IT Security Newsletter

IT Security Newsletter - 4/27/2026

Written by Cadre | Mon, Apr 27, 2026

ADT confirms data breach after ShinyHunters leak threat

Home security giant ADT has confirmed a data breach after the ShinyHunters extortion group threatened to leak stolen data unless a ransom is paid. In a statement shared today, the company said it detected unauthorized access to customer and prospective customer data on April 20, after which it terminated the intrusion and launched an investigation. This investigation determined that personal information was stolen during the breach. READ MORE...

ShinyHunters claim they have cruise giant Carnival's booty as 7.5M emails surface

Carnival Corporation, the world's largest cruise company, is dealing with choppy waters after Have I Been Pwned flagged what it claimed were 7.5 million unique email addresses all allegedly tied to one of its subsidiaries. According to HIBP, the haul totals 8.7 million records and appears to relate to the Mariner Society loyalty program run by Holland America Line, a subsidiary of Carnival Corporation READ MORE...

American utility firm Itron discloses breach of internal IT network

Utility technology company Itron, Inc. has disclosed that an unauthorized third party accessed some of its internal systems during a cyberattack. The company states that it activated its cybersecurity response plan when detecting the activity last month, notified law enforcement authorities, and engaged external advisors to support the investigation and incident containment. The unauthorized activity has now been blocked, and the company stated that it has observed no follow-up activity. READ MORE...

China-Linked APT GopherWhisper Abuses Legitimate Services in Government Attacks

A newly uncovered APT is relying on legitimate services for command-and-control (C&C) communication and data exfiltration, ESET warns. Tracked as GopherWhisper (PDF) and active since at least November 2023, the hacking group is operating out of China, as timestamp inspection of chat messages and emails has revealed. The APT came to the spotlight in January 2025, during the investigation into a Go-based backdoor found on the systems of a governmental entity in Mongolia. READ MORE...

Crime crew impersonates help desk, abuses Microsoft Teams to steal your data

A previously unknown threat group using tried-and-tested social engineering tactics - Microsoft Teams chat invitations and helpdesk staff impersonation - is also using custom malware in its data-stealing attacks, according to Google's Threat Intelligence Group. The threat hunters say they spotted a "large email campaign" in late December 2025. The attack started by spamming target organizations with an overwhelming amount of email traffic. READ MORE...

Hasbro expects March cyberattack to impact second-quarter revenue

Hasbro, in a financial update released Thursday, said it expects to report some impact to second-quarter revenue and operating profit following a March cyberattack, which led to some delays in order processing, shipping and invoicing. The now-contained attack resulted in certain systems being taken offline. Hasbro said it is making progress toward a full restoration of systems and operations. READ MORE...

Firefox Vulnerability Allows Tor User Fingerprinting

Researchers have discovered a vulnerability that could allow threat actors to fingerprint Firefox users, even in Private Browsing mode. The issue also affects the Tor anonymity browser, which is based on Firefox. The vulnerability, tracked as CVE-2026-6770, is related to the IndexedDB browser API, which is used for storing structured data on the client side. Firefox stores IndexedDB database names using internal UUID mappings, and when a website lists those databases. READ MORE...

  • ...in 1981, Xerox PARC introduces the 8010 Star workstation, the first personal computer to ship with a mouse peripheral.
  • ...in 1988, singer/songwriter Lizzo (born Melissa Viviane Jefferson) is born in Detroit, MI.
  • ...in 1989, protesting students from Peking University take over Tiananmen Square in Beijing, China.
  • ...in 1994, Nelson Mandela wins the presidency in South Africa's first democratic and multiracial general election.