Astrana Health Data Breach Impacts Private, Confidential Information
Teaser from the source
Hackers impersonated the company’s personnel and contacted its employees to gain access to Astrana Health’s servers. The post Astrana Health Data Breach Impacts Private, Confidential Information appeared first on SecurityWeek .
This is the RSS-feed teaser. Read the full article at the original source.
Read at SecurityWeek →More on Confidential
Other advisories
- osv:GHSA-29h2-jr22-frmhnoneOpenZeppelin Confidential Contracts `VestingWalletConfidential`: a malicious ERC-7984 token is able to extract private data from the vesting wallet
- ghsa:GHSA-29h2-jr22-frmhhighOpenZeppelin Confidential Contracts `VestingWalletConfidential`: a malicious ERC-7984 token is able to extract private data from the vesting wallet
- CVE-2026-56136noneIn NTFS-3G through 2026.2.25, an out-of-bounds read exists in ntfs_ir_nill() in libntfs-3g/index.c that allows an attacker to read possibly confidential information in an ntfs-3g process by crafting a malicious NTFS image. This read operation is triggered by creation of a file with a crafted name.
- CVE-2026-60589noneVulnerability in the Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Security). Supported versions that are affected are Oracle Java SE: 8u501, 11.0.32, 17.0.20, 21.0.12, 25.0.4, 26.0.2; Oracle GraalVM for JDK: 17.0.20 and 21.0.12; Oracle GraalVM Enterprise Edition: 21.3.19. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Java SE, Oracle GraalVM for JDK, Oracle GraalVM Enterprise Edition accessible data. Note: This vulnerability can only be exploited by supplying data to APIs in the specified Component without using Untrusted Java Web Start applications or Untrusted Java applets, such as through a web service. CVSS 3.1 Base Score 3.7 (Confidentiality impacts). CVSS Vect
- osv:CVE-2026-47699noneConfidential Containers Guest Components image-rs: zip-slip-class arbitrary file write via absolute entry path in hardlink fallback
- CVE-2026-73645nonenpm @openzeppelin/confidential-contracts: Ganzzahlueberlauf
- CVE-2026-73645nonenpm @openzeppelin/confidential-contracts: Ganzzahlueberlauf
- osv:CVE-2026-73645noneOpenZeppelin Confidential Contracts ERC7984ERC20Wrapper: once a wrapper is filled, subsequent wrap requests do not revert and result in loss of funds.
Other news entries
- Newscert-fr2026-10-09Multiples vulnérabilités dans les produits Nextcloud (09 octobre 2026)
- Newscert-fr2026-10-09Multiples vulnérabilités dans Apache Struts (09 octobre 2026)
- Newscert-fr2026-10-09Multiples vulnérabilités dans le noyau Linux d'Ubuntu (09 octobre 2026)
- Newscert-fr2026-10-09Multiples vulnérabilités dans le noyau Linux de Debian LTS (09 octobre 2026)
- Newscert-fr2026-10-09Multiples vulnérabilités dans le noyau Linux de SUSE (09 octobre 2026)
- Newscert-fr2026-10-08Multiples vulnérabilités dans les produits Splunk (08 octobre 2026)
- Newscert-fr2026-10-07Multiples vulnérabilités dans Google Pixel (07 octobre 2026)
- Newscert-fr2026-10-07Multiples vulnérabilités dans Traefik (07 octobre 2026)
Source: https://www.securityweek.com/astrana-health-data-breach-impacts-private-confidential-information/
ID