Top Security Breaches 2025-12-30
Auto-generated 2025-12-30T09:00:29.955038+00:00 (UTC)
-
Traditional Security Frameworks Leave Organizations Exposed to AI-Specific Attack Vectors
Source: The Hacker News | Published: 2025-12-29T06:34:00+00:00 | Score: 21.21
In December 2024, the popular Ultralytics AI library was compromised, installing malicious code that hijacked system resources for cryptocurrency mining. In August 2025, malicious Nx packages leaked 2,349 GitHub, cloud, and AI credentials. Throughout 2024, ChatGPT vulnerabilities allowed unauthorized extraction of user data from AI memory.
The result: 23.77 million secrets were leaked through AI -
Coupang to split $1.17 billion among 33.7 million data breach victims
Source: BleepingComputer | Published: 2025-12-29T22:27:01+00:00 | Score: 17.783
Coupang, the largest retailer in South Korea, announced $1.17 billion (1.685 trillion Won) total compensation for the 33.7 million customers whose information was exposed in the data breach discovered last month. […]
-
⚡ Weekly Recap: Firewall Exploits, AI Data Theft, Android Hacks, APT Attacks, Insider Leaks & More
Source: The Hacker News | Published: 2025-12-22T12:00:00+00:00 | Score: 17.737
Cyber threats last week showed how attackers no longer need big hacks to cause big damage. They’re going after the everyday tools we trust most — firewalls, browser add-ons, and even smart TVs — turning small cracks into serious breaches.
The real danger now isn’t just one major attack, but hundreds of quiet ones using the software and devices already inside our networks. Each trusted system can -
Hacker claims to leak WIRED database with 2.3 million records
Source: BleepingComputer | Published: 2025-12-28T17:57:34+00:00 | Score: 17.466
A hacker claims to have breached Condé Nast and leaked an alleged WIRED database containing more than 2.3 million subscriber records, while also warning that they plan to release up to 40 million additional records for other Condé Nast properties. […]
-
LastPass 2022 Breach Led to Years-Long Cryptocurrency Thefts, TRM Labs Finds
Source: The Hacker News | Published: 2025-12-25T12:46:00+00:00 | Score: 15.047
The encrypted vault backups stolen from the 2022 LastPass data breach have enabled bad actors to take advantage of weak master passwords to crack them open and drain cryptocurrency assets as recently as late 2025, according to new findings from TRM Labs.
The blockchain intelligence firm said evidence points to the involvement of Russian cybercriminal actors in the activity, with one of the -
INTERPOL Arrests 574 in Africa; Ukrainian Ransomware Affiliate Pleads Guilty
Source: The Hacker News | Published: 2025-12-23T11:35:00+00:00 | Score: 14.972
A law enforcement operation coordinated by INTERPOL has led to the recovery of $3 million and the arrest of 574 suspects by authorities from 19 countries, amidst a continued crackdown on cybercrime networks in Africa.
The coordinated effort, named Operation Sentinel, took place between October 27 and November 27, 2025, and mainly focused on business email compromise (BEC), digital extortion, and -
ThreatsDay Bulletin: WhatsApp Hijacks, MCP Leaks, AI Recon, React2Shell Exploit and 15 More Stories
Source: The Hacker News | Published: 2025-12-18T13:10:00+00:00 | Score: 14.752
This week’s ThreatsDay Bulletin tracks how attackers keep reshaping old tools and finding new angles in familiar systems. Small changes in tactics are stacking up fast, and each one hints at where the next big breach could come from.
From shifting infrastructures to clever social hooks, the week’s activity shows just how fluid the threat landscape has become.
Here’s the full rundown of what -
Attacks are Evolving: 3 Ways to Protect Your Business in 2026
Source: The Hacker News | Published: 2025-12-24T11:30:00+00:00 | Score: 14.731
Every year, cybercriminals find new ways to steal money and data from businesses. Breaching a business network, extracting sensitive data, and selling it on the dark web has become a reliable payday.
But in 2025, the data breaches that affected small and medium-sized businesses (SMBs) challenged our perceived wisdom about exactly which types of businesses cybercriminals are targeting. 
End of report.
