Operation Endgame 4.0 : 153 527 comptes compromis de plus dans le compteur. Endgame cible les loaders et botnets en amont — chaque vague révèle l'infrastructure persistante qui survit aux takedowns précédents. Ce qui est intéressant ici, c'est moins le chiffre que la mécanique : démanteler un botnet ne suffit pas si les credentials exfiltrés continuent de circuler. #infosec #botnet #breach
https://haveibeenpwned.com/Breach/OperationEndgame4
Have I Been Pwned: Operation Endgame 4.0 Data Breach

On 18 June 2026, the latest phase of Operation Endgame targeted the SocGholish malware operation, a prolific malware distribution network used to compromise systems and facilitate further cybercrime. Coordinated by international law enforcement agencies with support from Europol and Eurojust, the operation remediated almost 15,000 compromised websites and disrupted more than 100 servers and domains used to distribute malware. Authorities also provided HIBP with 154k impacted email addresses and more than half a million previously unseen passwords.

Have I Been Pwned
Trip Hop All fake rules to breach

YouTube
Dark Folk All fake rules to breach

YouTube
Cinematic All fake rules to breach

YouTube

I joined @huntress because I want to do my part to save the world. That's not bragging or hyperbole. I believe that, every day, in law offices and dental clinics and at construction companies and coffee shops, we're watching your back so you can concentrate on those things that you excel at, and make life better for those around you.

As an industry we're now seeing that cybersecurity has done such a good job at this, as a whole, the attackers are now targeting us - sometimes first - and trying to throw us off our game.

Never gonna happen. The solution to this is for the #infosec space to unify and stay strong. Not unify like "get acquired' but "get aligned" and realize that, even as competitors, we're all pressing toward the same goal: messing up a cybercriminal's day.

I said it last summer, and it was as true this morning as it was then: The Infosec industry is a critical infrastructure, and it both needs and deserves its own #ISAC. I will work with anyone who shares that goal to help me make that a reality.

So with all that, I wanted to share that I worked with some of my colleagues on this rapid response the past day and a half, and I'm pretty proud of the result.

https://www.huntress.com/blog/klue-breach-investigation

#Klue #breach #DataBreach #RapidResponse #IR #DFIR #tokens #compromise #integration #SalesForce #SFDC #Gong #huntress

Cybercrime Breaches Klue: Salesforce Data Impacted for Many Victims, including Huntress | Huntress

Huntress was one of many vendors impacted by a recent incident at Klue. We dug into the incident to figure out what happened.

Huntress
iRhythm confirms data was stolen in a breach — a medical device company, so the data in question isn't just names and emails. When health monitoring hardware meets patient records, the attack surface becomes a clinical concern, not just a compliance checkbox. Details on scope and affected data types are still emerging. #infosec #breach #healthsec
https://www.securityweek.com/irhythm-confirms-data-stolen-in-hack/
iRhythm Confirms Data Stolen in Hack

iRhythm has been targeted in a cyberattack that resulted in the theft of information and hackers asking for a ransom.

SecurityWeek
La RATP confirme une fuite de données touchant des informations d'employés. Ce type d'incident rappelle que les grandes organisations d'infrastructure publique ont souvent une surface d'attaque RH sous-estimée : annuaires internes, outils de gestion, accès prestataires. Les données d'employés, c'est aussi une porte d'entrée pour le spear phishing. #infosec #breach #databreach
https://kulturegeek.fr/news-353713/ratp-piratee-nombreuses-donnees-demployes
La RATP piratée avec de nombreuses données d'employés

La RATP a fait l'objet d'un piratage, entraînant le vol de données de nombreux employés. La régie des transports en commun en Île-de-France annonce porter

KultureGeek

RE: https://infosec.exchange/@deafnews/116754287211355644

Whew! I was worried Instructure (Canvas) was feeling all alone. Now all the education platforms have been breached! 🤡

#breach #canvas #edtech #schools #infosec #cybersecurity #privacy

Une fuite potentielle chez la RATP concernerait plus de 62 000 employés. Ce qui mérite attention : les données RH internes ont une longue durée de vie utile pour des attaques ciblées — phishing, ingénierie sociale, corrélation avec d'autres bases. La taille du dataset compte moins que la sensibilité des champs exposés. #infosec #breach #dataleaks
https://incyber.org/article/ratp-une-fuite-de-donnees-pourrait-concerner-plus-de-62-000-employes/
RATP : une fuite de données pourrait concerner plus de 62 000 employés - INCYBER NEWS

Une base de données attribuée à la RATP a été diffusée sur le Dark Web. Elle contiendrait des informations professionnelles concernant plus de 62 000 salariés du groupe. Si l’origine de la fuite n’est pas encore confirmée, ces données pourraient être exploitées pour des attaques de phishing et des tentatives d’usurpation d’identité.

INCYBER NEWS

🚨 NEWS: Notifica di Furto Vault Dashlane: Cosa Nasconde il Silenzio di un Colosso della Sicurezza?

Ecco i punti chiave in breve:
💡 Negli ultimi giorni, la comunità della sicurezza informatica è stata scossa da una comunicazione opaca di Dashlane. L'azienda ha pubblicato un avviso di sicurezza che conferma il f...

🚀 LINK: https://meteoraweb.com/news/notifica-di-furto-vault-dashlane-cosa-nasconde-il-silenzio-di-un-colosso-della-sicurezza

#incidentResponse #passwordManager #dashlane #breach #securityAdvisory