What's new arround internet

Last one

Src Date (GMT) Titre Description Tags Stories Notes
no_ico.webp 2021-06-16 12:08:57 Volkswagen, Audi Disclose Data Breach Impacting Over 3.3 Million Customers, Interested Buyers (lien direct) BACKGROUND: Volkswagen has revealed a data breach impacting over 3.3 million customers. On Friday, the automaker said that a compilation of data used for sales and marketing purposes between 2014… Data Breach
bleepingcomputer.webp 2021-06-15 08:37:23 Largest US propane distributor discloses \'8-second\' data breach (lien direct) America's largest propane provider, AmeriGas, has disclosed a data breach that lasted ephemerally but impacted 123 employees and one resident. AmeriGas servers over 2 million customers in all 50 U.S. states and has over 2,500 distribution locations. [...] Data Breach
no_ico.webp 2021-06-14 11:14:27 Experts React: McDonald\'s Suffers Data Breach (lien direct) BACKGROUND: It has been reported that McDonald’s, the world’s largest burger chain, has suffered a data breach today. Locations in South Korea and Taiwan have had data exposed including some customer and… Data Breach ★★★
ZDNet.webp 2021-06-14 09:33:07 Volkswagen, Audi disclose data breach impacting over 3.3 million customers, interested buyers (lien direct) An unsecured treasure trove of data used for sales was exposed online. Data Breach
The_Hackers_News.webp 2021-06-13 23:59:46 Chinese Hackers Believed to be Behind SITA, Air India Data Breach (lien direct) The cyber assault on Air India that came to light last month lasted for a period of at least two months and 26 days, new research has revealed, which attributed the incident with moderate confidence to a Chinese nation-state threat actor called APT41. Group-IB dubbed the campaign "ColunmTK" based on the names of the command-and-control (C2) server domains that were used for communications. "The Data Breach Threat Guideline APT 41
SecurityAffairs.webp 2021-06-12 16:37:01 McDonald\'s discloses data breach in US, Taiwan and South Korea (lien direct) McDonald’s fast-food chain disclosed a data breach, hackers have stolen information belonging to customers and employees from the US, South Korea, and Taiwan. McDonald’s, the world’s largest restaurant chain by revenue, has disclosed a data breach that impacted customers and employees from the US, South Korea, and Taiwan. The hackers compromised the system of the […] Data Breach
SecurityAffairs.webp 2021-06-12 13:39:38 Volkswagen discloses data breach, 3.3 million customers impacted (lien direct) Volkswagen America discloses a data breach at a third-party vendor that exposed the personal details of more than 3.3 million of its customers. Volkswagen America discloses a data breach suffered by a third-party vendor used by the car vendor for sales and marketing purposes. The security breach affected a subsidiary Audi and authorized dealers in […] Data Breach
bleepingcomputer.webp 2021-06-12 12:27:59 Audi, Volkswagen data breach affects 3.3 million customers (lien direct) Audi and Volkswagen have suffered a data breach affecting 3.3 million customers after a vendor exposed unsecured data on the Internet. [...] Data Breach
SecurityWeek.webp 2021-06-11 18:59:35 Volkswagen America Discloses Data Breach Impacting 3.3 Million (lien direct) Volkswagen Group of America this week revealed that approximately 3.3 million people might have been affected in a data breach that impacted both Audi of America and Volkswagen of America (together VWGoA). Data Breach
InfoSecurityMag.webp 2021-06-11 17:00:00 McDonald\'s Suffers Data Breach (lien direct) Burger chain breach impacts US operations and employees and diners in South Korea and Taiwan Data Breach
bleepingcomputer.webp 2021-06-11 12:45:46 McDonald\'s discloses data breach after theft of customer, employee info (lien direct) McDonald's, the largest fast-food chain globally, has disclosed a data breach after hackers breached its systems and stole information belonging to customers and employees from the US, South Korea, and Taiwan. [...] Data Breach
InfoSecurityMag.webp 2021-06-11 11:34:00 Gaming Giant EA Suffers Major Data Breach (lien direct) Hackers stole 780GB of data, including source code for the popular football game FIFA 21 Data Breach
InfoSecurityMag.webp 2021-06-10 17:24:00 Texas to Publish Data Breach Notifications (lien direct) New law requires data breaches affecting 250 or more Texas residents to be posted online Data Breach
InfoSecurityMag.webp 2021-06-09 17:34:00 Nebraska Medicine Data Breach Settlement Approved (lien direct) Judge approves preliminary settlement in data breach lawsuit brought against Nebraska Medicine Data Breach
bleepingcomputer.webp 2021-06-07 12:47:16 US truck and military vehicle maker Navistar discloses data breach (lien direct) Navistar International Corporation (Navistar), a US-based maker of trucks and military vehicles, says that unknown attackers have stolen data from its network following a cybersecurity incident discovered at the end of last month. [...] Data Breach
AlienVault.webp 2021-06-04 05:01:00 Digital transformation explained (lien direct) This article was written by an independent guest author. No matter what sector your organization does business in, you’ve probably heard the term digital transformation. In every industry, digital transformation is going to be critical to remain competitive and resilient. But what does digital transformation mean? And how does cybersecurity fit in? Today’s organizations are facing  an increasingly complex environment of securing everything attached to the network; applications, data, and endpoints. What is digital transformation? At its most basic definition, digital transformation (or DX) is the process of improving your business by leveraging the latest technologies and solutions. Digital transformation harnesses third platform technologies - think cloud and data analytics, and acceleration technologies - think IoT and mobile apps to transform business operations. The primary goals of digital transformation are to increase agility for customer responsiveness, flexibility to accommodate new ways of working, and scalability to help your business do more. What’s driving digital transformation? The main drivers of digital transformation are: Skyrocketing data transmission speeds Increased storage capacities Expansion of mobile functionality All these signs point to a rapid decrease of on-premises computing and storage. With the cloud, the amount of time and resources spent on hardware maintenance and upkeep is drastically reduced because you no longer need to own, maintain, and upgrade these resources in your own data center. Rebuffing the maintenance mindset, the preference for most IT departments is to spend more on innovation vs. the traditional “keep  the lights on” tasks. However, because “turning the lights off” isn’t feasible, the bulk of IT budgets continue to be allocated to maintenance. A 2020 Deloitte Inisights report underscores the reality: the average IT department allocates over half its budget on maintenance but only 19 percent on innovation. And according to a 2021 State of IT Spiceworks Ziff Davis study, updating outdated IT infrastructure is the number one factor driving IT budget increases — cited by 56% of organizations planning on growing IT spend. Also driving cloud adoption is the need to address disaster recovery (DR). While DR has not been typically cost-effective for small to mid-sized businesses, many cloud vendors and providers offer DR solutions like DRaaS (Disaster Recovery as a Service) that address those challenges. But perhaps the greatest driver of cloud adoption today is COVID-19. The pandemic’s disruption to the business landscape forced organizations to consider advanced technologies. The work from home or remote work model is here to stay, and the demand for software-as-a-service (SaaS) applications that allow teams to collaborate from anywhere is steadily increasing. The main spheres of digital transformation While one can argue that the components of digital transformation are numerous, we are highlighting five important spheres. Security As network access moves beyond the office perimeter to meet the demands of a remote workforce, robust security measures are required to maintain the confidentiality, integrity, and availability of corporate and customer data. Data Breach Threat Deloitte
bleepingcomputer.webp 2021-06-03 13:50:20 Scripps Health notifies patients of data breach after ransomware attack (lien direct) ​Nonprofit healthcare provider, Scripps Health in San Diego, has disclosed a data breach exposing patient information after suffering a ransomware attack last month. [...] Ransomware Data Breach
InfoSecurityMag.webp 2021-06-02 16:00:00 Scripps Notifying 147K People of Data Breach (lien direct) Healthcare provider shares news of ransomware attack that exposed patient data Ransomware Data Breach
InfoSecurityMag.webp 2021-06-01 15:19:00 Model Sues Law Firm Over Data Breach (lien direct) Goldberg Segalla accused of leaking fashion model's personal information on PACER Data Breach
SecurityAffairs.webp 2021-05-29 21:57:58 FBI will share compromised passwords with HIBP Pwned Passwords (lien direct) The FBI is going to share compromised passwords discovered during investigations with Have I Been Pwned (HIBP)’s ‘Pwned Passwords’ service. The FBI will share compromised passwords that were discovered during investigations with the ‘Pwned Passwords‘ service implemented by the data breach notification site Have I Been Pwned (HIBP). The Pwned Passwords service allows users to search […] Data Breach ★★
SecurityWeek.webp 2021-05-27 17:59:19 Japanese Ministries Confirm Impact from Fujitsu Data Breach (lien direct) Japan's Ministry of Foreign Affairs and Ministry of Land, Infrastructure, Transport and Tourism this week confirmed impact from a data breach at service provider Fujitsu Limited. Data Breach
InfoSecurityMag.webp 2021-05-27 16:42:00 (Déjà vu) Data Breach at Canada Post (lien direct) Malware attack on third-party supplier leads to data breach at Canada Post Data Breach Malware Guideline
no_ico.webp 2021-05-27 14:38:13 Canada Post Discloses Data Breach (lien direct) BACKGROUND: It has been reported that Canada Post has informed 44 of its large business customers that information relating to more than 950,000 customers was compromised after one of its… Data Breach
bleepingcomputer.webp 2021-05-27 14:08:26 Canada Post hit by data breach after supplier ransomware attack (lien direct) Canada Post has informed 44 of its large commercial customers that a ransomware attack on a third-party service provider exposed shipping information for their customers. [...] Ransomware Data Breach
Anomali.webp 2021-05-25 15:00:00 Anomali Cyber Watch: Bizzaro Trojan Expands to Europe, Fake Call Centers Help Spread BazarLoader Malware, Toshiba Business Reportedly Hit by DarkSide Ransomware and More (lien direct) The various threat intelligence stories in this iteration of the Anomali Cyber Watch discuss the following topics: BazarCall, DarkSide, Data breach, Malware, Phishing, Ransomware and Vulnerabilities. The IOCs related to these stories are attached to Anomali Cyber Watch and can be used to check your logs for potential malicious activity. Figure 1 - IOC Summary Charts. These charts summarize the IOCs attached to this magazine and provide a glimpse of the threats discussed. Trending Cyber News and Threat Intelligence Air India passenger data breach reveals SITA hack worse than first thought (published: May 23, 2021) Adding to the growing body of knowledge related to the March 2021 breach of SITA, a multinational information technology company providing IT and telecommunication services to the air transport industry, Air India announced over the weekend that the personal information of 4.5 million customers was compromised. According to the airline, the stolen information included passengers’ name, credit card details, date of birth, contact information, passport information, ticket information, Star Alliance and Air India frequent flyer data. The compromise included data for passengers who registered with Indian Airlines between 26 August 2011 and 3 February 2021; nearly a decade. Air India adds to the growing list of SITA clients impacted by their data breach, including Malaysia Airlines, Finnair, Singapore Airlines, Jeju Air, Cathay Pacific, Air New Zealand, and Lufthansa. Analyst Comment: Unfortunately, breaches like this are commonplace. While customers have no control over their information being included in such a breach, they can and should take appropriate actions once notified they may be impacted, Those actions can include changing passwords and credit cards associated with the breached accounts, engaging with credit reporting agencies for enhanced credit monitoring or freezing of credit inquiries without permission, and reaching out to companies that have reportedly been breached to learn what protections they may be offering their clients. Tags: Data Breach, Airline, PII BazarCall: Call Centers Help Spread BazarLoader Malware (published: May 19, 2021) Researchers from PaloAlto’s Unit42 released a breakdown of a new infection method for the BazarLoader malware. Once installed, BazarLoader provides backdoor access to an infected Windows host which criminals can use to scan the environment, send follow-up malware, and exploit other vulnerable hosts on the network. In early February 2021, researchers began to report a “call center” method of distributing BazarLoader. Actors would send phishing emails with trial subscription-based themes encouraging victims to phone a number to unsubscribe. If a victim called, the actor would answer the phone and direct the victim through a process to infect the computer with BazarLoader. Analysts dubbed this method of infection “BazarCall.” Analyst Comment: This exemplifies social engineering tactics threat actors employ to trick users into installing malware on their machines. All social media users should be cautious when accepting unknown requests to connect, and particularly cautious when receiving communication from unknown users. Even if cal Ransomware Data Breach Malware Hack Tool Vulnerability Threat Guideline
bleepingcomputer.webp 2021-05-25 14:37:16 Domino\'s India discloses data breach after hackers sell data online (lien direct) Domino's India has disclosed a data breach after a threat actor hacked their systems and sold their stolen data on a hacking forum. [...] Data Breach Threat
no_ico.webp 2021-05-25 12:20:42 (Déjà vu) Expert Commentary on Audio Maker Bose Recent Data Breach (lien direct) Bose Corporation (Bose) has disclosed a data breach following a ransomware attack that hit the company’s systems in early March. The Attorney General of Bose released the below statement: “experienced… Ransomware Data Breach
InfoSecurityMag.webp 2021-05-25 09:03:00 GDPR Anniversary: Security Leaders More Concerned About Litigation Than Fines (lien direct) 90% of security leaders are concerned about data breach litigation because of GDPR Data Breach Guideline
itsecurityguru.webp 2021-05-25 07:59:31 (Déjà vu) Bose reports data breach following ransomware attack (lien direct) Bleeping Computer has reported that audio maker Bose disclosed a data breach after ransomware attack that hit the company’s systems in early March. A breach notification letter filed with New Hampshire’s Office of the Attorney General by Bose stated the company “experienced a sophisticated cyber-incident that resulted in the deployment of malware/ransomware across” its “environment.” Ransomware Data Breach ★★★★
bleepingcomputer.webp 2021-05-24 19:47:00 Audio maker Bose discloses data breach after ransomware attack (lien direct) Bose Corporation (Bose) has disclosed a data breach following a ransomware attack that hit the company's systems in early March. [...] Ransomware Data Breach
itsecurityguru.webp 2021-05-24 07:46:47 Damage of SITA data breach still unfolding as Air India compromised (lien direct) Tech Crunch has reported that a recently found Air India passenger data breach indicates that the SITA hack is worse than first anticipated. Three months after air transport data giant SITA reported its own data breach, the damage is still mounting. Air India said this week that personal data of about 4.5 million passengers had […] Data Breach Hack ★★★★★
SecurityAffairs.webp 2021-05-22 11:54:17 (Déjà vu) Air India suffered a data breach, 4.5 million customers impacted (lien direct) Air India disclosed a data breach that impacted roughly 4.5 million of its customers, two months after its Passenger Service System provider SITA was hacked. Air India has disclosed a data breach that impacted 4.5 million of its customers, exposed data includes the personal information of customers registered between August. 26, 2011 and February. 3, 2021. Customers’ […] Data Breach
The_Hackers_News.webp 2021-05-21 22:01:08 Air India Hack Exposes Credit Card and Passport Info of 4.5 Million Passengers (lien direct) India's flag carrier airline, Air India, has disclosed a data breach affecting 4.5 million of its customers over a period stretching nearly 10 years after its Passenger Service System (PSS) provider SITA fell victim to a cyber attack earlier this year. The breach involves personal data registered between Aug. 26, 2011 and Feb. 3, 2021, including details such as names, dates of birth, contact Data Breach Hack
SecurityAffairs.webp 2021-05-21 19:47:00 Indonesia \'s government confirms social security data breach for some citizens (lien direct) Indonesia has launched an investigation into a possible security incident that caused the leak of social security data for more than 270 million citizens. Indonesia’s Communication and Information Ministry has confirmed a leak of social security data, it attempted to downplay the incident explaining that it only impacted a small portion of the population. The authorities […] Data Breach
bleepingcomputer.webp 2021-05-21 14:48:50 Air India data breach impacts 4.5 million customers (lien direct) Air India disclosed a data breach after personal information belonging to roughly 4.5 million of its customers was leaked two months following the hack of Passenger Service System provider SITA in February 2021. [...] Data Breach Hack
bleepingcomputer.webp 2021-05-21 05:26:06 E-commerce giant suffers major data breach in Codecov incident (lien direct) E-commerce platform Mercari has disclosed a major data breach incident that occurred due to exposure from the Codecov supply-chain attack. Mercari is a Japanese public company and an online marketplace that has recently expanded its operations to the United States and United Kingdom. [...] Data Breach
TroyHunt.webp 2021-05-20 16:44:17 Mandatory opt-out, data breach notification part of new privacy bill (lien direct) Senators reintroduce bill as scrutiny of social media ramps up. Data Breach
InfoSecurityMag.webp 2021-05-19 17:35:00 UHS Data Breach Lawsuit Proceeds (lien direct) Data breach lawsuit against healthcare provider gets the go-ahead but only for one patient Data Breach
InfoSecurityMag.webp 2021-05-18 19:26:00 #RSAC: Does the US Need a National Breach Reporting Law? (lien direct) Panelists at the RSA Conference 2021, including the FBI and US Department of Justice, make a case for a national standard for data breach reporting Data Breach
no_ico.webp 2021-05-18 13:33:06 (Déjà vu) Experts Reaction on guard.me Data Breach (lien direct) The student health insurance carrier guard.me has taken their website offline after a vulnerability allowed a threat actor to access policyholders’ personal information. The website is one of the largest insurance providers… Data Breach Vulnerability Threat
bleepingcomputer.webp 2021-05-17 20:57:51 Student health insurance carrier Guard.me suffers a data breach (lien direct) Student health insurance carrier guard.me has taken their website offline after a vulnerability allowed a threat actor to access policyholders' personal information. [...] Data Breach Vulnerability Threat
ESET.webp 2021-05-14 19:18:41 Verizon\'s 2021 DBIR: Phishing and ransomware threats looming ever larger (lien direct) The report provides unique insights into how the COVID-19 pandemic affected the data breach landscape Ransomware Data Breach
Kaspersky.webp 2021-05-14 13:26:48 Verizon: Pandemic Ushers in ⅓ More Cyber-Misery (lien direct) The DBRI – Verizon's 2021 data breach report – shows spikes in sophisticated phishing, financially motivated cyberattacks and a criminal focus on web-application servers. Data Breach
Veracode.webp 2021-05-14 10:33:26 2021 Verizon Data Breach Investigations Report Proves That Cybercrime Continued to Thrive During the Pandemic (lien direct) Verizon recently published its 2021 Data Breach Investigations Report (DBIR). This year, Verizon analyzed 79,635 incidents, of which 29,207 met their quality standards and 5,258 were confirmed data breaches, from 88 countries around the world. Despite the global pandemic, the DBIR uncovered that cybercrime continued to thrive. Like previous years, the majority of breaches were financially motivated, and most were caused by external actors illegally accessing data. Threat actors Threat actor motives Phishing, ransomware, and web app attacks ??ヲ Oh my! Phishing and ransomware attacks, along with the continued high number of web application attacks, dominated the data breaches for 2021. Phishing attacks were present in a whopping 36 percent of breaches in this year???s dataset, representing an 11 percent increase from last year. Covid varieties Ransomware attacks increased by 6 percent, accounting for 10 percent of breaches. This increase can likely be attributed to new tactics where ransomware now steals the data as it encrypts it. Ransomware has also proven to be very efficient for cybercriminals. It doesn???t take a lot of hands on keyboards and it???s a relatively easy way for cybercriminals to make a quick buck. Web applications made up 39 percent of all data breaches. Most of the web applications attacked were cloud-based, which isn???t surprising giving the increased shift to digital during the pandemic. The majority of web application attacks were through stolen credentials or brute-force attacks. 95 percent of organizations that suffered a credentials management attack experienced between 637 to 3.3 billion malicious login attempts throughout the year. Top hacking varieties If you look at breaches by region, EMEA ??? comprised of Europe, the Middle East, and Africa ??? had the highest proportion of web application attacks. This is the second year in a row that web applications accounted for the majority (54 percent) of breaches in EMEA. Not surprisingly, the most commonly breached data type in EMEA was credentials ??? which goes hand-in-hand with web attacks.ツ? Patterns in EMEA breaches In Asia, web application attacks fell second to social engineering attacks and in North America, web application attacks fell third ??? behind social engineering and system intrusion. Web application threats were also prevalent across the 11 examined industries, especially in the information industry. The retail industry, which has notoriously been susceptible to web application attacks, has decreased its proportion of web application breaches. What can organizations do to prevent web application attacks? Ransomware Data Breach
no_ico.webp 2021-05-13 11:07:13 Experts Responses on Verizon DBiR Findings (lien direct) Today, Verizon has released its Data Breach Investigation Report (DBiR). With 29,207 quality incidents analysed, of which 5,258 were confirmed breaches, the DBiR provides a comprehensive snapshot of the state of… Data Breach
InfoSecurityMag.webp 2021-05-11 18:04:00 Kansas Identity Theft Spike Could Be Linked to Data Breach (lien direct) Alleged data breach at Kansas Department of Labor may account for state leading national unemployment fraud stats Data Breach Guideline
no_ico.webp 2021-05-11 15:11:30 Expert Commentary: CaptureRx Data Breach (lien direct) BACKGROUND: CaptureRx is notifying healthcare providers’ clients that unauthorized access to certain files could have exposed patient details like medical records, name, date of birth, and prescription information. CaptureRx recently… Data Breach
SecurityWeek.webp 2021-05-10 11:06:17 City of Chicago Hit by Data Breach at Law Firm Jones Day (lien direct) The city of Chicago on Friday said that employee emails were compromised in a Jones Day data breach involving Accellion's FTA file sharing service. Data Breach
InfoSecurityMag.webp 2021-05-07 16:25:00 Lawsuit Filed Over Contact Tracing Data Breach (lien direct) State of Pennsylvania and Insight Global accused of cybersecurity failures after PHI exposed Data Breach
itsecurityguru.webp 2021-05-07 15:41:46 Three US healthcare providers suffer data breach (lien direct) Following a ransomware attack on the administrative services company, CaptureRx, at least three US healthcare providers suffered a data breach. The attach occurred on February 6, and an investigation was launched almost two weeks later, discovering that several files had been accessed by an unauthorised user. The personal health information (PHI) of more than 24,000 […] Ransomware Data Breach
Last update at: 2024-06-16 09:10:46
See our sources.
My email:

To see everything: Our RSS (filtrered) Twitter