The breach, detected on October 25, 2025, occurred when an employee fell victim to a social engineering scam, allowing the attacker to access names, addresses, emails and phone numbers of individuals across DoorDash's operational regions.
Hackers have harnessed Australia's cyber incident disclosure platform ReportCyber to compromise cryptocurrency wallets as part of a new scam campaign, Cybernews reports.
More than 4,300 domains have been registered by Russian threat actors to impersonate widely known booking and rental services, such as Booking.com, Expedia, and Agoda, as part of a phishing campaign that has sought to pilfer hotel guests' payment details since February, The Hacker News reports.
The screen-sharing scam involves scammers initiating unexpected video calls, posing as trusted entities such as bank employees or Meta support agents, according to research by ESET.
Humanix Security Inc. specializes in safeguarding the human layer of organizations, focusing on individuals, help desks and customer-facing channels vulnerable to social engineering exploits.
Manufacturing, government, telecommunications, energy, automotive, and professional services organizations in Germany, Hungary, Slovakia, and the Czech Republic have been subjected to a covert phishing campaign that leveraged security filter-evading HTML files and Telegram bots to pilfer credentials, The Cyber Express reports.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.