LATEST POST
Horizon Healthcare RCM discloses ransomware attack in December
Supply-chain attacks are often a goldmine for cybercriminals. In the healthcare sector, revenue cycle management (RCM) firms process and store a great amount of personally identifiable information (PII) and protected health information (PHI). DataBreaches.net reports that another RCM firm was the victim of an attack: Horizon Healthcare RCM (“Horizon”) in Indiana is the latest RCM to […]
Ahold Delhaize data breach affected over 2.2 Million individuals
A ransomware attack on the holding company that operates several supermarkets in the US, including Food Lion, Giant Food, Hannaford, Stop & Shop, and The Giant Company affected over 2.2 million people. Security Affairs reports: Ahold Delhaize is a Dutch-Belgian multinational retail and wholesale holding company. Its name comes from the 2016 merger of two companies: […]
Citrix Bleed 2 flaw now believed to be exploited in attacks
Bleeping Computer reports: A critical NetScaler ADC and Gateway vulnerability dubbed “Citrix Bleed 2” (CVE-2025-5777) is now likely exploited in attacks, according to cybersecurity firm ReliaQuest, seeing an increase in suspicious sessions on Citrix devices. Citrix Bleed 2, named by cybersecurity researcher Kevin Beaumont due to its similarity to the original Citrix Bleed (CVE-2023-4966), is […]
Hacking a company as a way of seeking employment is still a crime
The following are two reports on one criminal case. The first is from the U.S. Attorney’s Office: A Kansas City, Mo., man has pleaded guilty for hacking into the computer system at an area nonprofit. Nicholas Michael Kloster, 32, admitted during his plea that he caused reckless damage to a protected computer owned by an […]
Scattered Spider has added North American airline and transportation organizations to their target list
Defending Against UNC3944: Cybercrime Hardening Guidance from the Frontlines UNC3944, which overlaps with public reporting on Scattered Spider, is a financially-motivated threat actor characterized by its persistent use of social engineering and brazen communications with victims. In early operations, UNC3944 largely targeted telecommunications-related organizations to support SIM swap operations. However, after shifting to ransomware and […]
Ransomware attack contributed to patient’s death
The BBC reports: The death of one person has been linked to a ransomware attack on NHS blood services at London hospitals and GP surgeries last June. King’s College Hospital NHS Foundation Trust confirmed that one patient had “died unexpectedly” during the cyber attack on 3 June 2024, which disrupted more than 10,000 appointments. A […]
Hawaiian Airlines hit with ‘cybersecurity’ incident
USA Today reports: A week after WestJet Airlines was hacked, Hawaiian Airlines reported being hit with a “cybersecurity event” Thursday that has affected some of its IT systems. A notice has been posted on the websites of both Hawaiian Airlines and Alaska Airlines, which acquired the Hawaii-based carrier last year. “Our highest priority is the safety and security of our […]
Patients Allege Home Delivery Pharmacy Failed Timely Notification of Data Breach
Pharmacy Times reports: In January 2021, a nationwide mail-order pharmacy located in Massachusetts experienced a data breach. The pharmacy discovered the breach in May 2021 and investigated to determine its scope. Personally identifiable information (PII), including names and Social Security numbers for more than 75,000 customers, was breached. In February 2022, 9 months after the […]