India’s Department of Telecommunications has given phone makers 90 days to pre-install a state-owned app on new devices and push it to current phones through software updates, according to Reuters. This order was sent to manufacturers like Apple, Samsung, Vivo, Oppo, and Xiaomi on November 28th. The state-owned Sanchar Saathi …
Read More »OpenAI Reveals API customer data breach via Mixpanel vendor hack
OpenAI has revealed a data breach involving Mixpanel, a third-party analytics provider that was used to monitor API platform usage. The breach exposed limited but sensitive user information, including names, email addresses, operating system details, and browser metadata. OpenAI stated that the incident came from Mixpanel’s infrastructure and did not involve …
Read More »SitusAMC breached: JPMorgan, Citi, Morgan Stanley client data may have exposed
SitusAMC, a real estate finance and tech firm, announced a data breach after suffering a hacker attack. They discovered the incident on November 12th and found that sensitive data may have been compromised. The SitusAMC breach is notable because it serves major Wall Street banks and many other financial institutions. …
Read More »WhatsApp API flaw let researchers scrape millions of Bangladeshi accounts
Researchers gathered 3.5 billion WhatsApp phone numbers and personal information by abusing a contact-discovery API without proper rate limiting. This study shows a common tactic used by threat actors to collect user information from unprotected public APIs, even though the researchers haven’t shared the data. Abusing WhatsApp API: The researchers …
Read More »CISA warns of active exploitation of Oracle Identity Manager RCE flaw
CISA warns government agencies to patch Oracle Identity Manager (CVE-2025-61757) due to potential zero-day exploitation. CVE-2025-61757 is a pre-authentication remote code execution vulnerability in Oracle Identity Manager, found by Searchlight Cyber analysts Adam Kues and Shubham Shahflaw. The flaw stems from an authentication bypass in Oracle Identity Manager’s REST APIs, …
Read More »Clop Ransomware Lists 39 Global Victims Including Broadcom, Oracle & Canon,,,
The Clop ransomware group published a list that listed 39 new victims on its data leak site in the last 24 hours. This increase in listings suggests a major automated campaign. The Clop ransomware gang has claimed breach of Oracle’s internal systems. This is part of a large extortion campaign …
Read More »AMD, Cisco and Saudi’s Humain launch AI joint venture, 100 mw data center project
AMD, Cisco, and Saudi AI startup Humain are partnering to make data centers in the Middle East and have secured their first customer, the CEOs shared with Reuters on Tuesday. A new joint venture will launch a 100-megawatt data center in Saudi Arabia, the computing capacity of which Humain has …
Read More »Cloudflare Outage: Millions Hit, Billions Lost: How Much It Cost?
Yesterday, Cloudflare outage disrupted major platforms like ChatGPT, X, Uber, Canva, Downdetector and some other services, leaving users with 500 Internal Server Errors. Cloudflare traced the issue to an oversized configuration file that affected its network. A fix was implemented by around 9:42 a.m. ET, leading to a gradual recovery, …
Read More »Azure hit by Record 15 Tbps DDoS attack using 500,000+ IP addresses
On October 24, 2025, Azure DDoS Protection detected and mitigated the largest cloud DDoS attack at 15.72 Tbps with nearly 3.64 billion packets per second, aimed at one endpoint in Australia. Azure’s global DDoS Protection system quickly identified and mitigated threats, filtering out harmful traffic and ensuring continuous service for …
Read More »Microsoft November 2025 Patch Tuesday fixes 63 flaws 1 zero-day
Microsoft has issued its November 2025 Patch Tuesday, fixing 63 vulnerabilities, including a high-priority zero-day flaw that’s currently exploited. This crucial update provides five critical and 64 important fixes, vital for organizations to strengthen their defenses. The updates span key products like SQL Server, Windows Hyper-V, Visual Studio, Windows Kernel, …
Read More »
InfoSecBulletin Cybersecurity for mankind