Data Breach News, Vendor News
November 26, 2025
144 views 19 secs 0

Software companies must be held liable for British economic security, say MPs

The Record reports: A lack of liability for software vendors is among the most pressing issues putting Britain’s economic and national security at risk, an influential committee of lawmakers warned on Monday. The report by the Business and Trade Committee says economic threats facing the United Kingdom are “multiplying — and, in the years ahead, will grow […]

Data Breach News, Legal News, News, Vendor News
November 25, 2025
337 views 48 secs 0

Comcast to pay $1.5 million US fine after vendor data breach

Reuters reports: Comcast will pay a $1.5 million fine after a vendor breach exposed personal data from 237,000 current and former customers, the Federal Communications Commission said on Monday. The FCC said a debt collector used by Comcast until 2022, Financial Business and Consumer Solutions, suffered a 2024 data breach that exposed personal information of Comcast […]

Data Breach News, Legal News
November 24, 2025
202 views 2 mins 0

SEC Voluntarily Dismisses SolarWinds Litigation

Covington and Burling writes: On November 20, 2025, the Securities and Exchange Commission (“SEC”) announced that it was voluntarily dismissing the case it brought against SolarWinds Corp. (“SolarWinds”) and its information security officer, Timothy Brown, regarding the company’s security practices and related statements in connection with the “Sunburst” cybersecurity incident. The SEC stated in a […]

Finance, Data Breach News, News, Vendor News
November 23, 2025
235 views 51 secs 0

Bank Customer Data Hacked From a Technology Vendor for Real Estate Lenders

The New York Times reports: Some of the nation’s biggest banks were scrambling on Saturday night to assess the fallout from a large-scale hack of a vendor whose compromise could expose sensitive customer data. The vendor, SitusAMC, has been deployed by hundreds of banks and other lenders to help originate and collect money from real […]

Data Breach News, News, Vendor News
November 22, 2025
160 views 12 secs 0

CrowdStrike catches — and fires — employee feeding information to hackers

Bleeping Computer reports: American cybersecurity firm CrowdStrike has confirmed that an insider shared screenshots taken on internal systems with hackers after they were leaked on Telegram by the Scattered Lapsus$ Hunters threat actors. However, the company noted that its systems were not breached as a result of this incident and that customers’ data was not […]

Data Breach News, News, Vendor News
November 21, 2025
248 views 53 secs 0

Salesforce cuts off access to third-party app after discovering ‘unusual activity’

The Record reports: Cloud giant Salesforce warned customers of a potential data breach on Wednesday evening after discovering “unusual activity” related to a third-party application called Gainsight.  Salesforce posted a message on its website saying an investigation revealed that the activity “may have enabled unauthorized access to certain customers’ Salesforce data through the app’s connection.”  Gainsight is […]

Vendor News, Data Breach News, Education Sector, Legal News, News
November 20, 2025
210 views 5 mins 0

Ontario and Alberta privacy commissioners release investigation findings into PowerSchool breach affecting school boards and other educational bodies

TORONTO, ON (November 18, 2025) — Ontario and Alberta information and privacy commissioners have released the findings of their investigations into a massive privacy breach involving PowerSchool education technology (edtech) used by schools in their respective provinces. The incident, which affected millions of Canadians across the country, highlights the importance for educational bodies, including school boards, […]

Data Breach News, Healthcare, News, Vendor News
November 19, 2025
219 views 2 mins 0

From bad to worse: Doctor Alliance hacked again by same threat actor

DataBreaches.net reports that Doctor Alliance, a business associate to covered entities in the healthcare sector, recently fell prey to a cyberattack that allegedly comprised 353 GB of patient files. Making matters even worse, after assuring clients that the vulnerability had been addressed and everything was secure, it was attacked again by the same threat actor […]

Data Breach News
November 18, 2025
179 views 20 secs 0

Logitech discloses data breach after Clop claims

The Record reports: Technology manufacturer Logitech filed documents with the Securities and Exchange Commission (SEC) on Friday about a recent cybersecurity incident that involved a zero-day vulnerability. The company told the SEC that an investigation revealed that hackers exploited a bug “in a third-party software platform and copied certain data from the internal IT system.”  “The zero-day […]