Security News

Washington DC police force confirms data breach after ransomware upstart Babuk posts trophies to Tor blog
2021-04-27 12:25

Ransomware criminals have posted trophy pictures on their Tor blog after attacking the police force for US capital Washington DC. The Metropolitan Police Department said it was "Aware of unauthorised access on our server" and had engaged the FBI to investigate, according to BleepingComputer. Babuk, a relatively new ransomware gang, claimed credit for the attack and claimed to have stolen 250GB of files from the force.

Reverb discloses data breach exposing musicians' personal info
2021-04-26 21:10

Popular musical instrument marketplace Reverb has suffered a data breach after an unsecured database containing customer information was exposed online. Reverb is the largest online marketplace devoted to selling new, used, and vintage musical instruments and equipment.

Oilfield Services Company Gyrodata Discloses Data Breach
2021-04-26 15:05

Oilfield services company Gyrodata last week revealed that it was recently targeted in a cyberattack that resulted in sensitive employee information being compromised. Houston, Texas-based Gyrodata provides surveying and wireline services for oil and gas, mining, and civil engineering projects.

Eversource Energy data breach caused by unsecured cloud storage
2021-04-20 17:45

Eversource, the largest energy supplier in New England, has suffered a data breach after customers' personal information was exposed on an unsecured cloud server. Eversource Energy is the latest energy delivery company in New England, powering 4.3 million electric and natural gas customers throughout Connecticut, Massachusetts, and New Hampshire.

Auto Insurance Giant GEICO Discloses Data Breach
2021-04-20 12:27

American auto insurance provider GEICO has disclosed a cyber-incident that resulted in driver's license numbers being compromised. A wholly owned subsidiary of Berkshire Hathaway, the Government Employees Insurance Company is the second largest car insurer in the United States, but also offers property insurance.

Geico data breach exposed customers' driver's license numbers
2021-04-19 22:27

Car insurance provider Geico has suffered a data breach where threat actors stole the driver's licenses for policyholders for over a month. Geico is the second-largest car insurance company in the United States, with over 17 million policies for more than 28 million vehicles.

Indian Brokerage Firm Upstox Suffers Data Breach Leaking 2.5 Millions Users' Data
2021-04-12 09:04

Online trading and discount brokerage platform Upstox has become the latest Indian company to suffer a security breach of its systems, resulting in the exposure of sensitive information of approximately 2.5 million users on the dark web. Reacting to the development, the company however said it had recently upgraded its security systems following reports of "Unauthorized access into our database" while stressing that users' funds and securities remained protected.

S3 Ep27: Census scammers, beg bounties and data breach fines [Podcast]
2021-04-08 18:16

How scammers copied a government website almost to perfection. What to do about those fake "Bug" hunters who ask for payment for finding "Vulnerabilities" that aren't.

Belden Says Health-Related Information Exposed in Data Breach
2021-04-08 14:19

Specialty networking solutions provider Belden on Wednesday shared an update on the data breach disclosed in November 2020, and said health-related information was also exposed. Belden revealed in November that it had detected a data breach that resulted in the theft of some information pertaining to business partners, as well as current and former employee data.

Too slow! Booking.com fined for not reporting data breach fast enough
2021-04-06 22:22

The Dutch Data Protection Authority - the country's data protection regulator - has fined online travel and hotel booking company Booking.com almost half a million Euros over a data breach. The Dutch Data Protection Authority has imposed a €475,000 fine on Booking.com because the company took too long to report a data breach to the DPA. When the breach occurred, criminals obtained the personal data of over 4,000 customers.