Data Breach News, Legal News, News, Vendor News
November 25, 2025
360 views 48 secs 0

Comcast to pay $1.5 million US fine after vendor data breach

Reuters reports: Comcast will pay a $1.5 million fine after a vendor breach exposed personal data from 237,000 current and former customers, the Federal Communications Commission said on Monday. The FCC said a debt collector used by Comcast until 2022, Financial Business and Consumer Solutions, suffered a 2024 data breach that exposed personal information of Comcast […]

Finance, Data Breach News, News, Vendor News
November 23, 2025
275 views 51 secs 0

Bank Customer Data Hacked From a Technology Vendor for Real Estate Lenders

The New York Times reports: Some of the nation’s biggest banks were scrambling on Saturday night to assess the fallout from a large-scale hack of a vendor whose compromise could expose sensitive customer data. The vendor, SitusAMC, has been deployed by hundreds of banks and other lenders to help originate and collect money from real […]

Data Breach News, News, Vendor News
November 22, 2025
181 views 12 secs 0

CrowdStrike catches — and fires — employee feeding information to hackers

Bleeping Computer reports: American cybersecurity firm CrowdStrike has confirmed that an insider shared screenshots taken on internal systems with hackers after they were leaked on Telegram by the Scattered Lapsus$ Hunters threat actors. However, the company noted that its systems were not breached as a result of this incident and that customers’ data was not […]

Data Breach News, News, Vendor News
November 21, 2025
280 views 53 secs 0

Salesforce cuts off access to third-party app after discovering ‘unusual activity’

The Record reports: Cloud giant Salesforce warned customers of a potential data breach on Wednesday evening after discovering “unusual activity” related to a third-party application called Gainsight.  Salesforce posted a message on its website saying an investigation revealed that the activity “may have enabled unauthorized access to certain customers’ Salesforce data through the app’s connection.”  Gainsight is […]

Vendor News, Data Breach News, Education Sector, Legal News, News
November 20, 2025
243 views 5 mins 0

Ontario and Alberta privacy commissioners release investigation findings into PowerSchool breach affecting school boards and other educational bodies

TORONTO, ON (November 18, 2025) — Ontario and Alberta information and privacy commissioners have released the findings of their investigations into a massive privacy breach involving PowerSchool education technology (edtech) used by schools in their respective provinces. The incident, which affected millions of Canadians across the country, highlights the importance for educational bodies, including school boards, […]

Data Breach News, Healthcare, News, Vendor News
November 19, 2025
242 views 2 mins 0

From bad to worse: Doctor Alliance hacked again by same threat actor

DataBreaches.net reports that Doctor Alliance, a business associate to covered entities in the healthcare sector, recently fell prey to a cyberattack that allegedly comprised 353 GB of patient files. Making matters even worse, after assuring clients that the vulnerability had been addressed and everything was secure, it was attacked again by the same threat actor […]

Data Breach News, Vendor News
November 09, 2025
207 views 34 secs 0

Washington Post Falls Victim to Oracle-Linked Data Breach

PC Mag reports: The Washington Post has confirmed it fell victim to a large-scale cybercrime campaign that targeted Oracle’s business applications, joining Harvard University and American Airlines-owned carrier Envoy, which announced similar breaches last month. The news, first reported by Reuters, comes after Google said in October that it believes around 100 companies were affected by the hacking campaign, and that “large amounts […]

Vendor News, Data Breach News
October 27, 2025
259 views 2 mins 0

Marks & Spencer Cuts Ties With Tata Consultancy Services, But It Wasn’t Because of the Data Breach

The Cyber Security Hub Newsletter reports: British retail giant Marks & Spencer (M&S) has officially ended its long-standing partnership with Indian IT services leader Tata Consultancy Services (TCS) after suffering one of the most damaging cyberattacks in its history. The high-profile breach, which occurred earlier this year, is estimated to have cost the company around […]

Data Breach News, Healthcare, News, Vendor News
October 23, 2025
273 views 53 secs 0

Montana Officials Looking Into BCBS Breach Tied to Conduent Breach

Bank Info Security reports: Montana state regulators are investigating a data breach affecting 462,000 Blue Cross Blue Shield of Montana members involving one of the health insurer’s third-party services providers – and they want to know why nearly 10 months have gone by without notifying the breach victims. It took nearly four months for the […]

Legal News, Vendor News
October 22, 2025
227 views 45 secs 0

NY DFS Issues New Cybersecurity Guidance to Address Risks Associated with the Use of Third-Party Service Providers

Given how many breaches are at third-party service providers this year, guidance on dealing with vendors with an eye towards cybersecurity seems timely. October 21, 2025 New York State Department of Financial Services (DFS) Acting Superintendent Kaitlin Asrow today issued new cybersecurity guidance addressing the risks associated with entities becoming increasingly reliant on third-party service […]