Mathew J. Schwartz
euroinfosec@infosec.exchange
<p>Cybersecurity journalist — I'm Executive Editor at Information Security Media Group, leading its DataBreachToday website as well as UK/Europe coverage of all things security, privacy, cybercrime, surveillance and more.</p>
Posts
-
Post #4498570
Financially motivated hackers linked to China and tracked as Storm-1175 began deploying a new ransomware strain, possibly after exploiting a critical authentication bypass vulnerability in N-able's remote monitoring and management software, which is widely used by managed service providers. https://www.databreachtoday.com/china-linked-hackers-exploit-n-able-flaw-in-ransomware-attacks-a-32506
-
Post #4497375
Meta glasses banned from courts in England and Wales https://www.theguardian.com/technology/2026/aug/11/meta-glasses-banned-from-courts-in-england-and-wales #privacy
-
Post #4495476
Exfiltration-focused gang ExfilSquad has started dumping stolen data. The cities of Atlanta and Houston, plus British police, Newcastle University and Frontier Airlines are among the group's claimed victims. https://www.databreachtoday.com/exfiltration-focused-exfilsquad-starts-leaking-stolen-data-a-32494
-
Post #4493970
While Lepore’s book examines technocratic philosophies that go back centuries, she argued that many of Silicon Valley’s “charismatic or not-so-charismatic leaders” — especially Elon Musk — seem to be ushering in a future pulled from misread pulp science fiction and comic books. https://techcrunch.com/2026/08/09/historian-jill-lepore-says-the-tech-industry-is-led-by-bad-readers-who-are-undermining-democracy/
-
Post #4488206
Fresh N-able zero day puts MSPs on defensive: second hotfix issued for remote management and monitoring technology widely used by managed security providers https://www.databreachtoday.com/new-n-able-zero-day-puts-msps-on-defensive-a-32458
-
Post #4485121
Financial services is under fire from rebranded extortionists. Originally called BlackFile, the vishing-savvy, supposedly retired group is now operating as Redact, Pink, Helix and Falcon. https://www.bankinfosecurity.com/financial-services-under-fire-from-rebranded-extortionists-a-32464
-
Post #4433188
The use of web tracking pixels that transmit healthcare website and patient portal users' to third-party marketing and advertising firms has been the subject of many data breach investigations, regulatory enforcement actions and proposed civil class action lawsuits over the last several years. https://www.databreachtoday.com/court-tosses-web-tracker-suit-against-crh-healthcare-a-32447
-
Post #4426913
GPS signals can be jammed, spoofed or lost. The U.S. government is trying to address those risks by promoting a new-generation quantum clock, known as optical atomic clocks, and creating a market for the ultra-precise and resilient timing technology. The program, called "It's About Time," is the next step to DARPA's 2022 Robust Optical Clock Network initiative that created compact versions of the chunky optical clocks in lab configurations. These clock prototypes have gone th...
-
Post #4412733
Beacon CRM, widely used by charities, suffers data breach, with English National Ballet being among the confirmed victims notifying supporters https://www.databreachtoday.com/beacon-crm-widely-used-by-charities-suffers-data-breach-a-32420
-
Post #4378926
Pharmaceutical maker Amgen has notified the U.S. Securities and Exchange Commission that cybercriminals may have stolen a cache of sensitive company data, including patient information, intellectual property, research and development and other confidential business files. https://www.databreachtoday.com/amgen-tells-sec-hack-exposed-patient-data-trade-secrets-a-32401
-
Post #4376871
New York pours $9 million into water cyber defense amid attacks https://www.databreachtoday.com/new-york-pours-9m-into-water-cyber-defense-amid-attacks-a-32403
-
Post #4374522
Hackers are using hotel Wi-Fi networks across the United States, India and Saudi Arabia to steal credentials, exfiltrate data and spread malware onto personal devices, researchers warn. https://www.databreachtoday.com/travelers-beware-russian-intel-hacking-hotel-wi-fi-a-32405
-
Post #4338584
Russian espionage hackers are targeting Zimbra Collaboration Suite with half-click attacks by exploiting a flaw (a patch is available) to execute a malicious script simply if a recipient reads the email in their webmail client. https://www.databreachtoday.com/russian-espionage-hackers-hit-zimbra-half-click-attacks-a-32322
-
Post #4338583
Leadership void: No single senior official is in charge of U.S. efforts to help secure commercial satellites and their land-based infrastructure against hackers, online spies and cyber attackers. https://www.databreachtoday.com/us-space-cybersecurity-no-one-in-charge-a-32342
-
Post #4338582
Ransomware hackers, faced with declining willingness to accede to extortion, are resorting to ever more outlandish pressure tactics - including dispatching threat actors in disguise, to steal sensitive data in person. https://www.databreachtoday.com/flailing-ransomware-hackers-resorting-to-extreme-tactics-a-32375 #sneakernet
-
Post #4338581
Amazon is redirecting engineering and computing resources from its Nova portfolio to a new frontier model, betting that specialization, customer-specific training and lower operating costs will matter more as leading AI systems approach comparable capability. https://www.databreachtoday.com/amazon-custom-frontier-model-cut-costs-target-niches-a-32382
-
Post #4279648
Hugging Face incident spurs calls for European AI autonomy https://www.databreachtoday.com/hugging-face-incident-spurs-calls-for-european-ai-autonomy-a-32377
-
Post #4277678
Weekly Cryptohack Roundup —Triple-A wallet compromised —Verus-Ethereum Bridge exploited —Hackers use SparkKitty malware to steal seed phrases —Fake IRS letters target crypto holders with phishing scam —BitMart to shutter —European Union bans transactions with HTX https://www.databreachtoday.com/cryptohack-roundup-triple-a-verus-ethereum-bridge-exploits-a-32374
-
Post #4276388
Weekly Data Breach Roundup —"I'm mean there could be, yeah," is what OpenAI's Sam Altman said when asked about more model hacking —Russian nation-state hacking group revived with an Outlook web access exploit —Coca-Cola rebooted Fairlife milk production after ransomware attack —U.K. Education Department breach —Russian arrest warrant for Telegram's Pavel Durov —Researchers highlight how hidden prompts could spread through Microsoft Copilot https://www.databreachtoday.com/br...
-
Post #4235513
A slew of attacks against open-source libraries trace back to a financially motivated North Korean nation-state threat actor, Amazon Web Services reports. The group gets tracked as Sapphire Sleet or Stardust Chollima. https://www.databreachtoday.com/north-korea-behind-slew-javascript-supply-chain-hacks-a-32366
-
Post #4232639
Claude Mythos demonstrates that LLMs can find new, working attacks on cryptographic algorithms. Cryptographers and security experts have welcomed the LLM-driven results as a fresh set of eyes, especially as the world moves toward quantum-safe cryptography. https://www.databreachtoday.com/claude-mythos-finds-new-cryptographic-algorithm-attacks-a-32360 #PQC
-
Post #4189016
Dozens of the world's biggest technology firms are joining a new Nvidia-led initiative to build open-source security tools for artificial intelligence. https://www.databreachtoday.com/nvidia-launches-open-source-ai-security-alliance-a-32339
-
Post #4188877
Many more bugs are getting found, but exploits stay steady: Data shows hackers not using a greater number of new exploits per year, but they are exploiting flaws more quickly https://www.databreachtoday.com/many-more-bugs-but-exploits-stay-steady-a-32346 @jgamblin@infosec.exchange @vulncheck@infosec.exchange
-
Post #4187672
Crime watch: A former certified public accountant will serve four years in federal prison following his recent conviction in a money laundering scheme in which a hacker compromised a vendor's email account and instructed a Georgia children's hospital to divert a $5.3 million electronic payment to a fraudulent bank account. https://www.databreachtoday.com/cpa-gets-prison-time-in-53m-healthcare-fraud-case-a-32338
-
Post #4167394
Project Perception: Microsoft on Monday launched a new security agent stack and a cyber-capable model it says can beat Mythos but costs half as much, for helping to find and fix software flaws. https://www.databreachtoday.com/microsoft-unveils-ai-security-stack-low-cost-cyber-model-a-32343
-
Post #4165523
Anthropic and Pentagon set to face off Thursday over blacklisting https://www.databreachtoday.com/anthropic-dod-set-to-face-off-thursday-over-blacklisting-a-32341
-
Post #4164638
Clop extortion group tied to hits on Boston-based PTC's popular product life cycle management software. https://www.databreachtoday.com/clop-tied-to-ptc-product-lifecycle-management-software-hits-a-32333 #cl0p #clop #ransomware
-
Post #4160486
Insane Castle Hurricane: Confusion proliferates as researchers keep assigning fresh codenames to hacking groups. In the words of veteran security researcher Daniel Cuthbert: "There is a massive need for standards in this space." More: https://www.databreachtoday.com/blogs/insane-castle-hurricane-apt-codename-confusion-proliferates-p-4162
-
Post #4137818
Don't stop sharing: Lawmakers voted to extend a key cyberthreat sharing law for another decade, attaching the long-stalled reauthorization to Washington's annual defense policy bill. https://www.databreachtoday.com/us-house-votes-to-extend-cyber-sharing-law-for-10-years-a-32329
-
Post #4136396
Combating grooming and violent content: European law enforcement notified hosting providers of 4,340 URLs containing nihilistic violent extremism in a weeks-long international crackdown, the European Union's law enforcement intelligence agency said Friday. https://www.databreachtoday.com/europol-flags-4340-urls-tied-to-com-network-a-32325