TechCrunch

Inside Uzbekistan’s nationwide license plate surveillance system

Uzbekistan's nationwide license plate surveillance system has been exposed to the internet without a password. This lapse reveals the real-time locations of surveillance cameras and millions of photos and videos of vehicles.

Data breach at credit check giant 700Credit affects at least 5.6 million

A sophisticated adversary-in-the-middle (AiTM) phishing campaign has been identified, targeting Microsoft 365 and Okta users. The campaign bypasses multi-factor authentication (MFA) by hijacking legitimate single sign-on (SSO) authentication flows.

Petco takes down Vetco website after exposing customers’ personal information

Petco's Vetco Clinics website experienced a significant data breach, exposing sensitive customer and pet information. This breach marks the third data breach for Petco in 2025.

Multiple London councils report disruption amid ongoing cyberattack

Three London borough councils—Kensington and Chelsea, Westminster, and Hammersmith & Fulham—have been targeted in a coordinated cyberattack, leading to widespread disruption of core public services and operational systems.

DOJ accuses US ransomware negotiators of launching their own ransomware attacks

The accused allegedly acted as affiliates of the ALPHV ransomware group, targeting at least 5 US-based companies - a Florida-based medical device manufacturer, a Virginia-based drone maker, and a Maryland-headquartered pharmaceutical company.

Lawmakers say stolen police logins are exposing Flock surveillance cameras to hackers

The FTC has been urged to investigate Flock Safety for failing to enforce adequate cybersecurity measures. Lawmakers raised concerns that stolen police credentials are enabling unauthorized access to Flock’s surveillance camera network.

Satellites found exposing unencrypted data, including phone calls and some military comms

Security researchers have discovered that as many as half of all geostationary satellites in Earth’s orbit are carrying unencrypted sensitive consumer, corporate, and military information, making this data wide open to eavesdropping.

Event startup Partiful wasn’t stripping GPS locations from user-uploaded photos

A critical privacy vulnerability was discovered in the Partiful event planning app, where GPS metadata embedded in user-uploaded images—including public profile photos—was not stripped upon upload.

Viral call-recording app Neon goes dark after exposing users’ phone numbers, call recordings, and transcripts

The call-recording app Neon has been taken offline after a severe security flaw exposed users’ phone numbers, call recordings, transcripts, and metadata. The app failed to secure backend server responses.

Thousands of Indian bank transfer records found online

A data exposure incident compromised over 273,000 bank transfer documents in India. The breach stemmed from an unsecured Amazon-hosted cloud server, revealing personal and financial information linked to at least 38 banks and financial institutions.

Defend Against Threats with Cyber Fusion

Cyware is the leading provider of cyber fusion solutions that power threat intelligence sharing , end-to-end automation and 360-degree threat response.

Trending Tags