LATEST POST

FEATURE

Kaiser Permanente discloses breach that may have impacted 13.4 million patients

Data Breach News
885 views 52 secs

Healthcare giant Kaiser Permanente has joined the ranks of those who have disclosed that their websites may have improperly shared protected health information with others. The issue with tracking pixels was first highlighted in investigative reporting by The Markup last year. They have continued to report on the issues, including fines paid, litigation, and Federal […]

FEATURE

UnitedHealth says ‘substantial proportion of people in America’ affected by Change Healthcare ransomware attack

Data Breach News
713 views 4 mins

Hackers exploited remote access that had no multifactor authentication UHG states it paid ransom to protect patient data UnitedHealth Group (UHG) issued a statement yesterday, claiming they were announcing support for people who might be concerned about their personal data being affected by the massive Change Healthcare data breach. Their statement says, in part: Based […]

FEATURE

Congress starts investigating the Change Healthcare cyberattack; Threat actors claim to put data up for sale

Data Breach News
756 views 3 mins

The House Energy & Commerce Health Subcommittee held a hearing yesterday, “Examining Health Sector Cybersecurity in the Wake of the Change Healthcare Attack.” It reportedly did not go well for Change Healthcare and UnitedHealth Group, who were not invited to testify and who did not send any representatives to the hearing. The committee was previously […]

FEATURE

Crickets from Chirp Systems in Smart Lock Key Leak

Consumer Alerts
874 views 55 secs

Brian Krebs reports that the U.S. government is warning that “smart locks” securing entry to an estimated 50,000 dwellings nationwide contain hard-coded credentials that can be used to remotely open any of the locks. “The lock’s maker Chirp Systems remains unresponsive, even though it was first notified about the critical weakness in March 2021,: Krebs reports. “Meanwhile, […]

FEATURE

MGM Resorts Sues the Federal Trade Commission to Limit Investigation into 2023 Data Breach

Data Breach News
358 views 3 mins

Although the Federal Trade Commission (FTC) has the authority to investigate data breaches, some entities they have investigated have pushed back against the regulator. In 2013, FTC filed a complaint against LabMD for allegedly failing to protect consumer’s data. When the government found for itself in a proceeding by an administrative law judge, LabMD sued […]

FEATURE

Threat actors claim they stole info on more than 3.5M Omni Hotels & Resorts guests

Data Breach News
388 views 2 mins

Less than two weeks after Omni Hotels & Resorts admitted that they had been the victim of a cyberattack, a known ransomware gang has publicly claimed that they were responsible for the attack. A post on Daixin Team’s dark web leak site claimed they had “Sensitive data. (Including all records of all visitors from 2017 […]

FEATURE

Sisense breach and Palo Alto Networks vulnerability made for a busy week for CISOs

Vulnerabilities
939 views 50 secs

Sisense Security Week reports: The US government cybersecurity agency CISA on Thursday issued a red-alert for what appears to be a massive supply chain breach at Sisense, a New York company that sells big-data analytics tools to businesses. In a cryptic note, CISA warned of a recent “compromise of Sisense customer data” that was discovered […]

FEATURE

Small practices vulnerable after Change Healthcare cyberattack; some considering bankruptcy

Data Breach News
781 views 58 secs

While Change Healthcare UnitedHealth Group claims it continues to make progress in mitigating the impact to consumers and care providers of a massive cyberattack in February on its system and services, Radiology Business provides a grimmer picture of the impact and recent situation: The incident first occurred in February, shutting down the nation’s largest clearinghouse […]