LATEST POST
Warning! FBI Alerts Gmail, Outlook Users of Sneaky New Hacker Trick
Analytics Insight explains the risk to consumers and what individuals and companies can do to protect themselves: The US Cybersecurity and Infrastructure Security Agency (CISA) and the FBI have warned Gmail and Microsoft Outlook users of an emerging ransomware threat called Medusa. The ransomware-as-a-service has been in operation since 2021 and has recently affected hundreds […]
2025 State Privacy Laws Taking Effect: Key Compliance Considerations for Employers and Businesses
Fisher & Phillips LLP writes: With eight states rolling out new privacy laws in 2025 and many more already on the books, businesses have never faced a more fragmented regulatory landscape. These laws will expand consumer rights, impose stricter data governance obligations, and create a complex compliance environment for businesses operating across state lines. While […]
GitHub Action Compromise Risks Data Leaks for 23,000 Repositories
DevOps reports: A popular GitHub Action used in more than 23,000 code repositories has been compromised in a supply chain attack by attackers who introduced a malicious commit aimed at leaking secrets like passwords held in public repositories. In the compromise, which is being tracked as CVE-2025-30066, bad actors modified the code in GitHub Actions tj-actions/changed-files […]
Over a thousand of Colorado Veterans’ Personal Information Leaked in Email Mistake
KOAA in Colorado reports: The personal information of over 1,000 veterans in Colorado may be at risk after a data leak. The Veterans Affairs Eastern Colorado Health Care System accidentally sent an email containing personal details about veterans to 75 recipients. The email, which was sent in January, included a spreadsheet with veterans’ full names, the last […]
Courts Are Still Willing To Dismiss Data Breach Lawsuits for Lack of Standing
From the law firm of BakerHostetler: In data breach litigation, courts generally find plaintiffs have standing such that their complaints may proceed past the pleading stage when it is alleged that sensitive information was impacted and there is an allegation of dark web exposure, misuse or fraud. However, a few courts have recently dismissed proposed […]
TRICARE Contractor Resolves $11M False Claims Act Liability for Known Cybersecurity Violations
Tycko & Zavareei Whistleblower Practice Group writes: February 2025 saw an important False Claims Act settlement involving allegations of known cybersecurity failures by Health Net Federal Services Inc. (HNFS), a government contractor that provides TRICARE healthcare management services to active duty military members and their families. HNFS as well as its parent corporation Centene agreed […]
Judge Calls for Change Healthcare Data Breach Lawsuits in State and Federal Courts To Be Coordinated
About Lawsuits reports that all the state and federal lawsuits against Change Healthcare should be coordinated: The U.S. District Judge appointed to preside over all Change Healthcare data breach lawsuits brought throughout the federal court system has issued an order, outlining a plan to coordinate the pretrial proceedings in the federal multidistrict litigation (MDL) with claims pending […]
U.S. intel vets helped crypto firm soar, unaware of infamous hacker behind it
You may not always know who your partners are. The Washington Post reports: An innovative company lionized for devising ways to crack passwords to huge cryptocurrency accounts has fallen into disarray since it began emerging that the firm was secretly co-founded by a once-celebrated hacker publicly accused of repeated sexual assaults. The previously unreported role […]