Data Breach News, News, Vendor News
November 12, 2024
1104 views 47 secs 0

Amazon confirms employee data compromised amid 2023 MOVEit breach; dozens of other companies also affected

The MOVEit breach was one of the biggest breaches of 2023. Cl0p threat actors exploited vulnerabilities in the file transfer software and exfiltrated massive amounts of data from entities in all sectors. Now data from Amazon and almost three dozen other MOVEit victim entities is being leaked on BreachForums by a forum user calling themself […]

News, Vendor News
October 29, 2024
1191 views 22 secs 0

Right back atcha: CrowdStrike sues Delta Air Lines

Days after Delta Air Lines sued cybersecurity vendor CrowdStrike for $500 million in losses that it attributes to the vendor’s outage, CrowdStrike countersued its customer. CyberDaily reports CrowdStrike’s statement, previously reported by The Times of India, but adds CrowdStrike’s counterclaim that Delta delayed its own recovery by refusing assistance from it and its partner, Microsoft: […]

Vendor News, News
October 28, 2024
1113 views 53 secs 0

Delta sues CrowdStrike over “catastrophic” software update that prompted mass flight disruptions

The Times of India reports that Delta Air Line sued CrowdStrike over the firm’s faulty software update in July that resulted in widespread outages for CrowdStrike customers. Delta had to cancel 7,000 flights for 1.3 million customers and suffered $500 million in losses. CrowdStrike responded to the lawsuit, which was filed in Georgia state court […]

Vendor News, Legal News, News
October 22, 2024
1133 views 4 secs 0

Four cyber companies fined for SolarWinds disclosure failures

The Record reports that the Securities and Exchange Commission has charged four cybersecurity firms for their disclosures stemming from the SolarWinds incident in 2020: The Securities and Exchange Commission (SEC) charged four companies —- Check Point, Avaya, Unisys and Mimecast — for making “materially misleading” disclosures related to cybersecurity risks and intrusions. Tuesday’s  announcement is  the result […]

Vendor News, Commentaries and Analyses
October 10, 2024
1214 views 44 secs 0

The problem with third-party breaches – a data protection dilemma

Commentary by Clyde Williamson, Security Architect at Protegrity. There has been a notable increase in third-party breaches, with headlines featuring Snowflake, Santander and Ticketmaster as recent victims. These incidents highlight that vulnerabilities are inherent in our systems, making no organisation immune to such attacks. Unsurprisingly, 98% of organisations have experienced a third-party breach within the past two years. These breaches […]

Data Breach News, Healthcare, Vendor News
September 07, 2024
1183 views 27 secs 0

Another 947K patient records found to be hacked in MOVEit breach

More than a year after other victims of the MOVEit hacking incident notified people, the the Centers for Medicare & Medicaid Services (CMS) and Wisconsin Physicians Service Insurance Corporation (WPS) are notifying people whose protected health information was acquired by the Clop gang: The MOVEit data breach may be long in the rear-view mirror, but […]

Data Breach News, Legal News, News, Vendor News
September 02, 2024
1160 views 3 mins 0

Federal Trade Commission Fines Verkada

Risky Biz News reports: The FTC has fined security camera firm Verkada $2.95 million for failing to implement cybersecurity measures to protect its systems. The fine is related to a March 2021 security breach when a hacker accessed customer data and video footage from over 150,000 Verkada cameras. The hacker used the cameras to access and leak footage from psychiatric hospitals, […]

Vendor News
August 27, 2024
1033 views 56 secs 0

Microsoft to host Windows Endpoint Security Ecosystem Summit in September

After the disastrous CrowdStrike update glitch in July, Microsoft continues to explore ways to prevent another such fiasco. Aidan Marcuss,  Corporate Vice President of Microsoft Windows and Devices, announces a summit to address the issues raised and possible solutions: On Sept. 10, 2024, Microsoft will host a Windows Endpoint Security Ecosystem Summit at our Redmond, Washington, headquarters. […]