Data Breach News, Education Sector, News, Vendor News
May 21, 2025
1124 views 2 mins 0

Massachusetts student pleads guilty to hacking and extorting PowerSchool and an unnamed telecom

The U.S. Attorney’s Office for the District of Massachusetts announced yesterday that  Matthew D. Lane, 19, a student at Assumption University in Worcester, Mass., was charged and has agreed to plead guilty in connection with hacking into the computer networks of two U.S.-based companies and extorting the companies for ransoms. The two companies were not named in the Information […]

Data Breach News, News
May 21, 2025
890 views 2 mins 0

UK: Post Office to compensate hundreds of data breach victims

Hundreds of former subpostmasters are to be compensated by the Post Office after it accidentally leaked their names and addresses online last year. Some data leaks are more sensitive or problematic than others. A leak on the Post Office’s site is one of the more problematic ones. The Bolton News reports: The Post Office confirmed […]

Legal News, Data Breach News, News
May 20, 2025
956 views 56 secs 0

Legal aid hack: data from hundreds of thousands of people accessed, says Ministry of Justice

The Guardian reports that a significant cyberattack affecting the Legal Aid Agency in the UK affects both legal aid applicants and legal aid providers: The personal data of hundreds of thousands of legal aid applicants in England and Wales dating back to 2010, including criminal records and financial details, has been accessed and downloaded in a “significant” […]

Data Breach News
May 20, 2025
933 views 55 secs 0

Major UK supermarket supplier that stocks Tesco, Sainsbury’s and Aldi ‘held to ransom’ by hackers

LBC reports that a major UK supermarket supplier that stocks Tesco, Sainsbury’s and Aldi has been ‘held to ransom’ by hackers: Peter Green Chilled was hit by the ‘cyber incident’ on Wednesday evening last week. The supplier said no orders would be processed on Thursday, although any order prepared on Wednesday would be sent. Managing […]

Data Breach News, News
May 20, 2025
878 views 4 secs 0

Pharma giant Regeneron to buy 23andMe and its customers’ data for $256M

TechCrunch reports: Pharmaceutical maker Regeneron announced Monday it will buy genetic testing company 23andMe for $256 million following a bankruptcy auction.  Regeneron said it will acquire 23andMe’s genomics service and its bank of 15 million customers’ personal and genetic data as part of the deal. The pharma giant said it plans to use the 23andMe customer data […]

Data Breach News, News
May 19, 2025
648 views 42 secs 0

Scattered Spider gang is really good at fake help-desk calls

The Register reports: The call came into the help desk at a large US retailer. An employee had been locked out of their corporate accounts.  But the caller wasn’t actually a company employee. He was a Scattered Spider criminal trying to break into the retailer’s systems – and he was really good, according to Jon […]

Data Breach News, Malware Ransomware, News, Vendor News
May 18, 2025
1433 views 59 secs 0

Broadcom employee data stolen by ransomware crooks following hit on payroll provider

The Register reports: A ransomware attack at a Middle Eastern business partner of payroll company ADP has led to customer data theft at Broadcom, The Register has learned. It’s understood Broadcom’s HR department has begun the process of informing current and former staff who are affected by the September ransomware attack at Business Systems House (BSH).  Broadcom […]

Data Breach News, Legal News, News
May 17, 2025
972 views 24 secs 0

Breachforums Boss to Pay $700k in Healthcare Breach

Brian Krebs reports: In what experts are calling a novel legal outcome, the 22-year-old former administrator of the cybercrime community Breachforums will forfeit nearly $700,000 to settle a civil lawsuit from a health insurance company whose customer data was posted for sale on the forum in 2023. Conor Brian Fitzpatrick, a.k.a. “Pompompurin,” is slated for resentencing next month […]

Data Breach News, News, Vendor News
May 16, 2025
1038 views 26 secs 0

RIBridges’ firewall worked, but hundreds of alerts went unnoticed or ignored.

Footnotes in CrowdStrike’s forensics report offer troubling details of Deloitte’s handling of incident logs. Rhode Island Current reports that the attack on RIBridges triggered hundreds of firewall alerts during the five months that attackers were in the network and were transferring gigabytes of data. But the state’s vendor, Deloitte, did not know the system had […]