Security News

80% of Critical National Infrastructure Companies Experienced an Email Security Breach in Last Year
2024-09-17 18:04

The scale of the potential disruption from a successful attack on CNI is all too tempting for cyber attackers.

AT&T pays $13 million FCC settlement over 2023 data breach
2024-09-17 17:36

The Federal Communications Commission (FCC) has reached a $13 million settlement with AT&T to resolve a probe into whether the telecom giant failed to protect customer data after a vendor's cloud...

From Breach to Recovery: Designing an Identity-Focused Incident Response Playbook
2024-09-16 11:33

Imagine this... You arrive at work to a chaotic scene. Systems are down, panic is in the air. The culprit? Not a rogue virus, but a compromised identity. The attacker is inside your walls,...

23andMe settles class-action breach lawsuit for $30 million
2024-09-16 02:30

Also: Apple to end NSO Group lawsuit; Malicious Python dev job offers; Dark web kingpins busted; and more Infosec In Brief Genetic testing outfit 23andMe has settled a proposed class action case...

23andMe to pay $30 million in genetics data breach settlement
2024-09-13 18:58

DNA testing giant 23andMe has agreed to pay $30 million to settle a lawsuit over a data breach that exposed the personal information of 6.4 million customers in 2023. [...]

Fortinet confirms data breach after hacker claims to steal 440GB of files
2024-09-12 18:01

Fortinet, a leading cybersecurity company, has confirmed a data breach after a threat actor, using the alias "Fortibitch," claimed to have stolen 440GB of data from its Microsoft SharePoint server hosted on Azure. Fortinet provides secure networking products like firewalls, routers, and VPNs, alongside services like SIEM, EDR/XDR, and consulting. The breach was first reported on a hacking forum, where the attacker shared credentials to an S3 bucket allegedly containing the stolen files. While the threat actor attempted to extort Fortinet, the company refused to pay the ransom.Fortinet has acknowledged that a limited amount of customer data was stolen from a third-party cloud-based file drive. However, the company did not disclose the exact number of customers affected or the type of compromised data. Fortinet later updated its website, clarifying that less than 0.3% of its customer base was impacted and that no malicious activity had been directed toward these customers as a result of the breach. Additionally, Fortinet assured that the incident did not involve ransomware, data encryption, or unauthorized access to its corporate network.

Payment gateway data breach affects 1.7 million credit card owners
2024-09-09 14:34

Payment gateway provider Slim CD has disclosed a data breach that compromised credit card and personal data belonging to almost 1.7 million individuals. [...]

Car rental giant Avis data breach impacts over 299,000 customers
2024-09-06 18:04

American car rental giant Avis disclosed a data breach after attackers breached one of its business applications last month and stole customer personal information. [...]

Car rental giant Avis discloses data breach impacting customers
2024-09-06 18:04

American car rental giant Avis disclosed a data breach after attackers breached one of its business applications last month and stole customer personal information. [...]

Planned Parenthood confirms cyberattack as RansomHub claims breach
2024-09-05 05:29

Planned Parenthood has confirmed it suffered a cyberattack affecting its IT systems, forcing it to take parts of its infrastructure offline to contain the damage. [...]