Red Hot Cyber. The Cybersecurity Blog

Ticketmaster Breach: 30,000 Free Tickets Released
After claiming to have stolen 170,000 tickets for Taylor Swift’s ERAS Tour, the hacker group Sp1d3rHunters today announced they have distributed over 30,000 more tickets for high-profile events. The allegedly leaked tickets today include events for: Sp1d3rHunters, known for their

China: 7.5 Million Tourist Data Stolen!
On the morning of July 6, 2024, a user known as “BlackKing” revealed a significant data breach involving a Chinese travel and tourism platform on a hacking forum. This information leak, which occurred in March 2024, led to the exposure

Critical Vulnerability in MongoDB Compass: CVE-2024-6376 Exposes Systems to Code Injection Risks
A critical security vulnerability, identified as CVE-2024-6376, has been discovered in MongoDB Compass, a widely-used graphical interface for MongoDB data management. This security flaw could have serious repercussions, including data loss and unauthorized access to systems. Vulnerability Details The vulnerability

Latvian Government Database Compromised: Over 1.6 Million Government Data Lines!
A malicious actor has claimed to have leaked a database containing over 1.6 million lines of data from the Latvian government. The data breach, dated July 7, 2024, includes all information from Latvian government authorities. Incident Details The announcement of

Threat Actors Steal 5.90 GB of Sensitive Data from the Fiscalía General del Estado de Veracruz!
In an era where cybersecurity has become crucial for protecting sensitive data, a recent leak has revealed an alleged security breach at the Fiscalía General del Estado de Veracruz. A malicious actor known as “dwShark” claimed to have stolen the

Dangerous 0day Windows LPE Vulnerability for Sale in the Underground
A malicious actor, under the name “tikila”, has posted an advertisement on a hacking forum for the sale of a local privilege escalation (LPE) vulnerability for Windows. According to the post, this vulnerability has been tested and confirmed to work

Israeli Air Force Data Sale: A Suspected Leak Puts Sensitive Information at Risk
Pietro Melillo - November 2nd, 2024
Recently, a cyber threat actor known as EagleStrike posted an announcement on a dark web forum, claiming to possess confidential data concerning the Israeli Air Force (IAF). According to the...

IBM Hacked? Threat Actor ‘888’ Reveals Thousands of Employees’ Data Leak!
Luca Galuppi - October 31st, 2024
Recently, the notorious Threat Actor, identified by the nickname 888 , claimed to have breached IBM systems and stolen personal data belonging to the company's employees. The leak, dated October 2024, allegedly resulted in the compromise...

Fortinet Issues Bulletin for Critical 9.8 Bug on FortiManager under Active Exploitation
Redazione RHC - October 24th, 2024
Recently, Fortinet disclosed a critical vulnerability, identified as CVE-2024-47575, affecting FortiManager. This is a missing authentication vulnerability for critical functions [CWE-306] in the FortiManager fgfmd daemon, which could allow an...

US Elections and psy-ops: main threats come from Digital Echo Chambers and erosion of trust in democratic processes
Olivia Terragni - October 22nd, 2024
On November 5th, 2024, the next President and Vice President of the United States of America will be elected, as well as 1/3 of the U.S. Senators and all 435...
Sign up for the newsletter