Data Breach News, News
September 18, 2023
1038 views 3 mins 0

Analyst: MGM losing $4.2M-$8.4M a day because of cyberattack

MGM Resorts International could be losing between $4.2 million and $8.4 million in daily revenue and around $1 million in cash flow every day it’s under a cyberattack, a gaming industry analyst said in a Sunday report to investors. David Katz, an equity analyst with New York-based Jefferies Group, in a weekly report on gaming, […]

Data Breach News, News
September 12, 2023
1090 views 54 secs 0

Save the Children hit by BianLian extortionist gang

BianLian, previously known as a ransomware gang but more recently known for not bothering with encryption but just hacking and exfiltrating data, has reportedly attacked Save the Children, a well-known non-profit. While BianLian did not name the charity (they obfuscate their victims’ names while they are still hoping to get paid), their description of the […]

Healthcare, Legal News, News
September 11, 2023
1293 views 5 mins 0

L.A. Care Healthplan settles HHS OCR charges stemming from multiple violations for $1.3 million and corrective action plan

Today, the U.S. Department of Health and Human Services’ Office for Civil Rights (OCR) announced a settlement of potential violations of the Health Insurance Portability and Accountability Act (HIPAA) Rules with LA Care, the nation’s largest publicly operated health plan that provides health care benefits and coverage through state, federal, and commercial programs. OCR enforces the HIPAA […]

Data Breach News, News
September 11, 2023
2152 views 16 secs 0

Dissecting the MOVEit breach: Lessons learned from the ransomware attack

The MOVEit data breach, discussed in an earlier post, continues to make headlines. As SDX reports: Orchestrated by ransomware gang CL0P exploiting a zero-day vulnerability, it is now considered one of the largest hacks of 2023 — and potentially in recent history. To date, it is known to have impacted more than 1,150 organizations and nearly 56 million individuals, […]

News, Legal News
August 29, 2023
4623 views 10 mins 0

Data Breach Notification Laws

One, in the absence of any specific law or regulation the person who was hacked is not required to notify anyone, including the people whose information was accessed, that their information was compromised.  That is why access to the below specific notification requirements is critically important. Two, if there is a requirement to notify people […]

News, Vendor News
August 28, 2023
9393 views 9 mins 0

Vendors to be(a)ware of

After it has been determined that a breach has taken place, there are various tasks that need to be done that are usually not in the sweet spot of the person that has been breached.  Several vendors pretend they have a vertically integrated, one stop shop, solution.  They don’t.  They use third-party vendors who hide […]

News, New Threats
August 27, 2023
7453 views 7 mins 0

Etiology of a Breach

Most data breaches involve some level of victim human error, which theoretically employee training can address.  Human error can take the form of clicking on a link, where the email address of the sender is unknown to the person clicking on the link.  Malware then enters the scene.  Another common human error scenario involves phishing […]