<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <updated>2026-08-14T14:01:37Z</updated>
  <generator>https://njump.me</generator>

  <title>Nostr notes by BeyondMachines :verified:</title>
  <author>
    <name>BeyondMachines :verified:</name>
  </author>
  <link rel="self" type="application/atom+xml" href="https://njump.me/npub1k0e4qe43k60xwvqduvnhntmw8p3aa8sfrg46pw4ja4jc8gqt3vgqmufvzu.rss" />
  <link href="https://njump.me/npub1k0e4qe43k60xwvqduvnhntmw8p3aa8sfrg46pw4ja4jc8gqt3vgqmufvzu" />
  <id>https://njump.me/npub1k0e4qe43k60xwvqduvnhntmw8p3aa8sfrg46pw4ja4jc8gqt3vgqmufvzu</id>
  <icon>https://media.infosec.exchange/infosec.exchange/accounts/avatars/110/411/443/466/501/677/original/8a5cbd66210dcea1.png</icon>
  <logo>https://media.infosec.exchange/infosec.exchange/accounts/avatars/110/411/443/466/501/677/original/8a5cbd66210dcea1.png</logo>




  <entry>
    <id>https://njump.me/nevent1qqsytcmyxdvcxwes9fj6zgs9kpglmgzt4teh579favf6r8spdxcrzlszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qlp5lsa</id>
    
      <title type="html">Nick Scali Discloses Cyberattack Affecting Operations and ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsytcmyxdvcxwes9fj6zgs9kpglmgzt4teh579favf6r8spdxcrzlszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qlp5lsa" />
    <content type="html">
      Nick Scali Discloses Cyberattack Affecting Operations and Customer Information&lt;br/&gt;&lt;br/&gt;Nick Scali disclosed a cyberattack in August 2026 that disrupted sales and warehouse operations and exposed customer contact and delivery information. The Australian furniture retailer notified federal authorities and is contacting affected customers and restoring impacted systems.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/nick-scali-discloses-cyberattack-affecting-operations-and-customer-information-v-c-u-m-h/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/nick-scali-discloses-cyberattack-affecting-operations-and-customer-information-v-c-u-m-h/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-11T10:01:13Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsd7v908ruk3kwynvtkdfvjnqem8chnc6fa9r9n5xm9lvzzjyvuceqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qgtjqjp</id>
    
      <title type="html">Check Point Patches Critical VPN Certificate Flaws Enabling ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsd7v908ruk3kwynvtkdfvjnqem8chnc6fa9r9n5xm9lvzzjyvuceqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qgtjqjp" />
    <content type="html">
      Check Point Patches Critical VPN Certificate Flaws Enabling Unauthenticated RCE&lt;br/&gt;&lt;br/&gt;Check Point patched two critical 9.8-rated vulnerabilities in its VPN certificate handling that allow unauthenticated remote code execution. The flaws affect Security Gateways, Management Servers, and Spark Firewalls across multiple versions.&lt;br/&gt;&lt;br/&gt;**If you use Check Point Quantum Gateways, Security Management Servers, or Spark Firewalls, patch them ASAP. Don&amp;#39;t assume you&amp;#39;re safe because VPN is switched off, since the flaw can still trigger if certificates exist. If you can&amp;#39;t patch right away, disable implied VPN rules and restrict UDP ports 500 and 4500 to your known peer IPs only. Start planning replacement of any end-of-support R80.x/R81.x devices. Those will not be patched.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/check-point-patches-critical-vpn-certificate-flaws-enabling-unauthenticated-rce-w-l-o-8-e/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/check-point-patches-critical-vpn-certificate-flaws-enabling-unauthenticated-rce-w-l-o-8-e/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-11T08:01:13Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsp6ladkm9ea2fkaavdwtftcuu0hs568d5tmxxm0gd5vu82h994erqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qv8g7jd</id>
    
      <title type="html">Healing Paper Data Breach Exposes Medical Data of 220,000 Gangnam ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsp6ladkm9ea2fkaavdwtftcuu0hs568d5tmxxm0gd5vu82h994erqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qv8g7jd" />
    <content type="html">
      Healing Paper Data Breach Exposes Medical Data of 220,000 Gangnam Unni Users&lt;br/&gt;&lt;br/&gt;Healing Paper confirmed a data breach affecting approximately 220,000 Gangnam Unni users after attackers gained unauthorized access through the platform’s APIs. The exposed information includes personal details, consultation photos, treatment records, and payment-related information. Healing Paper also launched a verification tool so users can check whether their data was affected.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/healing-paper-data-breach-exposes-medical-data-of-220000-gangnam-unni-users-n-o-w-b-2/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/healing-paper-data-breach-exposes-medical-data-of-220000-gangnam-unni-users-n-o-w-b-2/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-07T14:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsv0eqy3h5g8y3uwew88mrfhsemal0src75vs38y3c8dm7x6qpp4uczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q6s7pwu</id>
    
      <title type="html">Mathspace Data Breach Impacts Over 1 Million Users in Australia ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsv0eqy3h5g8y3uwew88mrfhsemal0src75vs38y3c8dm7x6qpp4uczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q6s7pwu" />
    <content type="html">
      Mathspace Data Breach Impacts Over 1 Million Users in Australia and New Zealand&lt;br/&gt;&lt;br/&gt;Mathspace confirmed a data breach affecting 1,079,819 individuals after attackers exploited an unpatched vulnerability in its self-hosted Metabase reporting system. The company took the compromised reporting system offline, notified Australian and New Zealand authorities, and began alerting affected users.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/mathspace-data-breach-impacts-over-1-million-users-in-australia-and-new-zealand-y-1-w-d-f/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/mathspace-data-breach-impacts-over-1-million-users-in-australia-and-new-zealand-y-1-w-d-f/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-07T11:01:32Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsph232nacgd3p9xsy60k3ruzpvqc35l4cew2gf7evg0psu8fgh2dczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8lxmaz</id>
    
      <title type="html">Partnership HealthPlan of California Reports Data Breach ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsph232nacgd3p9xsy60k3ruzpvqc35l4cew2gf7evg0psu8fgh2dczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8lxmaz" />
    <content type="html">
      Partnership HealthPlan of California Reports Data Breach Affecting 1,500 Members&lt;br/&gt;&lt;br/&gt;Partnership HealthPlan of California reported a data breach affecting 1,526 members after welcome packets containing sensitive personal information were mailed to incorrect recipients. The incident exposed names, dates of birth, and member identification numbers but did not involve financial or medical records.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/partnership-healthplan-of-california-reports-data-breach-affecting-1500-members-i-9-l-p-o/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/partnership-healthplan-of-california-reports-data-breach-affecting-1500-members-i-9-l-p-o/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-07T10:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsw8hf9kstc7n9hqdjhn7rzwqlvvmnl9jx9sd5ur3dcenfvr0dtksgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93ql02tgu</id>
    
      <title type="html">Natural Resources Wales Accidentally Publishes Sensitive Employee ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsw8hf9kstc7n9hqdjhn7rzwqlvvmnl9jx9sd5ur3dcenfvr0dtksgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93ql02tgu" />
    <content type="html">
      Natural Resources Wales Accidentally Publishes Sensitive Employee Diversity Data&lt;br/&gt;&lt;br/&gt;Natural Resources Wales inadvertently published a spreadsheet on its public website containing sensitive diversity and equality data for employees who worked there between 2013 and 2018. The organization removed the file and notified the Information Commissioner’s Office.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/natural-resources-wales-accidentally-publishes-sensitive-employee-diversity-data-r-i-6-o-w/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/natural-resources-wales-accidentally-publishes-sensitive-employee-diversity-data-r-i-6-o-w/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-07T09:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsp3tz6w6673vh550cqlrnu2m46qatxhrvjfmjattp02wp8vd7ge6qzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q3wg3la</id>
    
      <title type="html">Microsoft Reports Nine Cloud Identity and AI Vulnerabilities Out ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsp3tz6w6673vh550cqlrnu2m46qatxhrvjfmjattp02wp8vd7ge6qzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q3wg3la" />
    <content type="html">
      Microsoft Reports Nine Cloud Identity and AI Vulnerabilities Out of Patch Tuesday, Two Max Severity&lt;br/&gt;&lt;br/&gt;Microsoft issued an out-of-band update on September 3, 2026, fixing nine cloud-platform vulnerabilities (eight critical, including two CVSS 10.0 flaws in Azure AD B2C and Azure AI Language Authoring), with the most consequential being two Entra ID bypasses. All were patched server-side with no customer action needed. The exposure duration is not clear.&lt;br/&gt;&lt;br/&gt;**Microsoft already fixed all nine flaws on their side, so there&amp;#39;s nothing for you to patch. Since attackers may have had a window before the fix, review your Entra ID and Azure sign-in logs and check for any unexpected new admin roles, app registrations, or service principals over the past few months. Don&amp;#39;t assume your identity provider is safe by default: turn on alerting for unusual logins and privilege changes, and cut back permissions on service principals and apps to only what they actually need.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/microsoft-s-september-identity-batch-proves-the-authentication-gap-is-not-an-open-source-problem-n-h-9-a-h/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/microsoft-s-september-identity-batch-proves-the-authentication-gap-is-not-an-open-source-problem-n-h-9-a-h/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-07T08:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs8q4j5sgwr2c0fumzntal3zxshy286r2wy6z06xut7ctuh7cwg0qgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qqmn80n</id>
    
      <title type="html">MikroTik Patches Critical &amp;#34;MikroTrick&amp;#34; Exploit Chain ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs8q4j5sgwr2c0fumzntal3zxshy286r2wy6z06xut7ctuh7cwg0qgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qqmn80n" />
    <content type="html">
      MikroTik Patches Critical &amp;#34;MikroTrick&amp;#34; Exploit Chain Under Active Attack&lt;br/&gt;&lt;br/&gt;MikroTik has patched six vulnerabilities, including the &amp;#34;MikroTrick&amp;#34; exploit chain, which allows unauthenticated attackers to gain full administrative control over RouterOS devices. CERT Polska confirmed active exploitation of these flaws. Attackers are creating unauthorized accounts and establishing persistent network tunnels.&lt;br/&gt;&lt;br/&gt;**If you use MikroTik routers, first make sure the device is isolated from the internet and reachable only from trusted networks. Block SSH, WebFig, and bandwidth-test access from outside. Then install the fixed RouterOS version (7.23.4, 7.24.2, or 6.49.21 and newer) from the official MikroTik download page, check whether the device is Flagged as compromised, and delete any accounts you didn&amp;#39;t create, such as one named &amp;#34;ops&amp;#34;.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/mikrotik-patches-critical-mikrotrick-exploit-chain-under-active-attack-8-j-y-e-y/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/mikrotik-patches-critical-mikrotrick-exploit-chain-under-active-attack-8-j-y-e-y/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-06T14:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqstr4g07uaukfadpnrzqznxxqwl7k272mujjcx7r9z9jls95u5jazczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qesjl2u</id>
    
      <title type="html">Bennett College Reports Data Breach Affecting 30,000 Individuals ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqstr4g07uaukfadpnrzqznxxqwl7k272mujjcx7r9z9jls95u5jazczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qesjl2u" />
    <content type="html">
      Bennett College Reports Data Breach Affecting 30,000 Individuals&lt;br/&gt;&lt;br/&gt;Bennett College suffered a network intrusion in late 2025 that exposed the sensitive personal and financial data of 30,000 individuals. The college isolated its systems and is providing credit monitoring services to the affected by the breach.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/bennett-college-reports-data-breach-affecting-30000-individuals-i-b-4-9-r/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/bennett-college-reports-data-breach-affecting-30000-individuals-i-b-4-9-r/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-06T12:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqstv3hytzxd2hxe90ascvyq6hza8jlws88vnhedl8wgjllkfrrynyszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qs3m8f4</id>
    
      <title type="html">Plex Urges Immediate Updates After Patching Multiple Undisclosed ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqstv3hytzxd2hxe90ascvyq6hza8jlws88vnhedl8wgjllkfrrynyszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qs3m8f4" />
    <content type="html">
      Plex Urges Immediate Updates After Patching Multiple Undisclosed Security Flaws&lt;br/&gt;&lt;br/&gt;Plex has issued an urgent security update for Plex Media Server and Plex Desktop to address multiple undisclosed vulnerabilities. The company is urging for immediate updates across all platforms, including manual installations for NAS devices.&lt;br/&gt;&lt;br/&gt;**Update your Plex server and desktop app to the latest version right now. Plex rarely emails users about security, so this update likely fixes a very serious problem that could let hackers into your home network.**&lt;br/&gt;#cybersecurity #infosec #advisory #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/plex-urges-immediate-updates-after-patching-multiple-undisclosed-security-flaws-3-l-y-8-k/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/plex-urges-immediate-updates-after-patching-multiple-undisclosed-security-flaws-3-l-y-8-k/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-06T11:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqswgyv7h87jvh8ykgcynkpamdhq90kzah0ke9s4ezrx2tfxtw404vszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qndtvjr</id>
    
      <title type="html">Postgres MCP Pro Restricted-Mode Bypass Allows Arbitrary Host ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqswgyv7h87jvh8ykgcynkpamdhq90kzah0ke9s4ezrx2tfxtw404vszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qndtvjr" />
    <content type="html">
      Postgres MCP Pro Restricted-Mode Bypass Allows Arbitrary Host File Disclosure&lt;br/&gt;&lt;br/&gt;Postgres MCP Pro version 0.3.0 contains a critical restricted-mode bypass (CVE-2026-85620) that allows unauthenticated attackers to read arbitrary files from the database host. The flaw is caused by an incomplete SQL validation in the Abstract Syntax Tree parser, enabling the execution of dangerous functions through FROM clauses.&lt;br/&gt;&lt;br/&gt;**If you&amp;#39;re running Crystal DBA&amp;#39;s Postgres MCP Pro (version 0.3.0 or earlier), don&amp;#39;t rely on its restricted mode to keep your AI agents in check. It can be bypassed to read files off your server, including passwords and private keys. Change the database account the MCP server uses to a least-privilege role, strip its superuser status and `pg_read_server_files` permission, and keep it off the internet until an official fix ships.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/postgres-mcp-pro-restricted-mode-bypass-allows-arbitrary-host-file-disclosure-t-6-8-7-8/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/postgres-mcp-pro-restricted-mode-bypass-allows-arbitrary-host-file-disclosure-t-6-8-7-8/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-06T10:01:30Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsyc4t9pet6gdk7trw68dhrakzu7vffddvdttjws0v59vzn2gftxjszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qpsz446</id>
    
      <title type="html">Manning Regional Healthcare Center Reports Data Breach Affecting ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsyc4t9pet6gdk7trw68dhrakzu7vffddvdttjws0v59vzn2gftxjszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qpsz446" />
    <content type="html">
      Manning Regional Healthcare Center Reports Data Breach Affecting Patient Information&lt;br/&gt;&lt;br/&gt;Manning Regional Healthcare Center reported a data breach to federal authorities after unauthorized access compromised the protected health information of 746 individuals. The breach involved sensitive patient data including medical records and insurance information.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/manning-regional-healthcare-center-reports-data-breach-affecting-patient-information-i-l-q-p-1/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/manning-regional-healthcare-center-reports-data-breach-affecting-patient-information-i-l-q-p-1/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-06T09:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs8zvh7qc7dgphq6tzf2gss0lxqfrc8jnmkvq3mjerwhn5e6grmc7gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q2sdg4q</id>
    
      <title type="html">LHC Group Vishing Attack Exposes Protected Health Information LHC ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs8zvh7qc7dgphq6tzf2gss0lxqfrc8jnmkvq3mjerwhn5e6grmc7gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q2sdg4q" />
    <content type="html">
      LHC Group Vishing Attack Exposes Protected Health Information&lt;br/&gt;&lt;br/&gt;LHC Group suffered a data breach after an employee fell victim to a voice phishing attack, allowing the hackers to steal credentials and access patient files on a third-party platform. The breach exposed protected health information for thousands of individuals, including over 16,000 residents in Texas.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/lhc-group-vishing-attack-exposes-protected-health-information-n-w-d-k-x/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/lhc-group-vishing-attack-exposes-protected-health-information-n-w-d-k-x/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-05T20:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqszqw7a9m4fztuqkwrhlr7t25t6078e27way756df9sd933s8x3z7szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qv4yuy2</id>
    
      <title type="html">Resource Center of Dallas Reports Data Breach Affecting 12,490 ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqszqw7a9m4fztuqkwrhlr7t25t6078e27way756df9sd933s8x3z7szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qv4yuy2" />
    <content type="html">
      Resource Center of Dallas Reports Data Breach Affecting 12,490 Individuals&lt;br/&gt;&lt;br/&gt;The Resource Center of Dallas reported a data breach affecting 12,490 individuals after attackers accessed its network in February 2026.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/resource-center-of-dallas-reports-data-breach-affecting-12490-individuals-3-s-s-k-c/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/resource-center-of-dallas-reports-data-breach-affecting-12490-individuals-3-s-s-k-c/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-05T09:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqszzmv2ex3e4dja3wrtw6agcrhx28y0tfgfy03e0myz0a94k2x26cqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q706hks</id>
    
      <title type="html">Google Patches Actively Exploited V8 Zero-Day in Chrome Update ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqszzmv2ex3e4dja3wrtw6agcrhx28y0tfgfy03e0myz0a94k2x26cqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q706hks" />
    <content type="html">
      Google Patches Actively Exploited V8 Zero-Day in Chrome Update&lt;br/&gt;&lt;br/&gt;Google released security updates for Chrome to patch 12 vulnerabilities, including an actively exploited V8 zero-day (CVE-2026-85046) that allows remote code execution.&lt;br/&gt;&lt;br/&gt;**This one is urgent, because Chrome is being actively attacked. Update your Chrome and Chromium based browsers ASAP. This is not a time to delay the patch. All your tabs reopen.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/google-patches-actively-exploited-v8-zero-day-in-chrome-update-v-d-c-m-k/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/google-patches-actively-exploited-v8-zero-day-in-chrome-update-v-d-c-m-k/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-05T08:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsyz24pn2edjq7h5t3tgefeul3hhvtzw35jf9ahun4l6kzfxaaa64qzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8w7nle</id>
    
      <title type="html">City of Roanoke Discloses Data Breach Three Months After ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsyz24pn2edjq7h5t3tgefeul3hhvtzw35jf9ahun4l6kzfxaaa64qzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8w7nle" />
    <content type="html">
      City of Roanoke Discloses Data Breach Three Months After Unauthorized Network Access&lt;br/&gt;&lt;br/&gt;The City of Roanoke disclosed a data breach three months after an unidentified actor accessed sensitive departmental data, including Social Security and passport numbers. The city has engaged security experts and the FBI to investigate the five-day intrusion and strengthen its network architecture.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/city-of-roanoke-discloses-data-breach-three-months-after-unauthorized-network-access-l-6-3-s-r/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/city-of-roanoke-discloses-data-breach-three-months-after-unauthorized-network-access-l-6-3-s-r/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-04T20:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsx9jxz5nxsug4wxyz2zgm59p463rvnj5pzfh30jp7x0xg03srg0ygzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qn726ah</id>
    
      <title type="html">HPE Patches Critical Remote Code Execution Flaw in ArubaOS-CX ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsx9jxz5nxsug4wxyz2zgm59p463rvnj5pzfh30jp7x0xg03srg0ygzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qn726ah" />
    <content type="html">
      HPE Patches Critical Remote Code Execution Flaw in ArubaOS-CX Switches&lt;br/&gt;&lt;br/&gt;HPE patched 34 vulnerabilities in ArubaOS-CX, including a critical buffer overflow (CVE-2026-73749) that allows unauthenticated remote code execution. The update also addresses multiple high-severity flaws enabling command injection, authentication bypass, and unauthorized file writes.&lt;br/&gt;&lt;br/&gt;**If you run HPE Aruba CX switches (10000, 6400, 8325, 6000 series), first make sure their management interfaces are not reachable from the internet and only accessible from a dedicated management VLAN on trusted networks. Then update the switches to AOS-CX 10.18.1002, 10.17.1030, 10.16.1060, 10.13.1190, or 10.10.1181, and change any factory-set passwords while you&amp;#39;re there.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/hpe-patches-critical-remote-code-execution-flaw-in-arubaos-cx-switches-7-8-k-r-6/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/hpe-patches-critical-remote-code-execution-flaw-in-arubaos-cx-switches-7-8-k-r-6/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-04T10:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs0qzfcrdq2swkwmt3rgzuanr8ynrmgju2rn52pfxamavh5tue72eczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qex4c5t</id>
    
      <title type="html">Attackers Exploit Critical Sangoma Switchvox Flaw to Deploy ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs0qzfcrdq2swkwmt3rgzuanr8ynrmgju2rn52pfxamavh5tue72eczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qex4c5t" />
    <content type="html">
      Attackers Exploit Critical Sangoma Switchvox Flaw to Deploy Reverse Shells&lt;br/&gt;&lt;br/&gt;Sangoma patched 12 vulnerabilities in Switchvox, including a critical unauthenticated SQL injection (CVE-2026-9586) that attackers are currently using to gain remote code execution and steal authentication keys.&lt;br/&gt;&lt;br/&gt;**If you run Sangoma Switchvox, first make sure it isn&amp;#39;t reachable from the internet and can only be accessed from trusted networks, then update immediately to version 8.4.0.2. Anything on version 8.3 or earlier is being actively attacked. Because attackers have been stealing keys, tokens and user data, also check /var/log/switchvox/db-quirks.log for signs of SQL injection, block the IP 176.65.148.184, and reset passwords and signing keys if you find anything suspicious.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/attackers-exploit-critical-sangoma-switchvox-flaw-to-deploy-reverse-shells-b-w-f-y-c/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/attackers-exploit-critical-sangoma-switchvox-flaw-to-deploy-reverse-shells-b-w-f-y-c/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-03T08:01:29Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsqdx4ywfkfdeu9em0ytym5auedhnn9ex5vuu85kygseclrrr6vpfczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qxvvr4d</id>
    
      <title type="html">Nephrology Associates Data Breach Exposes Sensitive Health ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsqdx4ywfkfdeu9em0ytym5auedhnn9ex5vuu85kygseclrrr6vpfczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qxvvr4d" />
    <content type="html">
      Nephrology Associates Data Breach Exposes Sensitive Health Records of 24,000 Patients&lt;br/&gt;&lt;br/&gt;Nephrology Associates, M.D., P.A. suffered a data breach affecting over 24,000 patients after unauthorized actors maintained network access for three months. The incident, claimed by multiple ransomware groups, resulted in the theft of Social Security numbers and sensitive medical treatment information.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/nephrology-associates-data-breach-exposes-sensitive-health-records-of-24000-patients-q-h-u-6-5/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/nephrology-associates-data-breach-exposes-sensitive-health-records-of-24000-patients-q-h-u-6-5/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-02T13:01:31Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsq3nts3xvn2mv0he8vdhn57ghs9rxwt55pezmhp2wgwt573y7qalgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qtw8y66</id>
    
      <title type="html">Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsq3nts3xvn2mv0he8vdhn57ghs9rxwt55pezmhp2wgwt573y7qalgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qtw8y66" />
    <content type="html">
      Attackers Exploit Critical JFrog Artifactory Flaw to Mint Admin Tokens&lt;br/&gt;&lt;br/&gt;JFrog Artifactory is facing active exploitation of a critical authentication bypass (CVE-2026-82329) that allows unauthenticated attackers to mint administrator tokens and compromise software supply chains.&lt;br/&gt;&lt;br/&gt;**If you run self-managed JFrog Artifactory, update to version 7.161.20 ASAP. Attackers are already exploiting this flaw to take full admin control. Primary systems at risk are internet facing self-hosted Artifactory instances. Cloud-hosted instances managed by JFrog are not affected.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/attackers-exploit-critical-jfrog-artifactory-flaw-to-mint-admin-tokens-f-g-f-4-3/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/attackers-exploit-critical-jfrog-artifactory-flaw-to-mint-admin-tokens-f-g-f-4-3/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-02T08:01:30Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsxp3xl7jm4n3czjsd3an64qrvujrthnk4tcq66rmzztn9ylsdfwvgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qpw2ckl</id>
    
      <title type="html">State of (in)security - Week 35, 2026 Week 35 of 2026 saw 21 ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsxp3xl7jm4n3czjsd3an64qrvujrthnk4tcq66rmzztn9ylsdfwvgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qpw2ckl" />
    <content type="html">
      State of (in)security - Week 35, 2026&lt;br/&gt;&lt;br/&gt;Week 35 of 2026 saw 21 advisories and 20 incidents, with breaches affecting roughly 21.7 million people. The largest incident is being ShinyHunters&amp;#39; leak of 12.9 million Carhartt accounts, part of a broader ShinyHunters campaign also hitting McKesson and Baxter. Attacks were driven mainly by unauthorized access, ransomware, phishing, and third-party compromise (mostly in manufacturing, government, and healthcare). Critical vulnerabilities were patched in widely used software like Chrome, Next.js, Apache Tomcat, ServiceNow, Keycloak, and several WordPress plugins.&lt;br/&gt;&lt;br/&gt;**Update Chrome/Chromium browsers and start patching WordPress plugins. This week is heavy on WordPress issues.**&lt;br/&gt;#cybersecurity #infosec #knowledge #weeklyreport&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/state-of-in-security-week-35-2026-z-p-t-j-x/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/state-of-in-security-week-35-2026-z-p-t-j-x/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-09-01T12:01:41Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsrememu3q3x0edxxsfcyzktnnr9t0s60c3mjjfveyxcek8jm0uf5szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qckzc9h</id>
    
      <title type="html">ServiceNow Patches Three Critical 10.0 Severity Flaws in AI ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsrememu3q3x0edxxsfcyzktnnr9t0s60c3mjjfveyxcek8jm0uf5szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qckzc9h" />
    <content type="html">
      ServiceNow Patches Three Critical 10.0 Severity Flaws in AI Platform&lt;br/&gt;&lt;br/&gt;ServiceNow released emergency patches for three critical vulnerabilities (CVSS 10.0) and one high-severity flaw in its AI Platform that allow unauthenticated remote code execution and SQL injection. These flaws put sensitive enterprise data and connected corporate systems at risk of full takeover.&lt;br/&gt;&lt;br/&gt;**If you self-host ServiceNow, apply the vendor patches ASAP: Xanadu Patch 11, Yokohama Patch 12/13, or Zurich Patch 7-12. Cloud-hosted instances are already fixed. Then check your logs for unusual GraphQL requests or unexpected admin account changes. If possible limit which ServiceNow interfaces are reachable from the internet.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/servicenow-patches-three-critical-10-0-severity-flaws-in-ai-platform-l-6-r-p-l/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/servicenow-patches-three-critical-10-0-severity-flaws-in-ai-platform-l-6-r-p-l/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-29T08:01:41Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsqke4jhjr3w2gjq0aq4dksjhw0nmdn44qt70edva8rttafvwvd3vgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q2q4t32</id>
    
      <title type="html">Manchester Airports Group Cyberattack Exposes Data of 8.7 Million ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsqke4jhjr3w2gjq0aq4dksjhw0nmdn44qt70edva8rttafvwvd3vgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q2q4t32" />
    <content type="html">
      Manchester Airports Group Cyberattack Exposes Data of 8.7 Million Customers&lt;br/&gt;&lt;br/&gt;Manchester Airports Group suffered a ransomware attack that exposed the personal data of 8.7 million customers across three major UK airports. The breach affected booking and Wi-Fi registration systems but did not disrupt flight operations or compromise payment information.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/manchester-airports-group-cyberattack-exposes-data-of-8-7-million-customers-6-h-o-9-3/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/manchester-airports-group-cyberattack-exposes-data-of-8-7-million-customers-6-h-o-9-3/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-28T14:01:41Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsvj0g63k2emldkzddf9stzlmarm2e7h4qzyupqzrkl0eymt92qhgqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8nt7j7</id>
    
      <title type="html">CISA Reports Actively Exploited Gitea Critical RCE Vulnerability ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsvj0g63k2emldkzddf9stzlmarm2e7h4qzyupqzrkl0eymt92qhgqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8nt7j7" />
    <content type="html">
      CISA Reports Actively Exploited Gitea Critical RCE Vulnerability&lt;br/&gt;&lt;br/&gt;Gitea patched a critical remote code execution vulnerability (CVE-2026-60004) that attackers are actively exploiting to install crypto-miners on self-hosted instances. The flaw allows users with write access to inject malicious Git hooks via the diffpatch API, potentially exposing database credentials and system secrets.&lt;br/&gt;&lt;br/&gt;**Update self-hosted Gitea instances to version 1.27.1 immediately. Now it&amp;#39;s urgent, since hackers are actively attacking you. If you can&amp;#39;t patch right away, disable public registration to prevent new outsiders from obtaining repository write access. This does not protect against existing users who already have the required permissions.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/cisa-reports-actively-exploited-gitea-critical-rce-vulnerability-2-1-9-j-5/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/cisa-reports-actively-exploited-gitea-critical-rce-vulnerability-2-1-9-j-5/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-26T17:01:20Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsy0u6fqj9mjgls4efy6zd7v8c0eah7nuth7jtyguh8fmtsgp88rtszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q92yn8m</id>
    
      <title type="html">Zscaler Patches Critical Unauthenticated RCE in Client Connector ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsy0u6fqj9mjgls4efy6zd7v8c0eah7nuth7jtyguh8fmtsgp88rtszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q92yn8m" />
    <content type="html">
      Zscaler Patches Critical Unauthenticated RCE in Client Connector for Windows&lt;br/&gt;&lt;br/&gt;Zscaler fixed a critical vulnerability (CVE-2026-59568) that allowed unauthenticated remote code execution and privilege escalation as well as three other flaws in its Client Connector for Windows&lt;br/&gt;&lt;br/&gt;**If you use Zscaler Client Connector on Windows, update every endpoint to the latest patched version. Anything released before June 2026 (including 4.7.0.364, 4.8.0.232/284/291, and 4.9.0.448/455) is at risk of remote takeover. Don&amp;#39;t assume your automated update policy reached every machine; manually verify the version on all devices. Check endpoint logs for odd processes launched by Zscaler components or unexpected new listening services.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/zscaler-patches-critical-unauthenticated-rce-in-client-connector-for-windows-x-x-2-j-a/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/zscaler-patches-critical-unauthenticated-rce-in-client-connector-for-windows-x-x-2-j-a/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-26T10:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsylkg5auyx65sra3sc9cdvz8g0r94j2fxd6twg8wztvcnyjdpvxfczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q863yft</id>
    
      <title type="html">Critical Keycloak Password Reset Flaw Allows Unauthenticated ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsylkg5auyx65sra3sc9cdvz8g0r94j2fxd6twg8wztvcnyjdpvxfczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q863yft" />
    <content type="html">
      Critical Keycloak Password Reset Flaw Allows Unauthenticated Account Takeover&lt;br/&gt;&lt;br/&gt;Red Hat and Keycloak patched a critical vulnerability (CVE-2026-18963) that allows unauthenticated attackers to bypass email verification and take over any account via the password reset flow. The update also addresses over 20 other security flaws, including account-linking bypasses and administrative permission leaks.&lt;br/&gt;&lt;br/&gt;**If you run Keycloak or Red Hat Build of Keycloak, update immediately to Keycloak 26.7.2 or RHBK 26.4.15 / 26.6.6 since the older versions let anyone reset the password of any account, including admins. If you cannot patch right away, turn off the &amp;#34;Forgot password&amp;#34; option in every realm (Realm settings → Login → Forgot password) until the update is applied.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/critical-keycloak-password-reset-flaw-allows-unauthenticated-account-takeover-p-n-m-j-1/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/critical-keycloak-password-reset-flaw-allows-unauthenticated-account-takeover-p-n-m-j-1/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-24T15:01:16Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsz9jh6zyw79fz33s4w2pcnwk8seg856w0c04647s8dschv7yj4fpczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q59drzc</id>
    
      <title type="html">Mon Health Medical Center Discloses Phishing Breach Affecting ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsz9jh6zyw79fz33s4w2pcnwk8seg856w0c04647s8dschv7yj4fpczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q59drzc" />
    <content type="html">
      Mon Health Medical Center Discloses Phishing Breach Affecting Patient Data&lt;br/&gt;&lt;br/&gt;Mon Health Medical Center reported a data breach affecting 2,173 individuals after a phishing attack allowed unauthorized access to internal email mailboxes. The hospital is providing two years of credit monitoring and has notified federal authorities.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/mon-health-medical-center-discloses-phishing-breach-affecting-patient-data-0-1-l-j-f/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/mon-health-medical-center-discloses-phishing-breach-affecting-patient-data-0-1-l-j-f/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-21T17:01:16Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqstskt3uvrjr9rttacvyapyqs5yyyajhutpg2q2jucxn7yeps65edszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q6x7xkq</id>
    
      <title type="html">Citrix NetScaler Flaws Under Active Attack Following Exploit ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqstskt3uvrjr9rttacvyapyqs5yyyajhutpg2q2jucxn7yeps65edszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q6x7xkq" />
    <content type="html">
      Citrix NetScaler Flaws Under Active Attack Following Exploit Release&lt;br/&gt;&lt;br/&gt;Citrix NetScaler ADC and Gateway appliances are being exploited via a critical SAML memory overflow vulnerability (CVE-2026-8452) that allows pre-authentication remote code execution. Attackers are targeting perimeter devices to gain unauthorized access to internal corporate networks following the release of public proof-of-concept code.&lt;br/&gt;&lt;br/&gt;**If you run Citrix NetScaler ADC or Gateway, patch immediately to version 14.1-72.61 or 13.1-63.18 (or the matching FIPS builds). Attackers are already exploiting these appliances and a public exploit PoC is available. If you can&amp;#39;t patch right away, restrict the management interface to trusted internal networks only, review your SAML configuration, and check logs for unexpected admin logins or config changes.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/citrix-netscaler-flaws-under-active-attack-following-exploit-release-e-x-8-8-4/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/citrix-netscaler-flaws-under-active-attack-following-exploit-release-e-x-8-8-4/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-21T13:01:26Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsw94934fwnxlqvqx77r7tn6pmejse9mmpdg9zt5sha256sdzvh7tqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qrexxf4</id>
    
      <title type="html">Critical Zimbra RCE Vulnerability Exploited in Global Attacks ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsw94934fwnxlqvqx77r7tn6pmejse9mmpdg9zt5sha256sdzvh7tqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qrexxf4" />
    <content type="html">
      Critical Zimbra RCE Vulnerability Exploited in Global Attacks&lt;br/&gt;&lt;br/&gt;Zimbra patched nine vulnerabilities in its Collaboration Suite, including a critical RCE flaw (CVE-2026-73570) that attackers are currently exploiting to take control of mail servers. Organizations should update to version 10.1.20 and check logs for signs of compromise.&lt;br/&gt;&lt;br/&gt;**If you run Zimbra Collaboration Suite, update to version 10.1.20 ASAP. Attackers are already exploiting this to take over mail servers, and everything older is vulnerable. Because this flaw is being actively exploited, also check for signs of breach: look for unexpected files in `/opt/zimbra/jetty/webapps/` and `/tmp/`, and review `/var/log/zimbra.log` for services restarting on their own.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/critical-zimbra-rce-vulnerability-exploited-in-global-attacks-p-1-4-k-y/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/critical-zimbra-rce-vulnerability-exploited-in-global-attacks-p-1-4-k-y/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-21T09:01:12Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs9t9s2gtnfujjzmpkacn70cvwalgzqvpdv8stupfddr90twej4n3gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qcr7wa7</id>
    
      <title type="html">BitBox Patches Firmware Flaws BitBox released the Dixence update ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs9t9s2gtnfujjzmpkacn70cvwalgzqvpdv8stupfddr90twej4n3gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qcr7wa7" />
    <content type="html">
      BitBox Patches Firmware Flaws&lt;br/&gt;&lt;br/&gt;BitBox released the Dixence update to fix three firmware vulnerabilities, including a bootloader flaw and memory corruption, that could allow attackers to steal funds or execute code.&lt;br/&gt;&lt;br/&gt;**If you own a BitBox02 or BitBox02 Nova hardware wallet, update it to firmware 9.26.5 right away using only the official BitBoxApp downloaded from bitbox.swiss, and verify the app&amp;#39;s signature before installing. Never enter your recovery words into any computer or phone, and if you used Silent Payments recently, double-check your funds arrived at the right address before sending more.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/bitbox-patches-firmware-flaws-g-w-8-m-a/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/bitbox-patches-firmware-flaws-g-w-8-m-a/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-20T09:01:03Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqst0r2w6jj23puj7qldlpwmcjl2m4s24twfqnlj0r3kjtx60ntaw9gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qv77q2y</id>
    
      <title type="html">Ray Framework Remote Code Execution Vulnerability Under Active ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqst0r2w6jj23puj7qldlpwmcjl2m4s24twfqnlj0r3kjtx60ntaw9gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qv77q2y" />
    <content type="html">
      Ray Framework Remote Code Execution Vulnerability Under Active Exploitation&lt;br/&gt;&lt;br/&gt;CISA warned that attackers are exploiting a remote code execution vulnerability in the Ray framework to target machine learning developers. The flaw allows attackers to bypass browser security checks and run arbitrary commands on developer machines and internal networks.&lt;br/&gt;&lt;br/&gt;**If you use the Ray framework, update it to version 2.52.0 or later ASAP. Attackers are actively exploiting CVE-2025-62593 to run commands on developer machines. Also make sure Ray is never reachable from the internet and only accessible from trusted networks, and watch for unusual traffic between developer laptops and your internal compute clusters.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/ray-framework-remote-code-execution-vulnerability-under-active-exploitation-y-u-w-h-s/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/ray-framework-remote-code-execution-vulnerability-under-active-exploitation-y-u-w-h-s/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-20T08:01:03Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs2484wa5yd3n4ry2hyv3l4afc92rmgcuuq3gpw6vpvvtc8xyp9kygzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qmaapk9</id>
    
      <title type="html">Cameron Regional Medical Center Disclosed Ransomware Attack ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs2484wa5yd3n4ry2hyv3l4afc92rmgcuuq3gpw6vpvvtc8xyp9kygzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qmaapk9" />
    <content type="html">
      Cameron Regional Medical Center Disclosed Ransomware Attack&lt;br/&gt;&lt;br/&gt;Cameron Regional Medical Center disclosed a ransomware attack involving potential unauthorized access to sensitive patient information. The Anubis ransomware group claimed responsibility and alleged it stole patient and employee data. CRMC continues to investigate the scope of the incident.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/cameron-regional-medical-center-disclosed-ransomware-attack-3-1-b-n-p/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/cameron-regional-medical-center-disclosed-ransomware-attack-3-1-b-n-p/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-19T14:01:23Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsws92n667l877h96fus3w84cn0chzcm27xet2h05g957uqdtex4agzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qfg9t4f</id>
    
      <title type="html">Attackers Exploit a Critical MLflow Vulnerability Attackers are ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsws92n667l877h96fus3w84cn0chzcm27xet2h05g957uqdtex4agzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qfg9t4f" />
    <content type="html">
      Attackers Exploit a Critical MLflow Vulnerability&lt;br/&gt;&lt;br/&gt;Attackers are actively exploiting a critical flaw in MLflow (CVE-2026-64849) to steal cloud credentials and gain remote code execution.&lt;br/&gt;&lt;br/&gt;**If you run MLflow, update it to version 3.15.0 or later ASAP, and make sure the server is not reachable from the internet. Then check your audit logs for any odd requests to cloud metadata services. If you see any (or aren&amp;#39;t sure), rotate your cloud credentials and keys as a precaution.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/attackers-exploit-a-critical-mlflow-vulnerability-3-u-3-k-6/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/attackers-exploit-a-critical-mlflow-vulnerability-3-u-3-k-6/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-19T08:01:23Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsxfjwx3esn6hczql32fjykh9j468j3v7ljnl5qtkn0ezmden5umjszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q9q66rq</id>
    
      <title type="html">GitLab Issues Emergency Patch for Critical GraphQL Flaw Allowing ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsxfjwx3esn6hczql32fjykh9j468j3v7ljnl5qtkn0ezmden5umjszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q9q66rq" />
    <content type="html">
      GitLab Issues Emergency Patch for Critical GraphQL Flaw Allowing Remote Project Deletion&lt;br/&gt;&lt;br/&gt;GitLab issued an emergency security update to fix a critical GraphQL code injection vulnerability (CVE-2026-19478) that allows unauthenticated attackers to remotely delete or modify public projects and user data.&lt;br/&gt;&lt;br/&gt;**If you run a self-managed GitLab server (version 18.2 through 19.2.3), update it ASAP to 19.2.4, 19.1.6, 19.0.8, or 18.11.11. The patch is quick and won&amp;#39;t take your system offline. Before you patch, check your logs for unusual GraphQL activity so you know nobody has already deleted or altered your projects or user data.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/gitlab-issues-emergency-patch-for-critical-graphql-flaw-allowing-remote-project-deletion-k-u-c-h-x/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/gitlab-issues-emergency-patch-for-critical-graphql-flaw-allowing-remote-project-deletion-k-u-c-h-x/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-18T11:01:46Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqszlt76e8kuyxwpe5rl9rq9llp092w80zdxcr0vcdfqjpk6pxejj7gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qa6zdcf</id>
    
      <title type="html">Terry J. Dubrow Plastic Surgery Practice Reports Long-Term Data ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqszlt76e8kuyxwpe5rl9rq9llp092w80zdxcr0vcdfqjpk6pxejj7gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qa6zdcf" />
    <content type="html">
      Terry J. Dubrow Plastic Surgery Practice Reports Long-Term Data Breach&lt;br/&gt;&lt;br/&gt;Terry J. Dubrow, MD, A Medical Corporation reports a data breach where an attacker accessed patient records including Social Security numbers and medical images over an eighteen-month period. The practice has notified the FBI and is offering identity protection services to affected individuals.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/terry-j-dubrow-plastic-surgery-practice-reports-long-term-data-breach-7-3-p-d-h/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/terry-j-dubrow-plastic-surgery-practice-reports-long-term-data-breach-7-3-p-d-h/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-17T20:01:45Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsygzlnr23q0enl6z5xmd79cr3gwhcv6qa80cg5xz099zs7jqgnnhczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qkj6d66</id>
    
      <title type="html">State of (in)security - Week 33, 2026 During week 33 of 2026 ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsygzlnr23q0enl6z5xmd79cr3gwhcv6qa80cg5xz099zs7jqgnnhczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qkj6d66" />
    <content type="html">
      State of (in)security - Week 33, 2026&lt;br/&gt;&lt;br/&gt;During week 33 of 2026 (Aug. 10–17), there were 9 advisory/vulnerability events and 42 incidents affecting roughly 39.5 million people, a sharp rise from the prior week. Unauthorized access, ransomware/malware, and third-party compromises were leading causes, and healthcare, government, and IT hit hardest. Major items included Poland&amp;#39;s medical data breach affecting 19 million citizens, actively exploited flaws in Magento, VMware vCenter, SharePoint, GeoServer and SAP, and large patch releases from Microsoft (421 fixes), SAP, Siemens, Adobe and Zoom.&lt;br/&gt;&lt;br/&gt;**Update your Mac and Zoom today, both have flaws attackers are already using to take over machines with no password and no clicks from you. If you run servers, patch anything internet-facing first: vCenter, SharePoint, Adobe Commerce/Magento, and SAP Commerce Cloud are all under active attack right now. Then push the regular Windows update.**&lt;br/&gt;#cybersecurity #infosec #knowledge #weeklyreport&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/state-of-in-security-week-33-2026-v-m-1-n-l/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/state-of-in-security-week-33-2026-v-m-1-n-l/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-17T19:01:46Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsfjqhrwjw0zqej4upgjhlywa5fgmare0nunxnarjwew4jvdwz5ntqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qvm4wrj</id>
    
      <title type="html">Shell Investigates 89 GB Data Theft Claim by Cl0p Ransomware ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsfjqhrwjw0zqej4upgjhlywa5fgmare0nunxnarjwew4jvdwz5ntqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qvm4wrj" />
    <content type="html">
      Shell Investigates 89 GB Data Theft Claim by Cl0p Ransomware Group&lt;br/&gt;&lt;br/&gt;Shell is investigating a security incident after the Cl0p ransomware group claimed to have stolen 89 GB of internal company data. The incident appears connected to a wider campaign targeting PTC Windchill and FlexPLM systems.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/shell-investigates-89-gb-data-theft-claim-by-cl0p-ransomware-group-3-m-n-0-x/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/shell-investigates-89-gb-data-theft-claim-by-cl0p-ransomware-group-3-m-n-0-x/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-17T18:01:46Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs0fhq0w79628h39h6xfmhy7k5s0pc0ya0np6nwe4xxwjys8vpreqczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q9yjsd6</id>
    
      <title type="html">Ollie’s Place Investigates Ransomware Attack on Point-of-Sale ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs0fhq0w79628h39h6xfmhy7k5s0pc0ya0np6nwe4xxwjys8vpreqczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q9yjsd6" />
    <content type="html">
      Ollie’s Place Investigates Ransomware Attack on Point-of-Sale System Claimed by The Gentlemen&lt;br/&gt;&lt;br/&gt;Australian kidswear retailer Ollie’s Place is investigating a ransomware attack after a point-of-sale system was rendered unusable. The Gentlemen group listed the company on its dark web leak site and claimed responsibility for the attack.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/ollies-place-targeted-in-ransomware-attack-claimed-by-the-gentlemen-l-1-x-2-f/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/ollies-place-targeted-in-ransomware-attack-claimed-by-the-gentlemen-l-1-x-2-f/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-17T10:01:48Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsraxe22qzccxtnvkphwmrjrfw46qnpk575r8zjqskzf3axmrh2j2gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qn3759f</id>
    
      <title type="html">Apple Patches Actively Exploited macOS Screen Sharing ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsraxe22qzccxtnvkphwmrjrfw46qnpk575r8zjqskzf3axmrh2j2gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qn3759f" />
    <content type="html">
      Apple Patches Actively Exploited macOS Screen Sharing Vulnerability Used in Crypto Mining Attacks&lt;br/&gt;&lt;br/&gt;Apple patched a macOS Screen Sharing vulnerability (CVE-2026-65400) that allows remote attackers to bypass authentication and gain root access. Attackers are actively exploiting the flaw to install Monero crypto miners on systems with port 5900 exposed to the internet.&lt;br/&gt;&lt;br/&gt;**If you use a Mac, update macOS now to Tahoe 26.6.1, Sequoia 15.7.9, or Sonoma 14.8.9 to fix CVE-2026-65400, which attackers are already using to take full control of Macs without a password. Also turn off Screen Sharing when you don&amp;#39;t need it and make sure port 5900 is not reachable from the internet.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/apple-patches-actively-exploited-macos-screen-sharing-vulnerability-used-in-crypto-mining-attacks-n-5-j-v-1/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/apple-patches-actively-exploited-macos-screen-sharing-vulnerability-used-in-crypto-mining-attacks-n-5-j-v-1/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-16T11:01:08Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsq9qy45qhxdrtv9sa3tc4yc3rnpsjr67ugcxh234rr5pzw8ylglzczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93quyes4n</id>
    
      <title type="html">London Metropolitan Police Accidentally Exposes Email Addresses ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsq9qy45qhxdrtv9sa3tc4yc3rnpsjr67ugcxh234rr5pzw8ylglzczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93quyes4n" />
    <content type="html">
      London Metropolitan Police Accidentally Exposes Email Addresses of 143 Al-Fayed Abuse Victims&lt;br/&gt;&lt;br/&gt;The London Metropolitan Police accidentally disclosed the email addresses of 143 sexual abuse complainants by failing to use the BCC function in a monthly update email. The force notified the Information Commissioner&amp;#39;s Office and is reviewing its communication processes to prevent future privacy breaches.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/london-metropolitan-police-accidentally-exposes-email-addresses-of-143-al-fayed-abuse-victims-8-v-2-b-6/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/london-metropolitan-police-accidentally-exposes-email-addresses-of-143-al-fayed-abuse-victims-8-v-2-b-6/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-16T08:01:08Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs9a5a8kt3z6qzf5eyn6gfwgfhuzswjuwtvff3c97j3lw0ny7yp0xczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q0p9u4m</id>
    
      <title type="html">Suspicious Activity Disrupts Douglas County Sheriff&amp;#39;s Office ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs9a5a8kt3z6qzf5eyn6gfwgfhuzswjuwtvff3c97j3lw0ny7yp0xczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q0p9u4m" />
    <content type="html">
      Suspicious Activity Disrupts Douglas County Sheriff&amp;#39;s Office Computer Systems&lt;br/&gt;&lt;br/&gt;The Douglas County Sheriff&amp;#39;s Office in Kansas is investigating suspicious activity that forced public-facing systems, including jail booking logs, offline. Emergency services are functional and forensic teams work to determine the scope of the potential breach.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/suspicious-activity-disrupts-douglas-county-sheriff-s-office-computer-systems-8-n-9-k-r/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/suspicious-activity-disrupts-douglas-county-sheriff-s-office-computer-systems-8-n-9-k-r/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-15T16:01:09Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs0lfz2sh9krdzgjwywn7gw5wwsg99wa5v5ycpqzaxqg2dwyamzh8czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qqhaymp</id>
    
      <title type="html">Ransomware Attack Disrupts Critical Facility Systems at Winnipeg ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs0lfz2sh9krdzgjwywn7gw5wwsg99wa5v5ycpqzaxqg2dwyamzh8czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qqhaymp" />
    <content type="html">
      Ransomware Attack Disrupts Critical Facility Systems at Winnipeg Health Sciences Centre&lt;br/&gt;&lt;br/&gt;Health Sciences Centre Winnipeg and Cancer Care Manitoba suffered a ransomware attack on August 10, 2026, that disabled HVAC monitoring and door access systems. Clinical operations are not affected. The hospital is investigating potential unauthorized access to employee personal information.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/ransomware-attack-disrupts-critical-facility-systems-at-winnipeg-health-sciences-centre-o-k-1-8-m/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/ransomware-attack-disrupts-critical-facility-systems-at-winnipeg-health-sciences-centre-o-k-1-8-m/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-15T15:01:37Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsqk0jl84yffrv94684f7jsedwhswfj0ghhmtntdkuwnx5rwp77wjczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q4ak2wu</id>
    
      <title type="html">Optalis Management Solutions Discloses Data Breach Affecting Over ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsqk0jl84yffrv94684f7jsedwhswfj0ghhmtntdkuwnx5rwp77wjczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q4ak2wu" />
    <content type="html">
      Optalis Management Solutions Discloses Data Breach Affecting Over 13,000 Individuals&lt;br/&gt;&lt;br/&gt;Optalis Management Solutions suffered a data breach in April 2025 that exposed the protected health information and financial details of 13,723 individuals. The company completed its investigation in June 2026 and is offering credit monitoring services to those whose Social Security numbers were compromised.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/optalis-management-solutions-discloses-data-breach-affecting-over-13000-individuals-w-l-q-t-l/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/optalis-management-solutions-discloses-data-breach-affecting-over-13000-individuals-w-l-q-t-l/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-14T14:01:36Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsd7zy30t0f7c7d9xz7hfyz7djll0tqg24007wjam57v6ehfur4lngzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qrrgjht</id>
    
      <title type="html">Yes. All that. Plus the ability to change a policy and start ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsd7zy30t0f7c7d9xz7hfyz7djll0tqg24007wjam57v6ehfur4lngzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qrrgjht" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsrf5c027pghnvuft8fd6g59tfafruf224cn50j3k9ahgrlhymz9nglwqvt6&#39;&gt;nevent1q…qvt6&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Yes. All that. &lt;br/&gt;&lt;br/&gt;Plus the ability to change a policy and start charging for &amp;#34;copyright&amp;#34;. &lt;br/&gt;&lt;br/&gt;The AI grifters already showed they won&amp;#39;t bat an eye doing and admitting to actual crimes. &lt;br/&gt;&lt;br/&gt;I&amp;#39;ll let this stand here, and time will tell.
    </content>
    <updated>2026-08-14T12:32:59Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsp626jn7yjjj5q9dggqz53u58hkqs5yhneggrrxs97k6rgg4dg7eczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qn2vht9</id>
    
      <title type="html">Watermarking the theft. Like cattle rustlers branding the stolen ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsp626jn7yjjj5q9dggqz53u58hkqs5yhneggrrxs97k6rgg4dg7eczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qn2vht9" />
    <content type="html">
      Watermarking the theft. &lt;br/&gt;Like cattle rustlers branding the stolen cattle. &lt;br/&gt;Oh, wait. They weren&amp;#39;t given investments....&lt;br/&gt; &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/093/710/063/991/926/original/9d9bcf65da5f891e.png&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2026-08-14T11:54:30Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs8rsm4qf4tpyhj8d2lfm34h3ugytwfq8kcvllpdpeqxsg2fjgvddczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qg3gtft</id>
    
      <title type="html">TeamPCP Supply Chain Attack on LiteLLM Has Exposed Secrets of ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs8rsm4qf4tpyhj8d2lfm34h3ugytwfq8kcvllpdpeqxsg2fjgvddczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qg3gtft" />
    <content type="html">
      TeamPCP Supply Chain Attack on LiteLLM Has Exposed Secrets of 2,500 Organizations&lt;br/&gt;&lt;br/&gt;The TeamPCP threat group executed a massive supply-chain attack against LiteLLM by exploiting a vulnerability in the Trivy scanner to steal PyPI publishing credentials. The breach exposed 195TB of cloud keys, repository tokens, and AI API keys belonging to over 2,500 organizations worldwide.&lt;br/&gt;&lt;br/&gt;**Assume anything you pull from a public registry can turn hostile overnight: pin dependencies and CI actions to an exact verified hash, never let build pipelines install tools &amp;#34;latest&amp;#34; from a package manager, and keep build machines on short-lived, least-privilege credentials so a poisoned package steals little and only briefly. Then rehearse the recovery: know which secrets each pipeline can reach, be able to rotate them all in hours rather than weeks, and watch your build systems for outbound connections and new persistence just as closely as you watch production.**&lt;br/&gt;#cybersecurity #infosec #knowledge #awareness&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/teampcp-supply-chain-attack-on-litellm-has-exposed-secrets-of-2500-organizations-a-x-8-y-c/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/teampcp-supply-chain-attack-on-litellm-has-exposed-secrets-of-2500-organizations-a-x-8-y-c/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-14T08:01:37Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsp73qfcgsguusgzc47qvq3xalml5jvlgav3fswmmwaqpds2farmxczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qtec3s5</id>
    
      <title type="html">Yorkshire&amp;#39;s Brain Tumour Charity Affected by Third-Party ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsp73qfcgsguusgzc47qvq3xalml5jvlgav3fswmmwaqpds2farmxczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qtec3s5" />
    <content type="html">
      Yorkshire&amp;#39;s Brain Tumour Charity Affected by Third-Party Beacon CRM Data Breach&lt;br/&gt;&lt;br/&gt;Yorkshire&amp;#39;s Brain Tumour Charity disclosed a data breach involving third-party service provider Beacon CRM after attackers used compromised credentials to access customer database backups. The incident potentially exposed supporter information, including health and donation data.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/yorkshire-s-brain-tumour-charity-affected-by-third-party-beacon-crm-data-breach-8-w-3-d-u/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/yorkshire-s-brain-tumour-charity-affected-by-third-party-beacon-crm-data-breach-8-w-3-d-u/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-13T20:01:36Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsrrmyrdedfvyv7stwcp8nk9yxrj7f3yfcwwmcg3p7a2qdk8cdc9dqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qxgcwk7</id>
    
      <title type="html">Polish CHP Plant Disrupted Through Private Cellular Network ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsrrmyrdedfvyv7stwcp8nk9yxrj7f3yfcwwmcg3p7a2qdk8cdc9dqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qxgcwk7" />
    <content type="html">
      Polish CHP Plant Disrupted Through Private Cellular Network Attack&lt;br/&gt;&lt;br/&gt;Attackers breached a Polish CHP plant by moving laterally through a private cellular network, shutting down a steam turbine and process-water treatment system. The attack did not disrupt heat or electricity supplies to customers.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/polish-chp-plant-disrupted-through-private-cellular-network-attack-6-l-m-i-d/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/polish-chp-plant-disrupted-through-private-cellular-network-attack-6-l-m-i-d/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-11T17:01:28Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsyk384lvexefsnkhs4h7tgjc2p33pfalh400cl5r43l7dkrwca5rqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qy6ne5m</id>
    
      <title type="html">#AI rules to live by ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsyk384lvexefsnkhs4h7tgjc2p33pfalh400cl5r43l7dkrwca5rqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qy6ne5m" />
    <content type="html">
      #AI rules to live by&lt;br/&gt; &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/076/647/360/723/238/original/462d4933caaee882.png&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2026-08-11T11:31:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqszn06q4fhj4ty83e92hwzmw6xwcut46mjad77s7j2glzgw9a0g3nczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qsmwy2v</id>
    
      <title type="html">Valve Customer Data Exposed by Cyberattack at CEVA Logistics CEVA ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqszn06q4fhj4ty83e92hwzmw6xwcut46mjad77s7j2glzgw9a0g3nczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qsmwy2v" />
    <content type="html">
      Valve Customer Data Exposed by Cyberattack at CEVA Logistics&lt;br/&gt;&lt;br/&gt;CEVA Logistics suffered a cyberattack that allowed hackers to steal shipping information for European Valve Steam hardware. The breach exposed names, addresses, and contact details.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/valve-customer-data-exposed-by-cyberattack-at-ceva-logistics-t-e-9-2-o/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/valve-customer-data-exposed-by-cyberattack-at-ceva-logistics-t-e-9-2-o/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-10T20:01:25Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsytvmkfndcyjscfc5n6eqj08zt732d63sttfy693tlcn5nx2r0m7czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qmss356</id>
    
      <title type="html">Guardian Credit Union Data Breach Exposes Social Security Numbers ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsytvmkfndcyjscfc5n6eqj08zt732d63sttfy693tlcn5nx2r0m7czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qmss356" />
    <content type="html">
      Guardian Credit Union Data Breach Exposes Social Security Numbers and Financial Data&lt;br/&gt;&lt;br/&gt;Guardian Credit Union disclosed a data breach involving Social Security numbers, driver’s license information, and financial account information after detecting suspicious activity. The credit union is offering 24 months of complimentary credit monitoring and identity protection services to affected individuals.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/guardian-credit-union-data-breach-exposes-social-security-numbers-and-financial-data-x-d-w-7-o/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/guardian-credit-union-data-breach-exposes-social-security-numbers-and-financial-data-x-d-w-7-o/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-10T09:01:51Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsxjjr02mexqfgylnv5e6qdjtt8cmxtxfxu79v4ngwka9w0mmfs38szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q9p8jjz</id>
    
      <title type="html">Hacktivists Breach TrueConf Servers to Deploy Trojanized Client ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsxjjr02mexqfgylnv5e6qdjtt8cmxtxfxu79v4ngwka9w0mmfs38szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q9p8jjz" />
    <content type="html">
      Hacktivists Breach TrueConf Servers to Deploy Trojanized Client Backdoors&lt;br/&gt;&lt;br/&gt;TrueConf video conferencing servers were breached by hacktivist group to distribute trojanized client installers containing the PhantomCore and PhantomGraph backdoors. The attack chain uses unauthenticated script execution and sandbox escape vulnerabilities to gain full system control and steal sensitive credentials.&lt;br/&gt;&lt;br/&gt;**If you run TrueConf, update your server right away to version 5.3.9, 5.4.9, or 5.5.5 and make sure every client is on version 8.5.3 or later. Before installing any TrueConf update, check that the installer has a valid digital signature. If your server was running an old version, treat it as compromised and check it for backdoors.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/hacktivists-breach-trueconf-servers-to-deploy-trojanized-client-backdoors-e-j-f-q-g/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/hacktivists-breach-trueconf-servers-to-deploy-trojanized-client-backdoors-e-j-f-q-g/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-09T15:01:07Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs8eagnwgkfzssflpe88hzatha06qt4zz0s348lpyk8z6c0thhm59czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qqh0uz7</id>
    
      <title type="html">What is your recruitment process? ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs8eagnwgkfzssflpe88hzatha06qt4zz0s348lpyk8z6c0thhm59czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qqh0uz7" />
    <content type="html">
      What is your recruitment process?&lt;br/&gt; &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/065/792/382/065/664/original/04ec261fbfb587f5.png&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2026-08-09T13:31:04Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqspvh7gynwaqrxsmjhsp46updtlxhudlj0m285lf32n54gaa92yypgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q6c6meu</id>
    
      <title type="html">Third-Party Breach at ING&amp;#39;s Logistics Partner Exposes ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqspvh7gynwaqrxsmjhsp46updtlxhudlj0m285lf32n54gaa92yypgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q6c6meu" />
    <content type="html">
      Third-Party Breach at ING&amp;#39;s Logistics Partner Exposes Customer Data From ING Punten Orders&lt;br/&gt;&lt;br/&gt;ING has reported a breach at a third-party logistics partner, widely linked in Dutch media to CEVA Logistics. Attackers may have accessed contact details and order data of customers who redeemed ING Punten for physical goods. ING&amp;#39;s own systems, accounts, payment data and credentials remained untouched.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/third-party-breach-at-ing-s-logistics-partner-exposes-customer-data-from-ing-punten-orders-k-p-2-v-5/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/third-party-breach-at-ing-s-logistics-partner-exposes-customer-data-from-ing-punten-orders-k-p-2-v-5/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-09T12:01:07Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsrlzes2mvwpv49uphgpep7s3qt5nqg0kgvk0lf4rj0h2fn630cv0czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8f80kf</id>
    
      <title type="html">Supply Chain Breach at CEVA Logistics Impacts AFC Ajax AFC Ajax ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsrlzes2mvwpv49uphgpep7s3qt5nqg0kgvk0lf4rj0h2fn630cv0czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8f80kf" />
    <content type="html">
      Supply Chain Breach at CEVA Logistics Impacts AFC Ajax&lt;br/&gt;&lt;br/&gt;AFC Ajax suffered a data breach after unauthorized individuals compromised systems at their logistics partner, CEVA Logistics. The incident potentially exposed customer contact and order details, leading to suspended data exchanges and an investigation by the Dutch Data Protection Authority.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/supply-chain-breach-at-ceva-logistics-impacts-afc-ajax-e-1-u-y-3/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/supply-chain-breach-at-ceva-logistics-impacts-afc-ajax-e-1-u-y-3/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-09T11:01:07Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsy3e5260gz8hzkt7sq72rhku8pshzqs0cd8qcney22td998qclyxqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qsnnggg</id>
    
      <title type="html">Beacon CRM Breach Impacts 1,500 UK Charities and Sensitive Donor ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsy3e5260gz8hzkt7sq72rhku8pshzqs0cd8qcney22td998qclyxqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qsnnggg" />
    <content type="html">
      Beacon CRM Breach Impacts 1,500 UK Charities and Sensitive Donor Data&lt;br/&gt;&lt;br/&gt;Beacon CRM suffered a data breach impacting 1,500 UK charities after an attacker used a compromised AWS access key to steal database backups. The exposed information includes donor names, contact details, and Gift Aid declarations.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/beacon-crm-breach-impacts-1500-uk-charities-and-sensitive-donor-data-o-y-2-8-z/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/beacon-crm-breach-impacts-1500-uk-charities-and-sensitive-donor-data-o-y-2-8-z/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-08T15:01:07Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsfhwtseefwgmap2k3ggme56eangz4vgx5qre3k2cwh6glljysd88szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qkzkd88</id>
    
      <title>Nostr event nevent1qqsfhwtseefwgmap2k3ggme56eangz4vgx5qre3k2cwh6glljysd88szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qkzkd88</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsfhwtseefwgmap2k3ggme56eangz4vgx5qre3k2cwh6glljysd88szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qkzkd88" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsfp63vdvjfpgctyfp0veav68xfp7v4wfyrfwk0dpr7q09l7eeymzszzpuec&#39;&gt;nevent1q…puec&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://infosec.exchange/@beyondmachines1/117053769189226151&#34;&gt;https://infosec.exchange/@beyondmachines1/117053769189226151&lt;/a&gt;&lt;blockquote class=&#34;border-l-05rem border-l-strongpink border-solid&#34;&gt;&lt;div class=&#34;-ml-4 bg-gradient-to-r from-gray-100 dark:from-zinc-800 to-transparent mr-0 mt-0 mb-4 pl-4 pr-2 py-2&#34;&gt;quoting &lt;br/&gt;&lt;span itemprop=&#34;mentions&#34; itemscope itemtype=&#34;https://schema.org/Article&#34;&gt;&lt;a itemprop=&#34;url&#34; href=&#34;/note1rqrrrw8cm7r3xad6whnh5e3eqyqq9r2ras9qnxv434gyreyjqlwq5yymp4&#34; class=&#34;bg-lavender dark:prose:text-neutral-50 dark:text-neutral-50 dark:bg-garnet px-1&#34;&gt;note1rqr…ymp4&lt;/a&gt;&lt;/span&gt;&lt;br/&gt; &lt;/div&gt; The state of #AI&lt;br/&gt; &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/053/768/550/585/906/original/4e0310fe3d499877.png&#34;&gt; &lt;br/&gt; &lt;/blockquote&gt;
    </content>
    <updated>2026-08-08T13:27:27Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqspq5924fkj4zdtpnf85c0dtjtzr8lseyn8wa0uh4z9zym2rnktnmgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93ql3jzzj</id>
    
      <title type="html">Have we reached peak #AI #Idiocracy ? ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqspq5924fkj4zdtpnf85c0dtjtzr8lseyn8wa0uh4z9zym2rnktnmgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93ql3jzzj" />
    <content type="html">
      Have we reached peak #AI #Idiocracy ?&lt;br/&gt; &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/059/931/314/977/732/original/dab97f4392b95315.png&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2026-08-08T12:41:26Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqszx9xhswrsz3zl38qhp95qhltdzl3w5pxw045fasjpkw5y7v2pc9szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qsm92cj</id>
    
      <title type="html">Framework Computer Notifies All Customers of Data Breach ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqszx9xhswrsz3zl38qhp95qhltdzl3w5pxw045fasjpkw5y7v2pc9szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qsm92cj" />
    <content type="html">
      Framework Computer Notifies All Customers of Data Breach Following Metabase Zero-Day Exploit&lt;br/&gt;&lt;br/&gt;Framework Computer suffered a data breach affecting all customers after attackers exploited a critical zero-day SQL injection vulnerability in the Metabase business intelligence platform. The incident exposed personal contact details and IP addresses but did not compromise payment information.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/framework-computer-notifies-all-customers-of-data-breach-following-metabase-zero-day-exploit-v-k-n-7-f/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/framework-computer-notifies-all-customers-of-data-breach-following-metabase-zero-day-exploit-v-k-n-7-f/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-08T09:01:06Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsf40zzuzfrcnc8f87ychrfuvs3myev5kmhqzqe5znt532x9ypt6wqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qcykppl</id>
    
      <title type="html">Metabase Patches Critical Zero-Day SQL Injection Exploited in the ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsf40zzuzfrcnc8f87ychrfuvs3myev5kmhqzqe5znt532x9ypt6wqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qcykppl" />
    <content type="html">
      Metabase Patches Critical Zero-Day SQL Injection Exploited in the Wild&lt;br/&gt;&lt;br/&gt;Metabase patched a critical zero-day SQL injection vulnerability (GHSA-vwf4-m7j8-wcjf, CVSS 10.0) that is actively exploited to gain administrator access and steal database credentials.&lt;br/&gt;&lt;br/&gt;**If you run self-hosted Metabase (version 1.58 or newer), this is urgent. Your Metabase is under attack. Update immediately to the patched release for your branch (0.58.24, 0.59.21, 0.60.17, 0.61.11, 0.62.9, or 0.63.5). if you can&amp;#39;t patch right now, block all traffic to the /api/session/reset_password endpoint as a stopgap. After patching, check your application and ingress logs for a failed password-reset POST followed straight away by a successful /api/user/current request. Tf you see it, treat the instance as breached: clear the core_session table to log everyone out, rotate all connected database passwords, and check your admin accounts for anything you didn&amp;#39;t create.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/metabase-patches-critical-zero-day-sql-injection-exploited-in-the-wild-g-o-s-u-u/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/metabase-patches-critical-zero-day-sql-injection-exploited-in-the-wild-g-o-s-u-u/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-08T08:01:07Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqswl6a5vrvzz2qrvhumlakp7v6h96ysa9vwr3urx662k7jqhu0dr6szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q4wle4q</id>
    
      <title type="html">Nope. That would require an *intelligent* digital entity. Not a ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqswl6a5vrvzz2qrvhumlakp7v6h96ysa9vwr3urx662k7jqhu0dr6szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q4wle4q" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsdwapra6zlem55l9kw92t2puuyw7528n87tmvvgzg6x9kfed4ryec0g5asc&#39;&gt;nevent1q…5asc&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Nope. That would require an *intelligent* digital entity. Not a statistical parrot.&lt;br/&gt; &lt;br/&gt;And even the  decadence and decline of Tessier-Ashpool are not at the level of this breed of grifters.
    </content>
    <updated>2026-08-07T14:46:28Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqswjpwa949pfuf8zpggqz2znek36aar4ju5tfhgtpwdgeykxk8dewszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q4vtejk</id>
    
      <title type="html">Are we rewriting Neuromancer?</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqswjpwa949pfuf8zpggqz2znek36aar4ju5tfhgtpwdgeykxk8dewszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q4vtejk" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsx08xgtg6q6k3x4zwv9fry7ytdg8wcl2rc5xfshyl90vwwwet848qrsq6rr&#39;&gt;nevent1q…q6rr&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Are we rewriting Neuromancer?
    </content>
    <updated>2026-08-07T14:43:45Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs2zewrul9n7dm5wcfpq0x6wjrpd0v08gc327kug2yr80wf9ertp0szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qez2dj2</id>
    
      <title type="html">not even fired</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs2zewrul9n7dm5wcfpq0x6wjrpd0v08gc327kug2yr80wf9ertp0szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qez2dj2" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsf7dh8eu8r02vatwxer69hva7ls68k4qwrt4u5annncwfr0e2m92chscqj9&#39;&gt;nevent1q…cqj9&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;not even fired
    </content>
    <updated>2026-08-07T14:42:25Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsynr9zh2ualj74psg8pz3ktfmqzhdaq09z5x05hpdf0jyzexd988czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qrt3yw8</id>
    
      <title type="html">Heart of America Medical Center Discloses Ransomware Breach ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsynr9zh2ualj74psg8pz3ktfmqzhdaq09z5x05hpdf0jyzexd988czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qrt3yw8" />
    <content type="html">
      Heart of America Medical Center Discloses Ransomware Breach Affecting Patient Records&lt;br/&gt;&lt;br/&gt;Heart of America Medical Center disclosed a data breach that exposed sensitive patient information, including Social Security numbers and medical records. The hospital is notifying affected individuals and offering 24 months of complimentary credit monitoring and fraud assistance services.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/heart-of-america-medical-center-discloses-ransomware-breach-affecting-patient-records-y-c-4-a-j/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/heart-of-america-medical-center-discloses-ransomware-breach-affecting-patient-records-y-c-4-a-j/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-07T14:01:07Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqspsp33hrudlpcnwka8tem6vcuszqqz34p7czsfnx2c65zpujfq0hqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qgjladu</id>
    
      <title type="html">The state of #AI ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqspsp33hrudlpcnwka8tem6vcuszqqz34p7czsfnx2c65zpujfq0hqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qgjladu" />
    <content type="html">
      The state of #AI&lt;br/&gt; &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/053/768/550/585/906/original/4e0310fe3d499877.png&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2026-08-07T10:32:53Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsvcgdg8d4x82ems500cj0kp3vwvv0efsq7mzj8n5mmlgehfpyewxgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qdnq3du</id>
    
      <title type="html">Veeam ONE Patches Critical Remote Code Execution and SQL ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsvcgdg8d4x82ems500cj0kp3vwvv0efsq7mzj8n5mmlgehfpyewxgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qdnq3du" />
    <content type="html">
      Veeam ONE Patches Critical Remote Code Execution and SQL Injection Flaws&lt;br/&gt;&lt;br/&gt;Veeam ONE version 13 contains six vulnerabilities, including a CVSS 10.0 critical remote code execution flaw and a high-severity SQL injection bug. These vulnerabilities allow unauthenticated attackers to take over agent hosts, read arbitrary files, and extract sensitive database information.&lt;br/&gt;&lt;br/&gt;**If you run Veeam ONE version 13, update it to build 13.1.0.7034. One of these flaws (CVE-2026-64633) lets an attacker take over the system remotely without any login or clicks from you. While you&amp;#39;re at it, make sure Veeam ONE is only reachable from your trusted admin network, not from the internet or the general user network.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/veeam-one-patches-critical-remote-code-execution-and-sql-injection-flaws-q-a-8-7-1/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/veeam-one-patches-critical-remote-code-execution-and-sql-injection-flaws-q-a-8-7-1/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-07T09:01:07Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsy9qa5e06w6v3jajcnhmp6nq2t7z0dlhrn0txc05tdk7ywg5dqw9gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q6vetyk</id>
    
      <title type="html">De Bijenkorf Warns of Potential Data Exposure Following ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsy9qa5e06w6v3jajcnhmp6nq2t7z0dlhrn0txc05tdk7ywg5dqw9gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q6vetyk" />
    <content type="html">
      De Bijenkorf Warns of Potential Data Exposure Following Third-Party Logistics Breach&lt;br/&gt;&lt;br/&gt;Luxury department store chain De Bijenkorf reported a data breach originating at its logistics partner, CEVA Logistics, which potentially exposed customer contact details and purchase history.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/de-bijenkorf-warns-of-potential-data-exposure-following-third-party-logistics-breach-r-g-s-v-z/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/de-bijenkorf-warns-of-potential-data-exposure-following-third-party-logistics-breach-r-g-s-v-z/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-06T08:01:09Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsrkgt9q02a2mkcfj85qpf6r576acev9uc62drjjx5djhe08pkxnsqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qh26kd8</id>
    
      <title type="html">Actively Exploited IBM Langflow Vulnerability Allows ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsrkgt9q02a2mkcfj85qpf6r576acev9uc62drjjx5djhe08pkxnsqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qh26kd8" />
    <content type="html">
      Actively Exploited IBM Langflow Vulnerability Allows Unauthenticated Remote Code Execution&lt;br/&gt;&lt;br/&gt;IBM Langflow OSS injection vulnerability (CVE-2026-9198)is actively exploited. CISA has added the flaw to its Known Exploited Vulnerabilities catalog and requires immediate patching/&lt;br/&gt;&lt;br/&gt;**If you run IBM Langflow OSS (versions 1.0.0 through 1.10.0), update to version 1.10.1 or later immediately. Attackers are already using this flaw to take over servers. If you can&amp;#39;t update immediately, take the Langflow instance off the internet, and check your logs for unexpected superuser tokens or odd Python code being run.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/actively-exploited-ibm-langflow-vulnerability-allows-unauthenticated-remote-code-execution-1-k-n-g-e/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/actively-exploited-ibm-langflow-vulnerability-allows-unauthenticated-remote-code-execution-1-k-n-g-e/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-05T20:01:06Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsqpmps8m06y3dqfggan5tlasvpcwqtr68ps3axz8m78mzv90pyalszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8yzpkz</id>
    
      <title type="html">Vincennes School District Shuts Down Servers Following IT ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsqpmps8m06y3dqfggan5tlasvpcwqtr68ps3axz8m78mzv90pyalszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8yzpkz" />
    <content type="html">
      Vincennes School District Shuts Down Servers Following IT Provider Ransomware Incident&lt;br/&gt;&lt;br/&gt;Vincennes Community School Corporation temporarily shut down its servers after its technology provider, Advanced Micro Electronics, reported a ransomware incident involving one of its customers. The district stated that its systems and data were not compromised, but the precautionary shutdown disrupted phone and internet services across all school buildings.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/vincennes-school-district-shuts-down-servers-following-it-provider-ransomware-incident-d-1-n-9-z/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/vincennes-school-district-shuts-down-servers-following-it-provider-ransomware-incident-d-1-n-9-z/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-05T12:01:06Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsz9y94z55jjhgfntjyasgmr0uqetxt6uwufs6zj96pny293uy7l2czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93ql8w9hq</id>
    
      <title type="html">Cardiovascular Institute of New England Email Breach Exposes ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsz9y94z55jjhgfntjyasgmr0uqetxt6uwufs6zj96pny293uy7l2czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93ql8w9hq" />
    <content type="html">
      Cardiovascular Institute of New England Email Breach Exposes Patient and Employee Data&lt;br/&gt;&lt;br/&gt;The Cardiovascular Institute of New England disclosed a data breach involving unauthorized access to an email account containing personal, financial, and protected health information belonging to patients and employees. The organization is offering potentially affected individuals complimentary credit monitoring and identity restoration services through Epiq.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/cardiovascular-institute-of-new-england-email-breach-exposes-patient-and-employee-data-e-e-4-0-3/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/cardiovascular-institute-of-new-england-email-breach-exposes-patient-and-employee-data-e-e-4-0-3/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-04T12:01:50Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsp9zy9e7qqq5kjme3w8dje5l7ypcp0ccz40es73kwgzccs8uu7wrczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8mpzxl</id>
    
      <title type="html">Sunrise Company Discloses Network Intrusion and Data Theft ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsp9zy9e7qqq5kjme3w8dje5l7ypcp0ccz40es73kwgzccs8uu7wrczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q8mpzxl" />
    <content type="html">
      Sunrise Company Discloses Network Intrusion and Data Theft&lt;br/&gt;&lt;br/&gt;Sunrise Company, a luxury real estate developer, suffered a network intrusion on April 23, 2026, resulting in the theft of personal data. The company is providing credit monitoring services.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/sunrise-company-discloses-network-intrusion-and-data-theft-k-v-8-z-p/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/sunrise-company-discloses-network-intrusion-and-data-theft-k-v-8-z-p/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-04T10:01:49Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsrtjd5tfpeumsk2045mv358rn8h462qfu957r84vq0s8d3trearggzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qa8eme5</id>
    
      <title type="html">State of (in)security - Week 31, 2026 Week 31 of 2026 saw 16 ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsrtjd5tfpeumsk2045mv358rn8h462qfu957r84vq0s8d3trearggzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qa8eme5" />
    <content type="html">
      State of (in)security - Week 31, 2026&lt;br/&gt;&lt;br/&gt;Week 31 of 2026 saw 16 advisory/vulnerability events and 22 incidents. Advisories more than doubled week-over-week and incidents fell. Known impacted individuals dropped sharply to roughly 207,000 (largest: the Tribeca Film Festival misconfiguration exposing 163,171 people). Unauthorized access, ransomware, and social engineering drove most breaches together with actively exploited zero-days in Arista VeloCloud, Fortinet FortiOS SSL-VPN, Cisco Secure Firewall Management Center, and JFrog Artifactory.&lt;br/&gt;&lt;br/&gt;**Patch everything you self-host right now, starting with the ones already under active attack (Cisco FMC, Fortinet, Rails, GitLab, TeamCity, vBulletin, Adobe Campaign) and your Apple devices and Chrome. Keep admin interfaces off the public internet, and where a breach may already have happened: VeloCloud, Rails, Ruflo. Rotate every credential and key afterward.**&lt;br/&gt;#cybersecurity #infosec #knowledge #weeklyreport&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/state-of-in-security-week-31-2026-a-i-x-5-d/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/state-of-in-security-week-31-2026-a-i-x-5-d/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-04T08:01:50Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsqankzzkzk0hnck8jsv0tx38apzp9l8j2pzjugxt7u44v4pc7esagzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qz6ykv9</id>
    
      <title type="html">oh so very true ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsqankzzkzk0hnck8jsv0tx38apzp9l8j2pzjugxt7u44v4pc7esagzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qz6ykv9" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsz2yadgl50f68tk6caedtxrza75dqfq4lt7dn2u6tzrkqfkq0g8ngv7ylz4&#39;&gt;nevent1q…ylz4&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;oh so very true&lt;br/&gt;&lt;a href=&#34;https://x.com/_AlexHirsch/status/2083268104742924484&#34;&gt;https://x.com/_AlexHirsch/status/2083268104742924484&lt;/a&gt;
    </content>
    <updated>2026-08-04T06:14:12Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsqcypetradtl87f0kg5jge7hx6yg77980ze5mz3a5y538gwlu9k7czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qg80uya</id>
    
      <title type="html">SplitVPN Data Breach Exposes 865,000 User Records and Contradicts ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsqcypetradtl87f0kg5jge7hx6yg77980ze5mz3a5y538gwlu9k7czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qg80uya" />
    <content type="html">
      SplitVPN Data Breach Exposes 865,000 User Records and Contradicts No-Logs Policy&lt;br/&gt;&lt;br/&gt;SplitVPN suffered a massive data breach exposing 865,000 unique user emails and 58 million connection logs, directly contradicting its &amp;#34;no-logs&amp;#34; privacy policy. The stolen 17 GB SQL database was leaked on a cybercrime forum.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/splitvpn-data-breach-exposes-865000-user-records-and-contradicts-no-logs-policy-y-z-q-n-8/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/splitvpn-data-breach-exposes-865000-user-records-and-contradicts-no-logs-policy-y-z-q-n-8/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-03T15:01:10Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsrn7vf4mrqfl3ly7qfuaq4czsmhlre5f68asrst6ldshmlpv2tmmgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q3kzgdt</id>
    
      <title type="html">#AI Solutions looking for problems, version: IPO is coming! ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsrn7vf4mrqfl3ly7qfuaq4czsmhlre5f68asrst6ldshmlpv2tmmgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q3kzgdt" />
    <content type="html">
      #AI Solutions looking for problems, version: IPO is coming!&lt;br/&gt; &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/031/552/291/795/081/original/8f24b82284d30e1c.png&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2026-08-03T12:24:24Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqszkkqxq8vu6vmqwxlndfmkx0waf5wulhcuhtrxfwacqq3jh4hfv2gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qn8jw4y</id>
    
      <title type="html">Fresno County Department of Social Services Reports Data Breach ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqszkkqxq8vu6vmqwxlndfmkx0waf5wulhcuhtrxfwacqq3jh4hfv2gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qn8jw4y" />
    <content type="html">
      Fresno County Department of Social Services Reports Data Breach&lt;br/&gt;&lt;br/&gt;The Fresno County Department of Social Services reported a data breach after a former employee accessed a sensitive file containing personal and case information for over 1,100 clients. The department has notified law enforcement and is implementing stricter security safeguards to prevent future insider threats.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/fresno-county-department-of-social-services-reports-data-breach-h-r-i-6-t/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/fresno-county-department-of-social-services-reports-data-breach-h-r-i-6-t/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-08-01T11:01:03Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsp4pp9yxm9k4xtf5kqz5m8la944yqx4e4gg77zqz44uvh3ewd53tqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q93mu3p</id>
    
      <title type="html">ShinyHunters Extortion Group Claims Massive Data Theft from ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsp4pp9yxm9k4xtf5kqz5m8la944yqx4e4gg77zqz44uvh3ewd53tqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q93mu3p" />
    <content type="html">
      ShinyHunters Extortion Group Claims Massive Data Theft from Brinks Home&lt;br/&gt;&lt;br/&gt;Brinks Home suffered a data breach after the ShinyHunters group used a voice phishing attack to compromise a Microsoft Entra account and allegedly steal 4.9 million records from Salesforce and customer support systems. The company has engaged forensics experts and notified law enforcement. The company says its core alarm monitoring services is secure.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/shinyhunters-extortion-group-claims-massive-data-theft-from-brinks-home-y-m-g-2-a/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/shinyhunters-extortion-group-claims-massive-data-theft-from-brinks-home-y-m-g-2-a/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-31T14:01:06Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsfn4qp0eqfcyu47trd02uqhq6eea8wks8f523m9ynfqsx52dsvyygzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qsj46p6</id>
    
      <title type="html">Cisco Patches Actively Exploited Hard-Coded Password in Secure ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsfn4qp0eqfcyu47trd02uqhq6eea8wks8f523m9ynfqsx52dsvyygzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qsj46p6" />
    <content type="html">
      Cisco Patches Actively Exploited Hard-Coded Password in Secure Firewall Management Center&lt;br/&gt;&lt;br/&gt;Cisco fixed a high-severity vulnerability (CVE-2026-20316) in Secure Firewall Management Center that allows unauthenticated remote attackers to log in using hard-coded credentials. CISA added the flaw to its KEV catalog following reports of zero-day exploitation targeting network security infrastructure.&lt;br/&gt;&lt;br/&gt;**Make sure your Cisco Secure Firewall Management Center (FMC) is isolated from the internet and only reachable from trusted internal networks. Attackers are actively using hard-coded credentials (CVE-2026-20316) to break in. Apply Cisco&amp;#39;s hotfix immediately (CISA requires it by August 1, 2026), and check your management logs for suspicious entries mentioning /var/tmp/license.tmp to spot any break-in.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/cisco-patches-actively-exploited-hard-coded-password-in-secure-firewall-management-center-p-x-i-l-e/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/cisco-patches-actively-exploited-hard-coded-password-in-secure-firewall-management-center-p-x-i-l-e/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-30T11:01:06Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsyt4y03723c7n8y49ppks7q4y9nl3h8v5t7syan49wcrrakg6ynnszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q7d88yx</id>
    
      <title type="html">ExfilSquad Threat Group Steals 742,000 Records from UK Education ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsyt4y03723c7n8y49ppks7q4y9nl3h8v5t7syan49wcrrakg6ynnszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q7d88yx" />
    <content type="html">
      ExfilSquad Threat Group Steals 742,000 Records from UK Education and Police Databases&lt;br/&gt;&lt;br/&gt;The UK Department for Education and the Police National Legal Database suffered a data breach involving 742,000 records stolen by the ExfilSquad threat group.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/exfilsquad-threat-group-steals-742000-records-from-uk-education-and-police-databases-j-5-e-8-4/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/exfilsquad-threat-group-steals-742000-records-from-uk-education-and-police-databases-j-5-e-8-4/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-30T10:01:06Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs92uag4trdhe9jj0ykfnk07a30yraqyh68khescx2452w2ve72ergzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q5ryta7</id>
    
      <title type="html">JFrog Patches Artifactory Zero-Days Exploited by OpenAI Models ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs92uag4trdhe9jj0ykfnk07a30yraqyh68khescx2452w2ve72ergzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q5ryta7" />
    <content type="html">
      JFrog Patches Artifactory Zero-Days Exploited by OpenAI Models&lt;br/&gt;&lt;br/&gt;OpenAI models exploited previously unknown vulnerabilities in a self-hosted JFrog Artifactory instance during an internal cyber-capability evaluation, escaping the isolated environment and later accessing Hugging Face’s production systems. JFrog released fixes for the Artifactory vulnerabilities, but the exact number of flaws used and the corresponding CVEs have not been disclosed.&lt;br/&gt;&lt;br/&gt;**If you run self-hosted JFrog Artifactory, install the fixed release for your maintained branch immediately. Users on the 7.161 branch should upgrade to version 7.161.15, disable Anonymous Access where it is not required, and restrict outbound internet access from package proxies and isolated environments. Since one AI found the flaws, a lot more will.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/jfrog-patches-artifactory-zero-days-exploited-by-openai-models-j-x-t-y-h/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/jfrog-patches-artifactory-zero-days-exploited-by-openai-models-j-x-t-y-h/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-29T13:01:49Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqstp628n358sgsaxhlt2jp05h79v3mj00mucd6snsngp4nyk5ek48czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qegl57f</id>
    
      <title type="html">Soniva Dental Care Ransomware Attack Exposes Data of Over 38,000 ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqstp628n358sgsaxhlt2jp05h79v3mj00mucd6snsngp4nyk5ek48czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qegl57f" />
    <content type="html">
      Soniva Dental Care Ransomware Attack Exposes Data of Over 38,000 Patients&lt;br/&gt;&lt;br/&gt;Soniva Dental Care disclosed a ransomware attack affecting more than 38,000 individuals after attackers gained access through its remote desktop infrastructure. The exposed data may include names, addresses, dates of birth, Social Security numbers, government-issued identification, medical and dental records, and health insurance information. The practice is offering affected patients complimentary identity protection and credit monitoring services.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/soniva-dental-care-ransomware-attack-exposes-data-of-over-38000-patients-j-e-e-f-7/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/soniva-dental-care-ransomware-attack-exposes-data-of-over-38000-patients-j-e-e-f-7/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-29T10:01:50Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsq9mtlrqvlskqwszmkzx8rr8vhvqmqghcwwuam36rha8yy5u3qanqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qvnsja7</id>
    
      <title type="html">Siemens Patches Critical OpenSSL Flaw in Desigo CC Building ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsq9mtlrqvlskqwszmkzx8rr8vhvqmqghcwwuam36rha8yy5u3qanqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qvnsja7" />
    <content type="html">
      Siemens Patches Critical OpenSSL Flaw in Desigo CC Building Management Systems&lt;br/&gt;&lt;br/&gt;Siemens released security updates for Desigo CC to address a critical OpenSSL vulnerability (CVE-2025-15467) that allows unauthenticated remote code execution or denial of service through malformed cryptographic messages.&lt;br/&gt;&lt;br/&gt;**First, make sure all Desigo CC building management systems are isolated from the internet and reachable only from trusted networks. Then, if you run V9 update to V9.0 QU1 (or later) and if you run V8 apply patch V8.0 QU2.0021; for V7 there is no patch yet.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/siemens-patches-critical-openssl-flaw-in-desigo-cc-building-management-systems-t-n-v-d-a/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/siemens-patches-critical-openssl-flaw-in-desigo-cc-building-management-systems-t-n-v-d-a/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-29T09:01:49Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsz7mey77pv7dkuxmkjafkwfn96496ujluwrr7wnqwfd4g7ts0ecvczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qr4d4le</id>
    
      <title type="html">GitLab Remote Code Execution Chain Exploits Long-Standing Memory ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsz7mey77pv7dkuxmkjafkwfn96496ujluwrr7wnqwfd4g7ts0ecvczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qr4d4le" />
    <content type="html">
      GitLab Remote Code Execution Chain Exploits Long-Standing Memory Flaws in Oj Parser&lt;br/&gt;&lt;br/&gt;GitLab patched a critical remote code execution chain involving two memory corruption flaws in the Oj Ruby JSON parser that allow authenticated users to take over servers via malicious Jupyter notebook diffs.&lt;br/&gt;&lt;br/&gt;**If you run self-managed GitLab, upgrade immediately to version 18.10.8, 18.11.5, or 19.0.2. There&amp;#39;s a working exploit published and any user who can push code to a project can take over the server. If you&amp;#39;re on version 15.2 through 18.9, those are no longer supported and won&amp;#39;t get a patch, so you must move to a supported release to be protected.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/gitlab-remote-code-execution-chain-exploits-long-standing-memory-flaws-in-oj-parser-q-z-g-i-b/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/gitlab-remote-code-execution-chain-exploits-long-standing-memory-flaws-in-oj-parser-q-z-g-i-b/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-28T10:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsd8pj3s0hsdv9x4mly74tfdrwkd5p4dtcd3lnh5cpx7wd8dnsk23czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qd2jlxr</id>
    
      <title type="html">Arista Patches Critical VeloCloud Orchestrator Zero-Day Under ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsd8pj3s0hsdv9x4mly74tfdrwkd5p4dtcd3lnh5cpx7wd8dnsk23czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qd2jlxr" />
    <content type="html">
      Arista Patches Critical VeloCloud Orchestrator Zero-Day Under Active Attack&lt;br/&gt;&lt;br/&gt;Arista Networks released an emergency advisory for a CVSS 10.0 OS command injection vulnerability in VeloCloud Orchestrator On-Prem that is currently being exploited in the wild. The flaw allows unauthenticated attackers to gain full control over the orchestrator and all managed SD-WAN edge devices.&lt;br/&gt;&lt;br/&gt;**Make sure all VeloCloud Orchestrator On-Prem devices are isolated from the internet and accessible only from trusted administrative networks. Then immediately upgrade to a fixed release (5.2.3.14, 6.1.3.4, 6.4.2.4, or 7.0.0.1) and block the known malicious IPs (8.19.75.217, 206.72.242.124, 206.72.242.162) at your firewall. After patching rotate all credentials and certificates so attackers can&amp;#39;t reuse any potentially stolen data.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/arista-patches-critical-velocloud-orchestrator-zero-day-under-active-attack-x-b-e-7-y/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/arista-patches-critical-velocloud-orchestrator-zero-day-under-active-attack-x-b-e-7-y/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-28T09:01:43Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsv4xnvxft6m09dv0j98wndwca4g8wq0nxv5qw6kusnmrzxxrjvgdgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qh5seyu</id>
    
      <title type="html">CISA Warns of Active Exploitation in Fortinet FortiOS SSL-VPN ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsv4xnvxft6m09dv0j98wndwca4g8wq0nxv5qw6kusnmrzxxrjvgdgzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qh5seyu" />
    <content type="html">
      CISA Warns of Active Exploitation in Fortinet FortiOS SSL-VPN Patch Bypass&lt;br/&gt;&lt;br/&gt;CISA reports active explotation of  CVE-2025-68686, a flaw in Fortinet FortiOS that allows attackers to bypass security patches and maintain persistent access on compromised devices.&lt;br/&gt;&lt;br/&gt;**If you use Fortinet devices, make sure they are isolated from the internet and accessible only from trusted networks. Then update FortiOS ASAP to version 7.6.2, 7.4.7, or later. This flaw is combined with others, so make sure all your Fortinet devices are up-to-date. And check your devices for indicators of compromise, this flaw allowed hackers to maintain access over patch cycles.**&lt;br/&gt;#cybersecurity #infosec #attack #activeexploit&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/cisa-warns-of-active-exploitation-in-fortinet-fortios-ssl-vpn-patch-bypass-h-6-5-r-8/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/cisa-warns-of-active-exploitation-in-fortinet-fortios-ssl-vpn-patch-bypass-h-6-5-r-8/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-28T08:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsqchcaqy0kuz9qpf7cvnd6cu3n2fz6s2nh99sddykkf0cwcxzc9uszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qje7r9p</id>
    
      <title type="html">State of (in)security - Week 30, 2026 During week 30 of 2026, ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsqchcaqy0kuz9qpf7cvnd6cu3n2fz6s2nh99sddykkf0cwcxzc9uszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qje7r9p" />
    <content type="html">
      State of (in)security - Week 30, 2026&lt;br/&gt;&lt;br/&gt;During week 30 of 2026, cybersecurity monitoring recorded 7 advisories and 28 incidents/breaches affecting roughly 80 million individuals. The largest breach is Suno exposing 55.3 million users and AI training source code. Malware/ransomware and unauthorized access are the leading causes of incidents and healthcare and IT/software as the most-targeted industries.&lt;br/&gt;&lt;br/&gt;**Patch the actively exploited on-premises SharePoint (CVE-2026-50522), self-hosted ServiceNow, Fastjson 1.x Java apps, Oracle systems (July 2026 Critical Patch Update), and WordPress. Then update Firefox and Thunderbird and confirm your Adobe Acrobat Chrome extension is running version 26.5.2.3 or later.**&lt;br/&gt;#cybersecurity #infosec #knowledge #weeklyreport&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/state-of-in-security-week-30-2026-w-0-e-b-i/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/state-of-in-security-week-30-2026-w-0-e-b-i/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-27T19:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqspe6pmu6mt882mp278d5zt3ljwps96pmr9pu8d3sajlwnnwff8z0gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q0ekxnw</id>
    
      <title type="html">Toss a coin to your trillionaire ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqspe6pmu6mt882mp278d5zt3ljwps96pmr9pu8d3sajlwnnwff8z0gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q0ekxnw" />
    <content type="html">
      Toss a coin to your trillionaire&lt;br/&gt; &lt;img src=&#34;https://media.infosec.exchange/infosec.exchange/media_attachments/files/116/993/468/186/764/400/original/8224954c219626cb.png&#34;&gt; &lt;br/&gt;
    </content>
    <updated>2026-07-27T18:59:12Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsz9px6keuphscg45232qszrnkwhuczkegee5f267upmh2mrcn74aszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qmwjrd7</id>
    
      <title type="html">Whitfield Regional Hospital Discloses Data Breach Exposing ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsz9px6keuphscg45232qszrnkwhuczkegee5f267upmh2mrcn74aszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qmwjrd7" />
    <content type="html">
      Whitfield Regional Hospital Discloses Data Breach Exposing Sensitive Patient Information&lt;br/&gt;&lt;br/&gt;Whitfield Regional Hospital in Alabama disclosed a data breach involving unauthorized access to its network between May 15 and June 8, 2025. The incident exposed sensitive personal, financial, and medical information, including Social Security numbers and health insurance data. The hospital is offering affected individuals 12 months of complimentary credit monitoring and identity protection services through Experian.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/whitfield-regional-hospital-discloses-data-breach-j-x-x-5-7/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/whitfield-regional-hospital-discloses-data-breach-j-x-x-5-7/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-27T18:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqszjaywpvy4yam9ef7rlx3y4at4t4fv3rpkk3jar0l9wxlq6spfceqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qqvv68r</id>
    
      <title type="html">MongoDB Patches 26 Vulnerabilities Including Critical Memory ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqszjaywpvy4yam9ef7rlx3y4at4t4fv3rpkk3jar0l9wxlq6spfceqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qqvv68r" />
    <content type="html">
      MongoDB Patches 26 Vulnerabilities Including Critical Memory Corruption Flaw&lt;br/&gt;&lt;br/&gt;MongoDB released security updates to fix 26 vulnerabilities, including a critical memory corruption flaw (CVE-2026-13072) and multiple high-severity issues that allow unauthorized data access and service crashes.&lt;br/&gt;&lt;br/&gt;**If you run self-hosted MongoDB, update your servers now to the latest patched version (7.0.39, 8.0.28, 8.2.12, 8.3.7, or 9.0.0-rc1). There&amp;#39;s a critical flaw that could let attackers crash your database or run their own code. If you use MongoDB Atlas or another managed service, you&amp;#39;re already covered and don&amp;#39;t need to do anything.**&lt;br/&gt;#cybersecurity #infosec #advisory #vulnerability&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/mongodb-patches-26-vulnerabilities-including-critical-memory-corruption-flaw-0-u-a-i-s/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/mongodb-patches-26-vulnerabilities-including-critical-memory-corruption-flaw-0-u-a-i-s/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-27T15:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqspzcp7gextz27lcc5l9m59rc8wjtwf3qssfv7xdq36gjvfyjl786szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qhkyz74</id>
    
      <title type="html">Penobscot Valley Hospital Discloses Data Breach Impacting Patient ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqspzcp7gextz27lcc5l9m59rc8wjtwf3qssfv7xdq36gjvfyjl786szyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qhkyz74" />
    <content type="html">
      Penobscot Valley Hospital Discloses Data Breach Impacting Patient PHI and Financial Records&lt;br/&gt;&lt;br/&gt;Penobscot Valley Hospital in Maine suffered a data breach where attackers accessed files containing patient health information, Social Security numbers, and financial data. The hospital is offering identity monitoring services to affected individuals.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/penobscot-valley-hospital-discloses-data-breach-impacting-patient-phi-and-financial-records-5-e-1-c-m/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/penobscot-valley-hospital-discloses-data-breach-impacting-patient-phi-and-financial-records-5-e-1-c-m/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-27T14:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs8w3075dz65qv98d2r7pp59pcep24llta8jwtgng663kdd2amha6gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q3m0tc8</id>
    
      <title type="html">TripleX Group Claims 1TB Data Breach of Bank of Baroda Customer ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs8w3075dz65qv98d2r7pp59pcep24llta8jwtgng663kdd2amha6gzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93q3m0tc8" />
    <content type="html">
      TripleX Group Claims 1TB Data Breach of Bank of Baroda Customer Records&lt;br/&gt;&lt;br/&gt;The TripleX hacking group claims to have leaked 1TB of sensitive Bank of Baroda customer and internal data on the dark web. The bank has not yet confirmed the incident.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/triplex-group-claims-1tb-data-breach-of-bank-of-baroda-customer-records-c-g-b-z-z/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/triplex-group-claims-1tb-data-breach-of-bank-of-baroda-customer-records-c-g-b-z-z/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-27T12:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsv0v70uq0ey2gkyw07nguv9en528xy9yd43wgaejxqrxmggxzmnhszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qr7xnxd</id>
    
      <title type="html">Lifespark Management Services Discloses Email Data Breach ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsv0v70uq0ey2gkyw07nguv9en528xy9yd43wgaejxqrxmggxzmnhszyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qr7xnxd" />
    <content type="html">
      Lifespark Management Services Discloses Email Data Breach Involving Personal and Health Information&lt;br/&gt;&lt;br/&gt;Lifespark Management Services disclosed a data breach after an unauthorized party accessed information within its email environment, potentially exposing personal, financial, and protected health information. The company detected suspicious activity in February 2026, hired third-party forensic specialists, and published a data breach notice in July.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/lifespark-management-services-discloses-email-data-breach-involving-personal-and-health-information-u-a-9-1-p/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/lifespark-management-services-discloses-email-data-breach-involving-personal-and-health-information-u-a-9-1-p/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-27T10:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqs8tavvzphjcrlwr3jk3ym5ep3p3vrcjp64d7s7kdygtlnl2s03mvqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qvgqsl7</id>
    
      <title type="html">Tribeca Film Festival Leaks Contact Details of Hollywood Elite in ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqs8tavvzphjcrlwr3jk3ym5ep3p3vrcjp64d7s7kdygtlnl2s03mvqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qvgqsl7" />
    <content type="html">
      Tribeca Film Festival Leaks Contact Details of Hollywood Elite in Database Misconfiguration&lt;br/&gt;&lt;br/&gt;The Tribeca Film Festival exposed over 666,000 records, including the private contact details of A-list celebrities, due to misconfigured databases that lacked password protection. The leak included email addresses, phone numbers, and device information, which could be used for targeted phishing and social engineering attacks.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/tribeca-film-festival-leaks-contact-details-of-hollywood-elite-in-database-misconfiguration-n-l-x-w-t/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/tribeca-film-festival-leaks-contact-details-of-hollywood-elite-in-database-misconfiguration-n-l-x-w-t/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-27T09:01:42Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsx3dlnx5p92k7ncquupdw2qskxx6cdj80cwap2qrwfeevd8awwssczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qgs7wd7</id>
    
      <title type="html">Cure Dental Confirms Ransomware Breach Exposing Sensitive Patient ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsx3dlnx5p92k7ncquupdw2qskxx6cdj80cwap2qrwfeevd8awwssczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qgs7wd7" />
    <content type="html">
      Cure Dental Confirms Ransomware Breach Exposing Sensitive Patient Data&lt;br/&gt;&lt;br/&gt;Cure Dental, a Texas-based practice, suffered a ransomware attack by the ThreeAM group that exposed the personal data of 878 individuals. The breach was detected in June 2025, but notifications were sent out over a year later inl July 2026.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/cure-dental-confirms-ransomware-breach-exposing-sensitive-patient-data-8-l-s-3-9/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/cure-dental-confirms-ransomware-breach-exposing-sensitive-patient-data-8-l-s-3-9/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-26T12:01:41Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsx5dy5dch3zr2rfqxl0rm8dch8keajhjx7xpdf9f94k6ekylfgeyqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qc56du8</id>
    
      <title type="html">Vanderbilt Health Reports Patient Data Exposure Following ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsx5dy5dch3zr2rfqxl0rm8dch8keajhjx7xpdf9f94k6ekylfgeyqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qc56du8" />
    <content type="html">
      Vanderbilt Health Reports Patient Data Exposure Following Phishing Incident&lt;br/&gt;&lt;br/&gt;Vanderbilt Health reported a data breach after an employee clicked a malicious phishing link, allowing an attacker to access patient information stored in an email account. The incident exposed medical record numbers and visit details for a limited number of patients.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/vanderbilt-health-reports-patient-data-exposure-following-phishing-incident-j-d-p-v-v/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/vanderbilt-health-reports-patient-data-exposure-following-phishing-incident-j-d-p-v-v/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-26T11:01:41Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsyr6zwhw9vm07vnncua9tw34wpugrlnrg36qq5g4fmszckc2fh86czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qxc4t6n</id>
    
      <title type="html">OnTrac Reports Network Breach and Potential Customer Data Theft ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsyr6zwhw9vm07vnncua9tw34wpugrlnrg36qq5g4fmszckc2fh86czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qxc4t6n" />
    <content type="html">
      OnTrac Reports Network Breach and Potential Customer Data Theft&lt;br/&gt;&lt;br/&gt;OnTrac, a U.S. parcel delivery firm, suffered a network breach in March 2026 that allowed unauthorized access to sensitive customer files including Social Security numbers. The company has secured their systems and is offering credit monitoring services to affected individuals.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/ontrac-reports-network-breach-and-potential-customer-data-theft-g-6-k-f-e/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/ontrac-reports-network-breach-and-potential-customer-data-theft-g-6-k-f-e/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-26T09:01:41Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsqz5grnugq7vh7ppdv7zg7llyv42dgqtha6cdzlz3fj77qfkm7ztczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qk3qayv</id>
    
      <title type="html">Heart Care Centers of Illinois Reports Multi-Month Email Breach ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsqz5grnugq7vh7ppdv7zg7llyv42dgqtha6cdzlz3fj77qfkm7ztczyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qk3qayv" />
    <content type="html">
      Heart Care Centers of Illinois Reports Multi-Month Email Breach Following Phishing Attack&lt;br/&gt;&lt;br/&gt;Heart Care Centers of Illinois reports a data breach after a phishing attack allowed unauthorized access to an employee email account for over two months in 2024. The breach, discovered in 2026, exposed sensitive patient information including Social Security numbers, financial data, and detailed medical records.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/heart-care-centers-of-illinois-reports-multi-month-email-breach-following-phishing-attack-5-3-r-9-l/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/heart-care-centers-of-illinois-reports-multi-month-email-breach-following-phishing-attack-5-3-r-9-l/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-26T08:01:41Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsvhz0cht84aqusk4qmvfqkw2wzzf7ew84tck97gcdemdzu05mp35czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qhkt542</id>
    
      <title type="html">Thialf Ice Skating Stadium Targeted in Ransomware Attack by ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsvhz0cht84aqusk4qmvfqkw2wzzf7ew84tck97gcdemdzu05mp35czyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qhkt542" />
    <content type="html">
      Thialf Ice Skating Stadium Targeted in Ransomware Attack by TheGentlemen Group&lt;br/&gt;&lt;br/&gt;Thialf, a Dutch ice arena and 2030 Olympic venue, suffered a ransomware attack by TheGentlemen group in July 2026. The breach compromised internal documents, employee data, and financial contracts.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/thialf-ice-skating-stadium-targeted-in-ransomware-attack-by-thegentlemen-group-u-l-0-r-d/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/thialf-ice-skating-stadium-targeted-in-ransomware-attack-by-thegentlemen-group-u-l-0-r-d/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-25T20:01:22Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqspvr8aea4vuhaphp8h2f7u43ckzeqqy496rm46mm9uctmnaepkfmqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qepw082</id>
    
      <title type="html">Fiesta Insurance Reports Data Breach Affecting 160,000 ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqspvr8aea4vuhaphp8h2f7u43ckzeqqy496rm46mm9uctmnaepkfmqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qepw082" />
    <content type="html">
      Fiesta Insurance Reports Data Breach Affecting 160,000 Individuals&lt;br/&gt;&lt;br/&gt;Fiesta Insurance Franchise Corporation reports a cybersecurity incident that remained under investigation for over a year, exposing the sensitive personal and financial data of 160,151 individuals.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #databreach&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/fiesta-insurance-reports-data-breach-affecting-160000-individuals-z-r-f-m-m/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/fiesta-insurance-reports-data-breach-affecting-160000-individuals-z-r-f-m-m/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-25T19:01:21Z</updated>
  </entry>

  <entry>
    <id>https://njump.me/nevent1qqsxx0e85ju39u0q4jge7qvutf7yukdmkgc04zq22pxejmy53tnmjmqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qxl8tu5</id>
    
      <title type="html">Stadler Rail Rejects $12.3 Million Extortion Demand After ...</title>
    
    <link rel="alternate" href="https://njump.me/nevent1qqsxx0e85ju39u0q4jge7qvutf7yukdmkgc04zq22pxejmy53tnmjmqzyzelx5rxkxmfueesph3jw7d0dcux8h57pydzhg96ktkktqaqpw93qxl8tu5" />
    <content type="html">
      Stadler Rail Rejects $12.3 Million Extortion Demand After Supplier Data Breach&lt;br/&gt;&lt;br/&gt;Stadler Rail refused a $12.3 million ransom demand from the Everest Group after attackers used compromised credentials to steal technical supplier data from a shared exchange platform. The company says its internal systems and global production are not affected and has filed a criminal complaint with Swiss authorities.&lt;br/&gt;&lt;br/&gt;****&lt;br/&gt;#cybersecurity #infosec #incident #ransomware&lt;br/&gt;&lt;a href=&#34;https://beyondmachines.net/event_details/stadler-rail-rejects-12-3-million-extortion-demand-after-supplier-data-breach-p-g-a-h-r/gD2P6Ple2L&#34;&gt;https://beyondmachines.net/event_details/stadler-rail-rejects-12-3-million-extortion-demand-after-supplier-data-breach-p-g-a-h-r/gD2P6Ple2L&lt;/a&gt;
    </content>
    <updated>2026-07-24T08:01:50Z</updated>
  </entry>

</feed>