Data Breach News
June 03, 2025
173 views 51 secs 0

Cartier latest luxury brand hit by consumer data breach

The Korea Times reports: Luxury jewelry brand Cartier has confirmed a breach of customer data, raising concerns over data security among high-end brands following recent incidents involving Dior and Tiffany. The company sent out an email Tuesday informing its customers that an “unauthorized third party” accessed its systems temporarily and obtained certain customer information. While […]

Vendor News, Data Breach News
June 03, 2025
424 views 40 secs 0

Security bug at compliance firm Vanta exposed customer data to other users

TechRadar reports: Security and compliance automation company Vanta has confirmed sharing sensitive customer data with other customers by mistake. In a statement (via TechCrunch), the company said a change it had made in the code resulted in a security breach. In it, some sensitive data from a small subset of customers was shared with other customers. […]

Vulnerabilities, Data Breach News
June 02, 2025
733 views 29 secs 0

0day for vBulletin: PoC is already online, but no one is installing the patch

When criminals note that there is an unpatched vulnerability, expect more attacks to follow. A Russian-language forum recently picked up a report from SecurityLab.ru. It begins (translation): Popular forums on vBulletin have once again been found to have holes through which arbitrary code can be executed directly on the server – without a login and […]

Data Breach News, Malware Ransomware, News
June 02, 2025
805 views 47 secs 0

Victim Pays $800,000 in Bitcoin—But the Chat Was Not Private as Claimed by Akira

Ransomware gangs will swear not to reveal that you were a victim if you pay their ransom demands. SBut if they fail to secure their negotiation chat servers, researchers and intel analysts can discover who their victims are and shoulder-surf any negotiations or payment arrangements. The SuspectFile blog reports on another case like that where […]

Data Breach News
June 02, 2025
672 views 54 secs 0

Customers questioned top super fund about security weakness before cyberattacks

Australia’s biggest superannuation fund was questioned by its own clients about a security weakness in its accounts before cybercriminals stole hundreds of thousands of dollars in retirement savings.  ABC Australia reports: Two AustralianSuper customers have told the ABC they had asked for multi-factor authentication (MFA) on their accounts but were rebuffed — one of them […]

Data Breach News
June 02, 2025
772 views 12 secs 0

FBI investigating efforts to impersonate White House chief of staff Susie Wiles

Yet another member of President Trump’s staff has been caught up in a data security incident. The Guardian reports: The FBI is investigating an apparent impersonator who pretended to be the White House chief of staff, Susie Wiles, in texts and calls to her contacts, including prominent Republicans. Wiles has privately informed colleagues that the contacts in her personal cellphone […]

Legal News, Data Breach News, Malware Ransomware
May 31, 2025
837 views 53 secs 0

Australian ransomware victims now must tell the government if they pay up

The Record reports: Australia became on Friday the first country in the world to require victims of ransomware attacks to declare to the government any extortion payments made on their behalf to cybercriminals. The law, initially proposed last year, only applies to organizations with an annual turnover greater than AUS $3 million ($1.93 million) alongside a smaller […]

Data Breach News, Legal News, Malware Ransomware
May 31, 2025
882 views 58 secs 0

US medical org pays $50M+ to settle case after crims raided data and threatened to swat cancer patients

The Register reports: A Seattle cancer facility has agreed to fork out around $52.5 million as part of a class action settlement linked to a Thanksgiving 2023 cyberattack where criminals directly threatened cancer patients with swat attacks. The Fred Hutchinson Cancer Center (Fred Hutch) disclosed its November 2023 attack a month later, after it confirmed […]

Cyberattack, Data Breach News, News
May 30, 2025
891 views 4 secs 0

ConnectWise says nation-state attack targeted multiple ScreenConnect customers

‘ConnectWise recently learned of suspicious activity within our environment that we believe was tied to a sophisticated nation state actor, which affected a very small number of ScreenConnect customers‘ — ConnectWise statement The Record reports: IT management software company ConnectWise said it is investigating a nation-state attack on its systems that impacted some of its […]