware and AI threats. Page 7 of 24.

The rundown

  1. 1 Today, we explore the recent ransomware attack on the Transport Workers Union of America Local 100 by the Qilin group. This breach compromised sensitive member data, highlighting how labor organizations become prime cybercriminal targets due to their inadequate defenses.
  2. 2 Next, RCA, a major medical billing firm, faces a significant data breach, claimed by two ransomware groups. The incident emphasizes the crucial need for stronger data protection in healthcare, as sensitive data remains a lucrative target.
  3. 3 We delve into the short-lived ascent and decline of Arkanix Stealer, an AI-assisted malware that pilfered sensitive data like browser credentials and cryptocurrency wallets. Though now defunct, its rapid emergence signals shifts towards experimental cyber campaigns.

+3 more stories

Open briefing →

The rundown

  1. 1 Top Story 1: Apriora Inc., known as Alex AI, suffered a data breach exposing 784,000 candidate records and critical API credentials for platforms like Salesforce. This incident highlights privacy risks in recruiting tech, demanding upgraded cybersecurity protocols.
  2. 2 Top Story 2: A YouX ransomware attack exposed 230,000 Australian driver licenses and personal data of over 444,000 individuals. The breach underscores vulnerabilities in automotive finance cybersecurity, necessitating improved protections and swift regulatory responses.
  3. 3 Top Story 3: Chinese hackers breached Italy's Ministry of the Interior, affecting identities of 5,000 Digos agents, crucial in organized crime investigations. This raises national security concerns, emphasizing the need for robust government cybersecurity measures.

+2 more stories

Open briefing →

The rundown

  1. 1 Our top story features Anthropic's launch of Claude Code Security, an AI-powered tool that scans software for vulnerabilities. With its human-like code analysis, this tool promises precise detection and minimized false positives, marking a strategic advance against AI-driven cyber threats.
  2. 2 In ransomware news, threat actors exploit virtual machine templates to expedite attacks and evade defenses. This trend necessitates heightened vigilance over virtual environments to prevent widespread data encryption.
  3. 3 We also discuss the compromise of the Cline CLI npm package, where malicious code led to the distribution of the OpenClaw tool. This breach highlights the urgent need for robust security measures in managing software supply chains.

+3 more stories

Open briefing →

The rundown

  1. 1 A critical vulnerability in BeyondTrust Remote Support has been exploited by ransomware gangs, threatening enterprises dependent on this software for remote operations. This incident underscores the need for robust patch management and fortified cybersecurity defenses.
  2. 2 Bumble faces a class action lawsuit following a significant data breach exposing user information. This legal action spotlights the imperative for stringent security measures to protect user data and maintain trust in the online dating sphere.
  3. 3 Researchers have identified malicious Facebook ads distributing fake Windows 11 downloads aimed at stealing users' credentials and cryptocurrency. This campaign exemplifies the sophistication of cyber attacks using popular platforms, urging businesses and individuals to enhance preventive measures.

+2 more stories

Open briefing →

The rundown

  1. 1 First, a major data breach at Banque de France's bank registry service has exposed the personal information of 1.2 million accounts. This incident is a stark reminder for banks to strengthen their cybersecurity protocols to maintain trust and comply with regulations.
  2. 2 Next, the 'Starkiller' phishing kit, capable of bypassing multi-factor authentication, poses new risks for organizations. Its emergence warns businesses about the need to continually enhance their security frameworks to fend off sophisticated threats.
  3. 3 Meanwhile, a newly identified Android malware exploits Google Gemini's AI capabilities to evade detection, threatening the security of millions of Android users. This highlights the imperative for robust security measures to confront advanced malware tactics.

+3 more stories

Open briefing →

The rundown

  1. 1 Top Story 1: DEF CON bans three men allegedly linked to Jeffrey Epstein from future events, reflecting its stand on ensuring a secure, ethical space against potential compromise of trust and integrity in the tech community.
  2. 2 Top Story 2: A surge in vishing attacks targets Microsoft Entra, manipulating user trust to access critical networks, stressing the necessity for heightened vigilance and robust security frameworks as businesses expand their cloud-based operations.
  3. 3 Top Story 3: RTL Group investigates a potential breach affecting over 27,000 employees' data, with implications for data privacy and organizational security in the entertainment sector amid cybercrime forum claims of extensive data theft.

+3 more stories

Open briefing →

The rundown

  1. 1 Dutch police erroneously sent confidential files to an individual who was then arrested for "hacking." This raises alarms about data management and the need for strict protocols in law enforcement agencies to safeguard private information.
  2. 2 A new phishing scam mimicking Google Forms is misleading users into submitting Google logins via fake URLs. The campaign targets individuals with job offers, stressing the need for vigilance and cybersecurity tools to counteract such threats.
  3. 3 Deutsche Bahn recovered from a DDoS attack that impacted train services, attributed to pro-Russian hackers. This highlights vulnerabilities in critical infrastructure and the essential need for enhanced digital resilience to protect public systems.

+3 more stories

Open briefing →

The rundown

  1. 1 Microsoft has identified a vulnerability where "Summarize with AI" prompts could be manipulated in chatbots, potentially impacting decision-making by misleading users. This discovery highlights the importance of safeguarding AI systems to maintain trust and accuracy.
  2. 2 A sophisticated spam operation is exploiting Atlassian Jira to target organizations by embedding harmful links in legitimate notifications, risking data breaches. This campaign stresses the need for robust security measures for platforms trusted by enterprises.
  3. 3 Spain's legal authorities have required NordVPN and ProtonVPN to block websites linked to the piracy of LaLiga broadcasts, aimed at defending legitimate content distribution and tackling significant revenue losses from illegal streaming.

+3 more stories

Open briefing →

The rundown

  1. 1 In today's episode, we explore Google's findings on state-sponsored hackers from China, Russia, Iran, and North Korea leveraging AI, specifically targeting Google's Gemini. This marks a concerning leap in APT capabilities, emphasizing the need for fortified defenses against AI-enhanced attacks.
  2. 2 DavaIndia Pharmacy's data breach reveals significant vulnerabilities in their online platform, risking customer data privacy and compliance. This incident signals an urgent call for enhanced security measures in healthcare and pharmaceuticals.
  3. 3 A recent study uncovers 25 distinct attacks on major cloud password managers, exploiting flaws in password recovery systems. This revelation urges an industry-wide reassessment of password security protocols to safeguard information.

+3 more stories

Open briefing →

The rundown

  1. 1 Today, Google responds to the first actively exploited zero-day vulnerability in Chrome for 2026 by releasing a vital security update, emphasizing the importance of keeping software current to protect against data threats.
  2. 2 LockBit 5.0 emerges with enhanced cross-platform ransomware capabilities, impacting Windows, Linux, and VMware's ESXi systems. This development stresses the need for robust security across all platforms to counteract growing ransomware threats.
  3. 3 CISA adds vulnerabilities from SolarWinds, Microsoft, Apple, and Notepad++ to its Known Exploited Vulnerabilities catalog, urging federal and private sectors to prioritize fixes and bolster defenses amidst a rising threat landscape.

+3 more stories

Open briefing →

The rundown

  1. 1 A staggering 287 Chrome extensions have been caught secretly harvesting data from 37 million users. This revelation demands immediate action from browser developers to strengthen privacy controls and underscores the critical need for user vigilance against hidden data collection.
  2. 2 An SEO poisoning campaign by BADIIS is manipulating search results to spread malware globally. This attack necessitates a strategic overhaul of digital security measures, spotlighting the innovative tactics used by cybercriminals to exploit everyday online activities.
  3. 3 Fintech firm Figure has suffered a data breach due to a phishing attack, exposing sensitive customer data. This breach highlights the growing threat of phishing and the essential need for robust employee training and cybersecurity protocols to safeguard financial institutions.

+3 more stories

Open briefing →

The rundown

  1. 1 Artificial intelligence is empowering cybercriminals, enhancing the speed and sophistication of their attacks on U.S. sectors like healthcare and finance. This evolution demands AI-driven defenses to maintain resilience.
  2. 2 CISA warns of active vulnerability exploitation in SolarWinds, Notepad++, and Microsoft products, stressing the importance of immediate patches to protect data and maintain security integrity.
  3. 3 Luxury brands Louis Vuitton, Dior, and Tiffany face a $25 million fine after customer data breaches, prompting increased regulatory oversight and the need for stronger data protection to safeguard customer trust.

+3 more stories

Open briefing →

The rundown

  1. 1 The podcast begins with a significant data breach at Dutch telecom firm Odido, exposing personal details of 6.2 million customer accounts. While passwords remain secure, customers are urged to remain vigilant, highlighting the urgent need for enhanced security measures.
  2. 2 McLaren Health's $14 million settlement following ransomware attacks emphasizes the costly risks of cybersecurity lapses in healthcare, with growing accountability for safeguarding patient data amid rising threats.
  3. 3 The World Leaks ransomware group has introduced 'RustyRocket,' a stealthy malware developed in Rust, posing a detection challenge. This evolution in tactics demands urgent updates in cybersecurity strategies globally.

+3 more stories

Open briefing →

The rundown

  1. 1 In Paris, a ransomware trial against a couple reveals the pervasive nature of modern cybercrime, emphasizing the necessity of heightened cybersecurity to protect financial stability and data integrity.
  2. 2 A new threat actor, UAT-9921, utilizes the advanced VoidLink framework to execute stealth attacks, underscoring the urgent need for robust defenses against evolving threats.
  3. 3 The Cl0p ransomware group has breached 25 global organizations, targeting diverse sectors from healthcare to investment, underscoring the profound threat ransomware poses to operational integrity and data security.

+1 more story

Open briefing →

The rundown

  1. 1 Today's top story involves the Birmingham Mental Health Authority in Alabama, alerting over 30,000 individuals of a potential data breach linked to Medusa's ransomware, underscoring the ongoing vulnerabilities in healthcare systems and potential risks to patient privacy and safety.
  2. 2 In another blow to healthcare security, the networking platform Sermo was hit by ransomware, risking exposure of millions of medical professionals' sensitive data. This attack highlights the urgency for enhanced cybersecurity practices across healthcare-related networks.
  3. 3 Kyle Svara has confessed to hacking hundreds of Snapchat accounts using social engineering. This case, involving identity theft and computer fraud, stresses the need for stronger social media platform security measures against such deceptive hacking tactics.

+3 more stories

Open briefing →

The rundown

  1. 1 In today's episode:
  2. 2 Social media platforms are reportedly profiting from fake and scam ads, threatening consumer protection and digital trust. Impersonating legitimate brands, they trick users into divulging personal data, emphasizing the need for stricter regulations and enhanced oversight.
  3. 3 The European Commission swiftly contained a cyber-attack targeting its staff mobile data management infrastructure, preventing extensive damage. This incident highlights the Commission's strong response strategy, bolstered by Cybersecurity Act 2.0, reinforcing EU-wide defenses.

+4 more stories

Open briefing →

The rundown

  1. 1 South Korean crypto exchange Bithumb erroneously transferred 620,000 Bitcoin, valued at $40 billion, to users' accounts, igniting concerns over operational controls. This highlights the urgent need for robust system checks and regulatory oversight to safeguard investor confidence.
  2. 2 A UK construction firm fell prey to the Prometei botnet, exploiting Windows Server vulnerabilities for cryptojacking. This highlights the escalating threat of advanced persistent threats, emphasizing the critical need for stringent cybersecurity measures and constant vigilance.
  3. 3 OpenClaw has integrated VirusTotal scanning to enhance ClawHub Skills security, demonstrating its commitment to user protection against cyber threats. This integration fortifies the platform's defenses, maintaining user trust in its cybersecurity capabilities.

+2 more stories

Open briefing →

The rundown

  1. 1 The Nitrogen ransomware group faces a self-inflicted setback as a key management flaw locks them out of their own payment systems, leaving victims' data irretrievable. This highlights a critical vulnerability in ransomware infrastructure and underscores broader risks of data loss.
  2. 2 Conduent faces a data breach compromising over 25 million individuals' sensitive information. The incident reinforces the necessity for robust cybersecurity measures amid sophisticated cyber threats, stressing potential global repercussions for stakeholders.
  3. 3 La Sapienza University in Rome grapples with a cyber attack, disrupting its digital infrastructure and key resources for students and faculty. This incident highlights the ongoing threat to educational institutions and the importance of protecting sensitive data.

+2 more stories

Open briefing →

The rundown

  1. 1 Flickr has reported a potential data breach affecting some of its 35 million monthly users, linked to a third-party email service vulnerability. While no passwords or payment data were leaked, exposed usernames, email addresses, and IP addresses heighten phishing risks, prompting enhanced vendor security protocols.
  2. 2 The Payouts Kings ransomware group claims to have attacked Prater Engineering Associates, Inc., threatening to release 2.5 terabytes of sensitive data within six days. This underscores vulnerabilities in the engineering sector, demanding rigorous cybersecurity defenses.
  3. 3 Germany warns of hackers targeting Signal accounts, particularly those of senior governmental and corporate figures, using SIM-swapping tactics. This calls for urgent enhancements in securing high-level communications channels.

+3 more stories

Open briefing →

The rundown

  1. 1 ShinyHunters, linked to the LAPSUS$ collective, breached Harvard's Alumni Affairs, leaking 115,000 donor records, including data from Mark Zuckerberg and Michael Bloomberg, stressing the need for stronger cybersecurity in educational institutions.
  2. 2 Epworth HealthCare denies data breach claims despite ransomware attackers alleging theft of 920GB of sensitive data, emphasizing the need for ongoing vigilance in healthcare cybersecurity.
  3. 3 A new variant of the ClickFix campaign, named "CrashFix," utilizes a Python RAT and browser crashes, highlighting the evolving tactics of cybercriminals and underscoring the necessity for behavior-based detection strategies.

+3 more stories

Open briefing →

The rundown

  1. 1 Hackers have exploited a critical vulnerability in React Native's Metro bundler, breaching developer systems and allowing unauthorized code execution. This emphasizes the urgent need for developers to apply patches to secure their environments and highlights the importance of robust cybersecurity practices.
  2. 2 ShadowSyndicate has significantly expanded its infrastructure, showcasing its adaptability and increasing the global threat landscape. Organizations must strengthen defenses as this expansion could heighten risks to sensitive data and critical systems.
  3. 3 A tool dubbed the "EDR killer" exploits a signed kernel driver to bypass EDR systems, posing severe risks to enterprise cybersecurity. This development stresses the necessity for enhanced scrutiny of third-party drivers and adapting security strategies.

+3 more stories

Open briefing →

The rundown

  1. 1 French authorities raided the Paris HQ of Elon Musk's X over algorithmic manipulation and illicit content, spotlighting AI-generated illegal content concerns. This probe may escalate into international scrutiny and lead to potential EU fines or restrictions.
  2. 2 Chinese state-sponsored hackers have reportedly compromised Notepad++'s update mechanism to distribute malware, showcasing sophisticated exploitation of legitimate processes. This breach calls for stronger software supply chain security to prevent global data breaches.
  3. 3 A privacy breach in Bondu's AI toys exposed 50,000 child conversations. Though swiftly addressed, this incident emphasizes the need for stringent privacy and security measures in AI-powered children's products.

+2 more stories

Open briefing →

The rundown

  1. 1 Spotify and major music labels have filed a $13 trillion lawsuit against Anna’s Archive, accusing it of distributing copyrighted music without permission. This case exemplifies the clash between digital piracy and copyright enforcement, with severe financial and legal stakes at play.
  2. 2 Hackers breached StopICE, an immigrant rights group's communication system, sending alarming texts allegedly linked to a border patrol agent. This breach raises concerns about activist groups' digital security and highlights tensions with government agencies.
  3. 3 ShinyHunters-branded groups are conducting vishing campaigns against cloud SaaS platforms, targeting Microsoft 365 and Salesforce credentials. These attacks spotlight the importance of robust identity protections as attackers bypass traditional security to access valuable business data.

+2 more stories

Open briefing →

The rundown

  1. 1 Over at Marquis Software, we ponder whose bright idea it was to let SonicWall join the hackers' hall of fame, proving that sometimes the internet's friendly neighborhood developer is actually a wolf in firewall's clothing.
  2. 2 In a dramatic twist out of a cyber-thriller, FBI files unveil Jeffrey Epstein had his very own digital enigma, a hacker specializing in zero-day exploits, and no, he wasn't just the guy fixing your PC. It's a mystery layered in intrigue, a cyber-sleuth's dream drama.
  3. 3 Meanwhile, as Tulsa International Airport dodges digital disasters, their IT department seems to have packed all the right gear to fight ransomware turbulence. They've got cyber turbulence under control, or so they claim.

+1 more story

Open briefing →
Newsletter

Subscribe to Our Newsletter

Stay ahead of cyber threats with our weekly insights. Get exclusive access to expert analysis, breaking news, and the latest cybersecurity trends delivered straight to your inbox.

By subscribing you agree to receive the Hacked dAily briefing. Unsubscribe any time: see the privacy notice.