Data Breach News, Malware Ransomware
December 12, 2023
1298 views 58 secs 0

Threat Actor Targets Recruiters With Malware

Infosecurity Magazine reports: Proofpoint has warned recruiters of a skilled threat actor targeting them with emails designed to deploy malware. TA4557 is a financially motivated threat actor known to distribute the More_Eggs backdoor, which is designed to establish persistence, profile the targeted machine and drop additional payloads. Throughout 2022 and most of 2023 the actor has […]

Data Breach News, Vulnerabilities
December 11, 2023
1341 views 5 secs 0

North Korean hackers Lazarus Group takes new Telegram tactics

SiliconAngle reports: Cisco Systems Inc.’s Talos Intelligence unit posted today new findings about the North Korean hacking group called Lazarus that outline new ways it’s targeting attacks. “We have observed Lazarus target companies in the manufacturing, agricultural and physical security sectors,” their analysts wrote in the post. The group has been around since 2010 and was responsible most recently […]

Data Breach News
December 09, 2023
810 views 38 secs 0

23andMe updates user agreement to prevent data breach lawsuits

You have a massive data breach from a credential stuffing attack that affects millions of users’ sensitive genetic information, and then you change your terms of service to make it harder for people to sue you in the event of a data breach? How will that go over with the public and potential users? Bleeping […]

Data Breach News, Healthcare
December 07, 2023
1384 views 6 secs 0

CarePointe ENT Settles HIPAA Lawsuit with Indiana Attorney General

The HIPAA Journal reports: In late September 2023, Indiana Attorney General Todd Rokita filed a lawsuit against CarePointe ENT over a ransomware attack and data breach that affected 48,742 individuals. A settlement has been reached that will see CarePointe pay $125,000 to resolve alleged violations of the Health Insurance Portability and Accountability (HIPAA) Act and […]

Data Breach News
December 07, 2023
1301 views 19 secs 0

Russian hackers accused of targeting U.S. intelligence community with spear phishing campaign

CBS reports:  Russia-based hackers conducted a sophisticated cyber campaign against American intelligence officials, including contractors at the State and Defense Departments, as part of an international operation that included NATO members and Ukraine, the Justice Department alleged Thursday. Prosecutors accused an officer in Russia’s Federal Security Service (FSB) and another co-defendant of carrying out a […]

Data Breach News, Healthcare
December 07, 2023
2263 views 2 mins 0

Nine Prime Healthcare hospitals affected by MOVEit breach

CBIZ KA is a third-party vendor for Prime Healthcare that was affected by the MOVEit breach. They have issued the following notice: CBIZ KA, a third-party vendor for Prime Healthcare (Prime), discovered a security incident involving CBIZ’s use of MOVEit Transfer software, which has recently reported a security vulnerability. Prime takes the responsibility of safeguarding […]

Data Breach News, Healthcare
December 07, 2023
1291 views 19 secs 0

Millions of patient scans and health records spilling online thanks to decades-old protocol bug

TechCrunch reports: housands of exposed servers are spilling the medical records and personal health information of millions of patients due to security weaknesses in a decades-old industry standard designed for storing and sharing medical images, researchers have warned. This standard, known as Digital Imaging and Communications in Medicine, or DICOM for short, is the internationally recognized […]

Data Breach News, Healthcare
December 07, 2023
2844 views 2 mins 0

Fresenius discloses breach affecting more than 500,000 patients and employees

On December 6,  Fresenius Medical Care AG  filed Form 6-K with the Securities and Exchange Commission. The filing disclosed a data breach: On September 29, 2023, Cardiovascular Consultants, Ltd. (CVC), a subsidiary of Fresenius Medical Care AG (the Company) located in the United States (U.S.), became aware that some of its computer systems in the U.S. were […]