LATEST POST
Newly identified Android spyware appears to be from a commercial vendor
The Record reports: Security researchers on Friday revealed the discovery of “commercial grade” spyware used in a 9-month-long hacking campaign aimed at Samsung Galaxy phones likely concentrated in the Middle East. The Android spyware, dubbed LANDFALL, exploited a zero-day, or previously undocumented, vulnerability in Galaxy phones’ image processing libraries. The spyware was likely sent via […]
Attorney General Bonta Joins States in Securing $5.1 Million in Settlements from Education Software Company for Failing to Protect Students’ Data
In 2022, Illuminate Education, Inc. suffered a major data breach. Now three states have announced a settlement with the edtech vendor. From the California Attorney General Rob Bonta’s office:
Webinar: Data Breach and Incident Response: The new Litigation and Document Review
A free event on November 19, 2025 by ACEDS NY Metro Chapter. Registration is required. Join us for an insightful discussion on data breach management featuring industry experts: ■ Harry Buck | Founder and CEO of Legal Outsourcing 2.0, Inc. Harry is an experienced litigator, and the Founder and CEO of Legal Outsourcing 2.0. where he […]
Cloud Backup Security Incident Investigation Complete and Strengthened Cyber Resilience
SonicWall reports: In early September, SonicWall detected suspicious activity related to the downloading of backup firewall configuration files stored in a specific cloud environment. Our incident response team immediately activated our established response protocols, engaged Mandiant, a leading cybersecurity response firm, and notified our global partners and customers directly about the incident and remediation steps to protect their customers. In addition to frequent and transparent communication with partners and customers, SonicWall […]
CBO systems accessed in ‘security incident’ possibly tied to foreign hackers
NextGov reports: The Congressional Budget Office, Capitol Hill’s nonpartisan accounting service that delivers financial assessments for legislation, was accessed in a hack potentially tied to a foreign hacker group. “The Congressional Budget Office has identified the security incident, has taken immediate action to contain it, and has implemented additional monitoring and new security controls to […]
Investigation finds KT lax femtocell security leaked data of 22,227 and hid infected servers
A breach affecting South Korea’s second largest mobile carrier, KT, continues to have ramifications for the carrier. Chosun Biz reports: The joint public-private investigation team (hereafter, the investigation team) operated by the Ministry of Science and ICT announced interim findings on the KT hacking and breach incident on the 6th. The investigation team said that, […]
Nearly half of retail ransomware attacks stem from unknown security gaps: Report
The Economic Times reports: Cybersecurity firm Sophos has released its fifth annual State of Ransomware in Retail report, highlighting how visibility gaps across retail networks continue to leave businesses vulnerable. The survey of 361 IT and security leaders across 16 countries found that 46% of ransomware attacks in the sector originated from previously unknown security […]
Lawsuits, Investigations Piling Up in Conduent Hack
Bank Info Security reports: Proposed federal class action litigation is piling up against Conduent Business Solutions following its recent public disclosure that an October 2024 hacking incident potentially compromised personal and health information of more than 10.5 million people. As of Tuesday, at least nine proposed class action lawsuits have been filed since Oct. 27 […]
