Data breach hits sports betting firm BetMGM New Jersey-based sports betting operator BetMGM has been impacted by a data breach that resulted in the theft of its customers' personal information, BleepingComputer reports.
Threat actors affiliated with the Play ransomware strain are leveraging a never-before-seen exploit method that bypasses Microsoft's ProxyNotShell URL rewrite mitigation to gain remote code execution through Outlook Web Access (OWA).
Major U.S. education publisher McGraw Hill had information from more than 100,000 students, as well as its digital keys and source code exposed as a result of misconfigurations in its Amazon Web Services S3 buckets, which could have been accessed since 2015, The Register reports.
Nearly 68,000 DraftKings customers had their personal data compromised after a credential stuffing attack against the sports betting platform last month, according to BleepingComputer.
Social media analytics platform Social Blade has confirmed being impacted by a data breach after a database claimed to have been stolen from the company was offered for sale on a hacker forum, reports SecurityWeek.
Private Minecraft servers are being targeted by the novel cross-platform botnet MCCrash, which could facilitate distributed denial-of-service attacks, according to The Hacker News.
The FBI's InfraGard program for protecting U.S. critical infrastructure in partnership with the private sector had its more than 80,000-member database compromised, according to The Associated Press.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.