LATEST POST

FEATURE

FDA, CISA warn of backdoor in popular patient monitor used by US hospitals

Vulnerabilities
1136 views 10 secs

The Record reports: Federal agencies are warning hospitals of a backdoor discovered in a popular line of patient monitors sold by Chinese company Contec. The Cybersecurity and Infrastructure Security Agency (CISA) and Food and Drug Administration (FDA) released warnings on Thursday about an embedded function they found in the firmware of the Contec CMS8000 — […]

FEATURE

Tata Technologies Reports Ransomware Attack Damaging IT Assets

Data Breach News
635 views 10 secs

NDM News Network reports that Tata Technologies, a subsidiary of Tata Motors, is responding to a ransomware attack that resulted in the temporary suspension of some services: Tata Technologies is currently working to investigate the situation and reinforce its cybersecurity measures to prevent future disruptions and ensure the protection of its digital infrastructure. The company […]

FEATURE

U.S. State Privacy Laws: Making Sense of the Mess

Legal News
594 views 31 secs

Law professor Daniel Solove writes: Read more on LinkedIn.

FEATURE

Guess who left a database wide open, exposing chat logs, API keys, and more? Yup, DeepSeek

Data Breach News
1068 views 26 secs

“This database contained a significant volume of chat history, backend data and sensitive information, including log streams, API Secrets, and operational details.” It appears that DeepSeek — the same AI platform that sent tech stocks crashing because it might be better and was definitely cheaper than U.S. AI platforms — could not get basic security […]

FEATURE

FBI Seizes Hacking Forums Nulled.to and Cracked.io

Legal News
2817 views 25 secs

Some long-standing hacking forums are standing no more. They have been seized by law enforcement in an international cooperative operation. PC Mag reports: The FBI has seized a pair of internet forums dedicated to computer hacking and forced the affected domains offline.  The crackdown ensnared Cracked[.]io and Nulled[.]to, two forums known for hosting and selling […]

FEATURE

ENGlobal says hackers accessed ‘sensitive personal’ data during cyberattack

Critical Infrastructure
1201 views 56 secs

TechCrunch reports that the engineering giant and government contractor was impacted significantly for six weeks following a ransomware attack in November: U.S. engineering firm ENGlobal has confirmed that hackers accessed “sensitive personal information” from its systems during a November 2024 cyberattack. ENGlobal, which provides engineering and automation services to the federal government and critical infrastructure organizations, […]

FEATURE

Hackers Claim 2nd Breach at HP Enterprise, Plan to Sell Access

Data Breach News
1169 views 26 secs

HackRead reports that Hewlett Packard Enterprise (HPE) has been hacked for a second time by the threat actor known as IntelBroker: IntelBroker, a notorious hacker linked to prior high-profile cyberattacks, has announced an alleged new data breach of Hewlett-Packard Enterprise (HPE). The hacker claims to have accessed and cloned new data from HPE’s repositories. Although […]

FEATURE

Aoki Holdings Confirms Data Breach at Subsidiary Potentially Affecting Millions

Data Breach News
1345 views 59 secs

From Aoki Holdings in Japan, this updated statement of January 28, 2025: Additional information can be found at Aoki Holdings (.pdf). Those responsible for the attack have not been publicly identified or claimed responsibility for the attack. Aoki’s statement does not indicate whether they received an extortion demand or not.