LATEST POST

FEATURE

Deloitte Sued Over Breach of Rhode Island Government Benefits Recipient Data

Data Breach News
1116 views 47 secs

Deloitte has been getting its name in the news this month, but not in a good way. First, a ransomware group named “Brain Cipher” claimed to have attacked Deloitte UK. Deloitte responded to their claims by denying that their network was breached and stating that the breach involved a single client’s system that is not […]

FEATURE

Hackers Exploiting Microsoft Teams to Gain Remote Access to User’s System

Data Breach News
256 views 7 secs

Tricking users into clicking on links or downloading malicious files continues to pose a major threat to home users and businesses. Cyber Security News reports: Hackers leveraged Microsoft Teams to manipulate a victim into granting remote access to their system. The attack, analyzed by Trend Micro, highlights the growing sophistication of social engineering tactics used by cybercriminals. […]

FEATURE

Clop ransomware claims responsibility for Cleo data theft attacks

Data Breach News
726 views 15 secs

There is an update to the reports of a Cleo file transfer vulnerability being exploited by hackers. Bleeping Computer reports that the same actors who were responsible for the massive MoveIT breach have also claimed responsibility for the Cleo breach: The Clop ransomware gang has confirmed to BleepingComputer that they are behind the recent Cleo […]

FEATURE

Multiple Cleo file transfer products being exploited by hackers; patch isn’t sufficient

Data Breach News
749 views 14 secs

Here we go again: threat actors are taking advantage of vulnerabilities in file transfer products. This time it is Cleo file transfer products. The Record reports: Cybersecurity researchers are warning that vulnerabilities in several file transfer products are being exploited by hackers, even after a patch was released by the developer. The vulnerability — CVE-2024-50623 — was […]

FEATURE

US sanctions Chinese firm for hacking firewalls in ransomware attacks; $10 million reward for information

Data Breach News
723 views 26 secs

The U.S. Treasury Department has sanctioned Chinese cybersecurity company Sichuan Silence and one of its employees for their involvement in a series of Ragnarok ransomware attacks targeting U.S. critical infrastructure companies and many other victims worldwide in April 2020. BleepingComputer reports: According to the Department’s Office of Foreign Assets Control (OFAC), Sichuan Silence is a […]

FEATURE

Should regulators do more naming and shaming?

Commentaries and Analyses
937 views 35 secs

The U.K. Information Commissioner’s Office did an interesting two-year trial and the results suggest that publicly reprimanding public sector entities over breaches and data leaks is an effective strategy — even without any monetary penalties. Infosecurity Magazine reports: The publication of reprimands following data leaks has been cited as an “effective” deterrent for public authorities. […]

FEATURE

HealthAlliance of Hudson Valley Pays $550,000 to NYS; Failed to Address a Known Cybersecurity Vulnerability

Data Breach News
696 views 2 mins

New York State Attorney General Letitia James announced another data security enforcement settlement yesterday. HIPAA Journal writes: A New York healthcare provider that experienced a breach of the personal and protected health information of 242,641 New Yorkers has been ordered to pay a financial penalty of $550,000 and take steps to strengthen its data security […]

FEATURE

Croatia’s Port of Rijeka hacked by 8Base Ransomware Group

Data Breach News
669 views 53 secs

Security Affairs reports that the ransomware group known as “8Base” claims to have attacked Croatia’s Port of Rijeka and to have stolen data. The CEO of the port, Duško Grabovac, told news outlet Novi list that despite threats actors stole some data, the incident had no impact on the operations at the post and that they will […]