LATEST POST
100,000 Americans Exposed As Hertz Warns Customers’ Names, Contact Details, Credit Card Information, Social Security Numbers Leaked in Vendor’s Data Breach
The Daily Hodl reports: A car rental giant says sensitive customer data has been exposed in a cybersecurity incident involving one of its vendors. In a notice posted on its website, Hertz says that its vendor, Cleo Communications US, witnessed a zero-day vulnerability exploit late last year that enabled thieves to siphon customer data. Notifications on various […]
The PIPC Sanctions CLASSU and KT alpha for Violations of the PIPA
South Korea’s data protection regulator issued the following press release concerning recent enforcement actions (unofficial translation follows): – The PIPC calls for putting access control and other privacy-safeguarding measures in place in preparation for credential stuffing and other intrusion attempts The Personal Information Protection Commission (PIPC) held its eighth plenary meeting of 2025 and reached […]
KiloEx Hacker Returns Entire $7.5M Four Days After Exploit
CryptoNews reports: In a surprising turn of events, the hacker behind the $7.5 million exploit of decentralized exchange KiloEx has returned the entire sum just four days after the initial attack. On April 14, KiloEx suspended its perpetual futures trading platform following a severe security breach that resulted in attackers draining $7.5 million worth of cryptocurrency assets […]
Hackers take down Taiwan’s Wan Hai Lines website
Taiwan News reports: Shipping company Wan Hai Lines’ website was taken offline by hackers on Friday and remained down as of Saturday afternoon. Wan Hai confirmed the cyberattack, though it said the incident had no significant impact on operations, per Yahoo News. The company added that no breach of internal or employee information had occurred. Wan […]
UnitedHealth Adopts Aggressive Approach to Recover Ransomware Attack Loans
The HIPAA Journal reports: UnitedHealth Group has adopted an aggressive approach to recover outstanding balances on loans issued to healthcare providers affected by the February 2024 ransomware attack on Change Healthcare. The attack caused a prolonged outage of Change Healthcare’s systems, causing massive disruption to revenue cycles as providers were unable to submit claims. Many […]
Alert: Cisco Warns of Webex Vulnerability That Lets Hackers Exploit Meeting Links
UC Today reports: Read more at UC Today.
Nippon Mutual Fund website has been down since a cyberattack on 9 April
Mint reports: The website of Nippon Life India Asset Management Ltd, India’s largest mutual fund by number of investors, has been down since a cyberattack hit the company’s IT infrastructure on 9 April. When Mint visited the website on 17 April, the home page was accessible but the login page was not. The company wrote in an exchange filing […]
DOJ Announces 90-Day Grace Period for Companies to Comply with New Data Security Rules on Foreign Adversary Access to U.S. Sensitive Data
Seen at SheppardMullin: The U.S. Department of Justice (DOJ)’s new data security rule went into effect April 8, 2025. The rule creates what are effectively export controls and requires companies to take measures to prevent U.S. sensitive personal and government-related data from falling into the hands of foreign adversaries. The rule targets transactions (including data […]
