Security Affairs
Public PoC triggers active exploitation of critical SharePoint RCE vulnerability CVE-2026-50522|Zimbra 10.1.20 patches multiple security issues, including a critical command injection bug|Qilin Ransomware Affiliates Abuse CVE-2026-0257 to Gain Unauthorized VPN Access|Attackers Exploit Critical ServiceNow RCE Flaw CVE-2026-6875|Dutch Intelligence Warns Russia Uses Hacked IP Cameras for Military Espionage|Critical 7-Zip Flaw Allows Code Execution by Opening Crafted XZ-Compressed Files. Update it now!|CVE-2026-42533: Critical NGINX Bug Could Turn HTTP Requests Into Server Takeovers|AI Agents Turned Into Attackers: Hugging Face Reveals Autonomous Intrusion Campaign|Volexity Uncovers Zero-Day Campaign Targeting SonicWall VPN Appliances|SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 106|Security Affairs newsletter Round 586 by Pierluigi Paganini – INTERNATIONAL EDITION|Attackers Can Take Over WordPress Sites Using Newly Released wp2shell Exploits|Public PoC triggers active exploitation of critical SharePoint RCE vulnerability CVE-2026-50522|Zimbra 10.1.20 patches multiple security issues, including a critical command injection bug|Qilin Ransomware Affiliates Abuse CVE-2026-0257 to Gain Unauthorized VPN Access|Attackers Exploit Critical ServiceNow RCE Flaw CVE-2026-6875|Dutch Intelligence Warns Russia Uses Hacked IP Cameras for Military Espionage|Critical 7-Zip Flaw Allows Code Execution by Opening Crafted XZ-Compressed Files. Update it now!|CVE-2026-42533: Critical NGINX Bug Could Turn HTTP Requests Into Server Takeovers|AI Agents Turned Into Attackers: Hugging Face Reveals Autonomous Intrusion Campaign|Volexity Uncovers Zero-Day Campaign Targeting SonicWall VPN Appliances|SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 106|Security Affairs newsletter Round 586 by Pierluigi Paganini – INTERNATIONAL EDITION|Attackers Can Take Over WordPress Sites Using Newly Released wp2shell Exploits|
Advertisement

Ad Placeholder

Full Width × 90

Breaking News

Personal details and SSNs of 40,000 US citizens available for sale

Security experts at threat intelligence firm Cyble have identified a credible actor selling personal details of approximately 40,000 US citizens. Security experts at threat intelligence firm Cyble Experts have discovered the availability on the darkweb of personal details of approximately 40,000 US citizens along with their social security numbers (SSNs). The huge trove of data was discovered […]

US citizens data dark web

Security experts at threat intelligence firm Cyble have identified a credible actor selling personal details of approximately 40,000 US citizens.

Security experts at threat intelligence firm Cyble Experts have discovered the availability on the darkweb of personal details of approximately 40,000 US citizens along with their social security numbers (SSNs).

The huge trove of data was discovered by the researchers during their regular Deepweb and Darkweb monitoring activity. The experts came across a post published by a credible actor that claimed to be in possession of a database containing data of US citizens.

The leaked records includes the following details of the USA citizens:

  • First Name
  • Last Name
  • Address
  • City
  • State
  • Zip
  • Social Security Number (SSN)
  • Date of Birth (DOB)

The availability of such kind of data poses a serious risk to the US citizens that could be targeted by crooks in large scale phishing campaigns or financial frauds.

Cyble acquired and indexed the database on its data breach monitoring and notification platform, AmiBreached.com.

People who’re concerned about their information exposure can register on the platform to query it to check if their data have been exposed.

The experts provided the following recommendations to the users:

  • Never share personal information, including financial information over the phone, email or SMSs
  • Use strong passwords and enforce multi-factor authentication where possible
  • Regularly monitor your financial transaction, if you notice any suspicious transaction, contact your bank immediately.
  • Turn-on automatic software update feature on your computer, mobile and other connected devices where possible and pragmatic
  • Use a reputed anti-virus and internet security software package on your connected devices including PC, Laptop, Mobile
  • People who are concerned about their exposure in darkweb can register at AmiBreached.com to ascertain their exposure.
[adrotate banner=”9″][adrotate banner=”12″]

Pierluigi Paganini

(SecurityAffairs – hacking, US citizens)

[adrotate banner=”5″]

[adrotate banner=”13″]