# Data breaches

Published articles for Data breaches.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Chargeback Fraud Prevention: How to Protect Your Digital Business Revenue

DevFeed: [Chargeback Fraud Prevention: How to Protect Your Digital Business Revenue](<https://devfeed.tech/articles/chargeback-fraud-prevention-how-to-protect-your-digital-business-revenue-9729.md>)

Original publisher: [Read original article](<https://dodopayments.com/blogs/chargeback-fraud-prevention/>)

Author: Ayush Agarwal

Published: 2026-04-04T00:00:00Z

Content type: tutorial

Language: en

Sources: [Dodo Payments Blog](<https://devfeed.tech/sources/dodo-payments-blog.md>)

Topics: [Security, Privacy and Abuse Prevention](<https://devfeed.tech/topics/security-privacy-and-abuse-prevention.md>), [Software as a service](<https://devfeed.tech/topics/saas.md>), [account takeover](<https://devfeed.tech/topics/account-takeover.md>), [Software](<https://devfeed.tech/topics/software.md>)

Tags: [account-takeover](<https://devfeed.tech/tags/account-takeover.md>), [chargebacks](<https://devfeed.tech/tags/chargebacks.md>), [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [digital-products](<https://devfeed.tech/tags/digital-products.md>), [fraud-prevention](<https://devfeed.tech/tags/fraud-prevention.md>), [merchant-of-record](<https://devfeed.tech/tags/merchant-of-record.md>), [payment-fraud](<https://devfeed.tech/tags/payment-fraud.md>), [payments](<https://devfeed.tech/tags/payments.md>), [phishing](<https://devfeed.tech/tags/phishing.md>), [revenue](<https://devfeed.tech/tags/revenue.md>), [saas](<https://devfeed.tech/tags/saas.md>)

### AI overview

A guide to preventing chargeback fraud for SaaS and digital product businesses. It explains types of chargeback fraud, signals to monitor, fraud-prevention tools, and how the Merchant of Record model can shift fraud liability.

### Source excerpt

Stop chargeback fraud with proven prevention strategies for digital product sellers and SaaS companies, from fraud signals to MoR protection.

## A brush with online fraud: What are brushing scams and how do I stay safe?

DevFeed: [A brush with online fraud: What are brushing scams and how do I stay safe?](<https://devfeed.tech/articles/a-brush-with-online-fraud-what-are-brushing-scams-and-how-do-i-stay-safe-8400.md>)

Original publisher: [Read original article](<https://www.welivesecurity.com/en/scams/brush-online-fraud-what-are-brushing-scams-how-do-i-stay-safe/>)

Author: Phil Muncaster

Published: 2025-12-23T10:00:00Z

Content type: article

Language: en

Sources: [WeLiveSecurity](<https://devfeed.tech/sources/welivesecurity.md>)

Topics: [Cybercrime](<https://devfeed.tech/topics/cybercrime.md>), [data](<https://devfeed.tech/topics/data.md>), [QR Code](<https://devfeed.tech/topics/qrcode.md>), [Malware](<https://devfeed.tech/topics/malware.md>), [online privacy](<https://devfeed.tech/topics/online-privacy.md>)

Tags: [cybercrime](<https://devfeed.tech/tags/cybercrime.md>), [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [fraud](<https://devfeed.tech/tags/fraud.md>), [identity](<https://devfeed.tech/tags/identity.md>), [malware](<https://devfeed.tech/tags/malware.md>), [phishing](<https://devfeed.tech/tags/phishing.md>), [qr-code](<https://devfeed.tech/tags/qr-code.md>), [scams](<https://devfeed.tech/tags/scams.md>)

### AI overview

The article explains brushing scams, in which fraudsters send unsolicited low-value packages to manipulate marketplace ratings and reviews. It warns that such activity may indicate exposed personal data, identity-fraud risk, or phishing and malware threats delivered through QR codes.

### Source excerpt

Have you ever received a package you never ordered? It could be a warning sign that your data has been compromised, with more fraud to follow.

## GitHub "besieged" by malware repositories and repo confusion: Why you'll be ok

DevFeed: [GitHub "besieged" by malware repositories and repo confusion: Why you'll be ok](<https://devfeed.tech/articles/github-besieged-by-malware-repositories-and-repo-confusion-why-you-ll-be-ok-7941.md>)

Original publisher: [Read original article](<https://snyk.io/blog/github-malware-repositories-repo-confusion/>)

Author: Liran Tal

Published: 2024-03-12T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [GitHub](<https://devfeed.tech/topics/github.md>), [Malware](<https://devfeed.tech/topics/malware.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [open-source-security](<https://devfeed.tech/topics/open-source-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [Development](<https://devfeed.tech/topics/development.md>), [Python](<https://devfeed.tech/topics/python.md>), [Shell](<https://devfeed.tech/topics/shell.md>)

Tags: [acquisition](<https://devfeed.tech/tags/acquisition.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [best-practices](<https://devfeed.tech/tags/best-practices.md>), [blog](<https://devfeed.tech/tags/blog.md>), [code-security](<https://devfeed.tech/tags/code-security.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [dependency](<https://devfeed.tech/tags/dependency.md>), [developer](<https://devfeed.tech/tags/developer.md>), [developers](<https://devfeed.tech/tags/developers.md>), [devrel](<https://devfeed.tech/tags/devrel.md>), [github](<https://devfeed.tech/tags/github.md>), [javascript](<https://devfeed.tech/tags/javascript.md>), [malware](<https://devfeed.tech/tags/malware.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [open-source-security](<https://devfeed.tech/tags/open-source-security.md>), [python](<https://devfeed.tech/tags/python.md>), [ruby](<https://devfeed.tech/tags/ruby.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk-open-source](<https://devfeed.tech/tags/snyk-open-source.md>), [snyk-platform](<https://devfeed.tech/tags/snyk-platform.md>), [software-development](<https://devfeed.tech/tags/software-development.md>)

### AI overview

This article examines malware repositories and repository confusion attacks on GitHub. It explains how malicious code can spread when repositories are cloned or incorporated into projects, potentially causing data breaches or system compromises. The article recommends vetting repositories, authenticating repository authority, reviewing code and repository history, and applying security best practices, while also mentioning Snyk Advisor and Snyk Learn.

### Source excerpt

In this post, we'll discuss the recent discovery of malware repositories and repo confusion on GitHub, and cover how to keep your applications secure.

## Incident management really can be for everyone

DevFeed: [Incident management really can be for everyone](<https://devfeed.tech/articles/incident-management-really-can-be-for-everyone-11828.md>)

Original publisher: [Read original article](<https://incident.io/blog/incident-management-for-all>)

Author: incident.io

Published: 2023-11-14T14:29:01Z

Content type: opinion

Language: en

Sources: [The incident.io Blog](<https://devfeed.tech/sources/the-incident-io-blog.md>)

Topics: [incident management](<https://devfeed.tech/topics/incident-management.md>), [incident](<https://devfeed.tech/topics/incident.md>), [data](<https://devfeed.tech/topics/data.md>), [Server](<https://devfeed.tech/topics/server.md>)

Tags: [breach](<https://devfeed.tech/tags/breach.md>), [compliance](<https://devfeed.tech/tags/compliance.md>), [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [developers](<https://devfeed.tech/tags/developers.md>), [engineering](<https://devfeed.tech/tags/engineering.md>), [incident](<https://devfeed.tech/tags/incident.md>), [incident-channel](<https://devfeed.tech/tags/incident-channel.md>), [incident-management](<https://devfeed.tech/tags/incident-management.md>), [incident-response](<https://devfeed.tech/tags/incident-response.md>), [management-tools](<https://devfeed.tech/tags/management-tools.md>), [outage](<https://devfeed.tech/tags/outage.md>), [post-mortem](<https://devfeed.tech/tags/post-mortem.md>), [slack-incident](<https://devfeed.tech/tags/slack-incident.md>), [tools](<https://devfeed.tech/tags/tools.md>)

### AI overview

The article argues that incident management should be accessible across an organization, not reserved for engineers responding to technical failures. It highlights participation by teams such as Customer Support, Risk, and Compliance, and presents contract breaches and potential information leaks as situations that require coordinated response, assigned roles, and follow-up actions.

### Source excerpt

It's time to move past the idea that incident management tools can only be used to respond to incidents--and only by engineering teams.

## Cybersecurity Venture's 2023 Software Supply Chain Attack Report

DevFeed: [Cybersecurity Venture's 2023 Software Supply Chain Attack Report](<https://devfeed.tech/articles/cybersecurity-venture-s-2023-software-supply-chain-attack-report-7881.md>)

Original publisher: [Read original article](<https://snyk.io/blog/cybersecurity-ventures-2023-software-supply-chain-attack-report/>)

Author: Sydney Milligan

Published: 2023-10-10T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [software supply-chain attack](<https://devfeed.tech/topics/software-supply-chain-attack.md>), [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Critical Infrastructure](<https://devfeed.tech/topics/critical-infrastructure.md>), [CI/CD](<https://devfeed.tech/topics/cicd.md>), [Software as a service](<https://devfeed.tech/topics/saas.md>)

Tags: [acquisition](<https://devfeed.tech/tags/acquisition.md>), [attacks](<https://devfeed.tech/tags/attacks.md>), [blog](<https://devfeed.tech/tags/blog.md>), [ci-cd](<https://devfeed.tech/tags/ci-cd.md>), [cloud](<https://devfeed.tech/tags/cloud.md>), [critical-infrastructure](<https://devfeed.tech/tags/critical-infrastructure.md>), [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [developer](<https://devfeed.tech/tags/developer.md>), [infrastructure](<https://devfeed.tech/tags/infrastructure.md>), [megawatt](<https://devfeed.tech/tags/megawatt.md>), [phishing](<https://devfeed.tech/tags/phishing.md>), [report](<https://devfeed.tech/tags/report.md>), [saas](<https://devfeed.tech/tags/saas.md>), [secure-software](<https://devfeed.tech/tags/secure-software.md>), [security](<https://devfeed.tech/tags/security.md>), [security-attacks](<https://devfeed.tech/tags/security-attacks.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [software-supply-chain-attack](<https://devfeed.tech/tags/software-supply-chain-attack.md>), [software-supply-chain-security](<https://devfeed.tech/tags/software-supply-chain-security.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [supply-chain-security](<https://devfeed.tech/tags/supply-chain-security.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

The article summarizes findings from Cybersecurity Ventures' 2023 Software Supply Chain Attack Report. It predicts that the global cost of software supply chain attacks could reach nearly $138 billion by 2031 and explains how software complexity, cloud applications, and operational pipelines increase supply chain risk. It describes common attack methods, including social engineering, phishing, stolen credentials, CI/CD pipeline compromise, vulnerability exploitation, open-source component targeting, typosquatting, insider threats, and cloud hijacking. The article also examines the 2020 SolarWinds attack, in which a backdoor inserted into an Orion update affected approximately 18,000 customers and put critical infrastructure operations at risk.

### Source excerpt

Cybersecurity Ventures predicts the global cost of software supply chain attacks will reach nearly $138 billion by 2031. Learn more by reading the 2023 Software Supply Chain Attack Report.

## Security implications of cross-origin resource sharing (CORS) in Node.js

DevFeed: [Security implications of cross-origin resource sharing (CORS) in Node.js](<https://devfeed.tech/articles/security-implications-of-cross-origin-resource-sharing-cors-in-node-js-8089.md>)

Original publisher: [Read original article](<https://snyk.io/blog/security-implications-cors-node-js/>)

Author: Victor Ikechukwu

Published: 2023-09-13T05:00:00Z

Content type: article

Language: en

Sources: [Blog RSS Feed | Snyk](<https://devfeed.tech/sources/blog-rss-feed-snyk.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [Node.js](<https://devfeed.tech/topics/node-js.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [web applications](<https://devfeed.tech/topics/web-applications.md>), [JavaScript](<https://devfeed.tech/topics/javascript.md>), [Code](<https://devfeed.tech/topics/code.md>)

Tags: [acquisition](<https://devfeed.tech/tags/acquisition.md>), [application-security](<https://devfeed.tech/tags/application-security.md>), [awareness](<https://devfeed.tech/tags/awareness.md>), [best-practices](<https://devfeed.tech/tags/best-practices.md>), [blog](<https://devfeed.tech/tags/blog.md>), [code](<https://devfeed.tech/tags/code.md>), [code-security](<https://devfeed.tech/tags/code-security.md>), [contentlab](<https://devfeed.tech/tags/contentlab.md>), [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [developer](<https://devfeed.tech/tags/developer.md>), [http](<https://devfeed.tech/tags/http.md>), [javascript](<https://devfeed.tech/tags/javascript.md>), [node-js](<https://devfeed.tech/tags/node-js.md>), [security](<https://devfeed.tech/tags/security.md>), [snyk-code](<https://devfeed.tech/tags/snyk-code.md>), [snyk-open-source](<https://devfeed.tech/tags/snyk-open-source.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>), [web](<https://devfeed.tech/tags/web.md>), [web-applications](<https://devfeed.tech/tags/web-applications.md>)

### AI overview

This article explains how cross-origin resource sharing (CORS) enables web applications to communicate across origins while working around same-origin policy restrictions. It uses a Node.js code sample to discuss CORS implementation, security risks such as data breaches and unauthorized access, best practices, and security testing.

### Source excerpt

This article will cover what CORS is and some of its use cases, as well as best practices for using CORS and testing the security of your code.

## Your non-technical teams should be using incident management tools, too

DevFeed: [Your non-technical teams should be using incident management tools, too](<https://devfeed.tech/articles/your-non-technical-teams-should-be-using-incident-management-tools-too-11935.md>)

Original publisher: [Read original article](<https://incident.io/blog/non-technical-teams>)

Author: Stephen Whitworth

Published: 2023-02-08T00:00:00Z

Content type: opinion

Language: en

Sources: [The incident.io Blog](<https://devfeed.tech/sources/the-incident-io-blog.md>)

Topics: [incident management](<https://devfeed.tech/topics/incident-management.md>), [incident](<https://devfeed.tech/topics/incident.md>), [Incident response](<https://devfeed.tech/topics/incident-response.md>), [data](<https://devfeed.tech/topics/data.md>)

Tags: [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [incident](<https://devfeed.tech/tags/incident.md>), [incident-channel](<https://devfeed.tech/tags/incident-channel.md>), [incident-management](<https://devfeed.tech/tags/incident-management.md>), [incident-response](<https://devfeed.tech/tags/incident-response.md>), [management](<https://devfeed.tech/tags/management.md>), [management-tools](<https://devfeed.tech/tags/management-tools.md>), [outage](<https://devfeed.tech/tags/outage.md>), [post-mortem](<https://devfeed.tech/tags/post-mortem.md>), [slack-incident](<https://devfeed.tech/tags/slack-incident.md>)

### AI overview

The article argues that non-technical teams should use incident management tools and incident response practices. It explains that serious issues outside engineering, such as threatened disclosure of confidential information, can be treated as incidents requiring coordinated response, investigation, and preventive follow-up.

### Source excerpt

Should your non-technical teams be declaring incidents like your engineering team? Absolutely. Here's why.

## Responding to a data breach with the urgency it deserves

DevFeed: [Responding to a data breach with the urgency it deserves](<https://devfeed.tech/articles/responding-to-a-data-breach-with-the-urgency-it-deserves-11976.md>)

Original publisher: [Read original article](<https://incident.io/blog/responding-to-a-data-breach>)

Author: Luis Gonzalez

Published: 2023-01-03T00:00:00Z

Content type: article

Language: en

Sources: [The incident.io Blog](<https://devfeed.tech/sources/the-incident-io-blog.md>)

Topics: [incident](<https://devfeed.tech/topics/incident.md>), [Incident response](<https://devfeed.tech/topics/incident-response.md>), [Security](<https://devfeed.tech/topics/security.md>), [data](<https://devfeed.tech/topics/data.md>), [passwords](<https://devfeed.tech/topics/passwords.md>)

Tags: [article](<https://devfeed.tech/tags/article.md>), [best-practices](<https://devfeed.tech/tags/best-practices.md>), [breach](<https://devfeed.tech/tags/breach.md>), [customer-trust](<https://devfeed.tech/tags/customer-trust.md>), [customers](<https://devfeed.tech/tags/customers.md>), [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [incident](<https://devfeed.tech/tags/incident.md>), [incident-channel](<https://devfeed.tech/tags/incident-channel.md>), [incident-management](<https://devfeed.tech/tags/incident-management.md>), [incident-response](<https://devfeed.tech/tags/incident-response.md>), [legal](<https://devfeed.tech/tags/legal.md>), [outage](<https://devfeed.tech/tags/outage.md>), [passwords](<https://devfeed.tech/tags/passwords.md>), [post-mortem](<https://devfeed.tech/tags/post-mortem.md>), [regulatory](<https://devfeed.tech/tags/regulatory.md>), [revenue](<https://devfeed.tech/tags/revenue.md>), [security](<https://devfeed.tech/tags/security.md>), [slack-incident](<https://devfeed.tech/tags/slack-incident.md>)

### AI overview

This article presents eight best practices for responding to a data breach, emphasizing swift action, risk assessment, transparency, customer notification, and identification of compromised data.

### Source excerpt

How do you respond to a massive data breach? This article discusses eight data breach response best practices, from notifications to risk assessments and more.

## Breach Vouchers & Equifax 2017 Breach Links

DevFeed: [Breach Vouchers & Equifax 2017 Breach Links](<https://devfeed.tech/articles/breach-vouchers-equifax-2017-breach-links-36713.md>)

Original publisher: [Read original article](<https://shostack.org/blog/breach-vouchers-equifax-2017-breach-links/>)

Author: Adam

Published: 2017-09-07T00:00:00Z

Content type: opinion

Language: en

Sources: [Shostack & Friends Blog](<https://devfeed.tech/sources/shostack-friends-blog.md>)

Topics: [Cybersecurity](<https://devfeed.tech/topics/cybersecurity.md>), [Security & Privacy](<https://devfeed.tech/topics/security-privacy.md>), [Hacking](<https://devfeed.tech/topics/hacking.md>)

Tags: [2017](<https://devfeed.tech/tags/2017.md>), [breach](<https://devfeed.tech/tags/breach.md>), [cyber](<https://devfeed.tech/tags/cyber.md>), [data-breaches](<https://devfeed.tech/tags/data-breaches.md>), [identity-theft](<https://devfeed.tech/tags/identity-theft.md>), [security](<https://devfeed.tech/tags/security.md>)

### AI overview

The article argues that Equifax should not provide its own breach-response services after the 2017 data breach. It proposes that the FTC require vouchers so affected consumers can choose independent identity-theft protection and credit-monitoring providers.

### Source excerpt

[no description provided]