LATEST POST

FEATURE

Fortinet Confirms Limited Data Breach After Hacker Leaks 440 GB of Data

News
966 views 48 secs

A hacker claims to have stolen 440 GB of data from cybersecurity firm Fortinet, exploiting an Azure SharePoint vulnerability. The breach, dubbed “Fortileak,” was revealed on a forum with access credentials shared online. HackRead reports: Dubbed Fortileak by the hacker, the breach allegedly originates from an exposure in Fortinet’s Azure SharePoint instance. In the forum post, the […]

FEATURE

Lehigh Valley Health Network to Pay $65M to Settle Suit Over Ransomware Attack That Exposed Patients’ Nude Photos

Data Breach News
872 views 3 mins

A blockbuster proposed settlement has been announced involving a ransomware attack last year. The ransomware attack by BlackCat resulted in 134,000 patients of Lehigh Valley Health Network having their data accessed, exfiltrated, and in some cases, leaked online. Distressingly, the threat actors cruelly leaked nude photos of identifiable cancer patients as part of the incident. […]

FEATURE

So you paid a ransom demand … and now the decryptor doesn’t work?

Malware Ransomware
856 views 21 secs

How many times have the government and intel firms warned us that decryptors provided by ransomware gangs do not always work and a significant percentage of victims wind up not recovering all their files even though they paid the ransom? Here’s another example from The Register, where an unnamed victim company paid the Hazard ransomware […]

FEATURE

Retrospective: 2024 in comprehensive state data privacy law

Legal News
680 views 12 secs

2024 was an active year for state privacy law. Keir Lamont and David Stauss recap the year for IAPP: By the numbers, 2024 experienced a comparable level of activity to 2023 with seven new states passing comprehensive privacy laws, bringing the total number of state laws to 19 — or 20 depending on whether you […]

FEATURE

Data collection on corporate websites is a litigation risk

Legal News
853 views 2 mins

Lawyers at Constangy, Brooks, Smith & Prophete, LLP write: Businesses continue to be subjected to a steady stream of consumer class action lawsuits alleging improper collection or disclosure of information from their websites. A variety of laws and legal claims are used to support the suits. Some lawsuits assert violation of laws that are not […]

FEATURE

ISPs Say 1996 Law Blocks FCC’s New Data Breach Rules

Legal News
811 views 23 secs

“Telecom companies told the U.S. Court of Appeals for the Sixth Circuit Monday that new Federal Communications Commission data breach rules are too similar to ones nixed by Congress in 2017.” Broadband Breakfast reports: “Congress disapproved the FCC’s earlier 2016 Reporting Rule, and the FCC all but admits that the two rules are nearly identical. […]

FEATURE

Electronic payment firm Slim CD notifies 1.7M customers of data breach

Data Breach News
507 views 59 secs

Slim CD is a Florida-headquartered processing gateway that handles electronic payments, including credit card payments for US and Canadian based merchants. On or about June 15, 2024, it detected suspicious activity in its computer environment. SC Media reports that the firm, has notified nearly 1.7 million credit card holders that their data may have been […]

FEATURE

Avis car rental breach affected almost 300,000 customers

Data Breach News
734 views 59 secs

If you rented a car from Avis, you may be receiving a notification letter about an August data breach they experienced. Bleeping Computer explains: American car rental giant Avis notified customers that unknown attackers breached one of its business applications last month and stole some of their personal information. According to data breach notification letters sent to […]