LATEST POST
District of Arizona Clarifies Causes of Action Available for Breach of Health Data
Healthcare providers wrestling with the legal fallout of cyber-attacks just received a fresh reminder from the District of Arizona: traditional tort and contract theories remain difficult to sustain after a breach, but consumer-fraud statutes can keep a case alive. In Johnson v. Yuma Regional Medical Center, fourteen patients sued the hospital after a ransomware incident exposed […]
Hackers linked to M&S breach claim responsibility for Jaguar Land Rover cyber-attack
The Guardian reports: A group of English-speaking hackers linked to the Marks & Spencer cyber-attack has claimed responsibility for an attack on Jaguar Land Rover. A channel on the Telegram platform posted a screenshot of what appeared to be the carmaker’s internal IT systems, as well as a news article detailing the hack. The name of […]
More Personal Injury Lawyers Are Chasing Data-Breach Settlements
“U.S. lawyers filed 1,488 class-action lawsuits related to data breaches in 2024, up from 1,320 in 2023 and just 604 in 2022.” The Wall Street Journal reports: A growing number of personal injury lawyers are adding data-breach lawsuits to caseloads, alongside traffic accidents, medical malpractice and dog bites. The upswing is being fueled by a […]
Palo Alto Networks data breach exposes customer info, support cases
Bleeping Computer reports that Palo Alto Networks (PAN) has become another victim of the Salesloft Drift / Salesforce campaign: Palo Alto Networks suffered a data breach that exposed customer data and support cases after attackers abused compromised OAuth tokens from the Salesloft Drift breach to access its Salesforce instance. The company states that it was […]
Zscaler data breach exposes customer info after Salesloft Drift compromise
Cybersecurity company Zscaler has disclosed that it suffered a data breach after threat actors gained access to its Salesforce instance and stole customer information, including the contents of support cases. Bleeping Computer reports: This warning follows the compromise of Salesloft Drift, an AI chat agent that integrates with Salesforce, in which attackers stole OAuth and refresh tokens, […]
Supply-chain attack hits Zscaler via Salesloft Drift, leaking customer info
Another Salesloft Drift-related breach has been disclosed. Seucrity Affairs reports: Zscaler discloses a data breach that is linked to the recent Salesloft Drift attack. The cybersecurity vendor confirmed it was affected by a campaign targeting Salesloft Drift, a marketing SaaS integrated with Salesforce. Threat actors stole OAuth tokens from the company, the incident impacted multiple Salesforce […]
Google issues warning for all Gmail users
Updated September 1, 2025: Google issued a warning to all Gmail users, but then responded to headlines suggesting that there was any urgent problem or major security concern. Read Geekspin’s coverage, below, and then Google’s statement from September 1. Cyber threat looms for Gmail users following Salesforce data breach Google has issued a stark warning […]
FBI ‘Billion Dollar’ Hacker Warning—Do Not Install This App
Forbes reports on a scam that is costing consumers a lot of money. In this case, just recognizing that a phone call is the start of the scam can save you greatly: This dangerous scam is coming for you or someone you know. That’s the crux of the FBI’s latest warning, as U.S. citizens lose […]
