Latest Internet & Cybersecurity News
Amazon AI Cyberattack Impacts 55 Nations
Cyberattackers exploited poor single-factor authentication in Amazon AI systems, accessing over 600 devices across 55 nations from January 11 to February 18. They extracted device configurations including administrative passwords and SSL-VPN credentials after breaching firewalls. Amazon CISO confirmed no FortiGate exploitation occurred.
Odido Telecom Data Breach Exposes 6.2 Million Users
Dutch telecom Odido suffered a breach compromising names, addresses, phone numbers, dates of birth, driver’s licenses, and passports of 6.2 million customers. Billing info, passwords, and call logs remain secure. The incident highlights risks to telecom infrastructure.
Advantest Ransomware Attack on Semiconductor Supplier
Japanese firm Advantest detected unusual activity on February 15, confirming ransomware deployment by unauthorized actors in its network. The company isolated systems, engaged experts, and committed to transparency on any data impacts. No group has claimed responsibility as of February 23.
PayPal Data Breach Raises Phishing and Fraud Risks
PayPal experienced a significant data breach, increasing risks of phishing scams and unauthorized transactions for users and businesses. Attackers likely exploited weak authentication or unpatched systems. Experts urge enabling 2FA and monitoring accounts.
BeyondTrust RCE Vulnerability Threatens Privileged Access
Remote code execution flaw in BeyondTrust PAM solutions allows attackers elevated privileges on affected systems. The vulnerability poses risks to enterprise environments managing critical infrastructure. Patching and monitoring are recommended.
Australian Court Data Exposed in VIQ Solutions Third-Party Breach
Canadian firm VIQ Solutions' subcontract to Indian e24 Technologies led to exposure of sensitive Australian federal and state court files. Raises national security concerns over third-party risks in transcription services. Response underway.