โŒ

Normal view

There are new articles available, click to refresh the page.
Yesterday โ€” 11 May 2026Main stream

A government contractor hired twin brothers who were convicted felons. A year later, it regretted it.

By: Dissent
10 May 2026 at 16:35
In May 2015, DataBreaches reported that on April 30, 2015, the Department of Justice had announced the indictment of twin brothers Muneeb and Sohaib Akhter of Virginia. The twins. who were 23 years old, were indicted on charges of aggravated identity theft, conspiracy to commit wire fraud, conspiracy to access a protected computer without authorization,...

Source

Before yesterdayMain stream

Instructure discloses second data breach in less than a year

By: Dissent
3 May 2026 at 20:00
Instructure defines itself as the โ€œO.G. champions of open edtech. The makers of Canvas, Mastery, and Parchment (solutions for learning, assessment, and credentialing). Host of the worldโ€™s largest online community of educators. (And yesโ€”weโ€™re โ€˜the panda people.โ€™). We build industry-leading edtech, empowering both teachers and learners at every step of their journey.โ€ Sadly, they were...

Source

Maryland pharmacist indicted on unauthorized computer access related to U. Maryland Medical Center

By: Dissent
2 May 2026 at 08:15
From the U.S. Attorneyโ€™s Office, District of Maryland: A Maryland man is facing federal indictment stemming from an unauthorized computer access scheme involving a Maryland medical system. Matthew Bathula, 41, of Clarksville, is charged with two counts of unauthorized access to a protected computer, and one count of aggravated identity theft while working as a...

Source

Michigan residents sue Thomson Reuters over public display of Social Security numbers

By: Dissent
1 May 2026 at 14:50
Caitlyn Rosen reports: A class of Michiganders asserted in a federal lawsuit filed Thursday that a Thomson Reuters search engine wrongfully published their Social Security numbers. In an 11-page lawsuit filed in the U.S. District Court for the Eastern District of Michigan, the class claims Reuters search engines publicly displayed plaintiffsโ€™ social security numbers in...

Source

Unprecedented: Private Equity Firm Potentially on Hook for PowerSchoolโ€™s Data Breach

By: Dissent
1 May 2026 at 07:14
Tyler Bridegan, Scott Hyman, Patrick Strubbe, and Sarah Wilk of Womble Bond Dickinson write: In a first of its kind, a California federal judge allowed claims against Bain Capital to proceed based on a data breach at its subsidiary, PowerSchool. Notably, many of the claims are based on conduct that occurredย beforeย Bainโ€™s acquisition of PowerSchool. Although...

Source

VECT Ransomware is a Wiper, Not Ransomware โ€” Donโ€™t Bother Paying, Says Check Point Research

By: Dissent
29 April 2026 at 12:08
Check Point Researchers recently dug into all three versions of VECTโ€™s ransomware. And what they found should concern anyone who discovers they have been locked by it. From their blog post: Ransomware is supposed to be reversible. The attacker locks your files, holds the key, and returns it when you pay.ย Thatโ€™sย the business model. VECTโ€™s software...

Source

The โ€œBlueLeaks 2.0โ€ Breach: Will there be any accountability? Senators start with transparency.

By: Dissent
28 April 2026 at 09:37
A DataBreaches.net Editorial The โ€œBlueLeaks 2.0โ€ data breach may be the worst privacy and data security breach affecting students that DataBreaches has seen in 20 years of reporting on breaches affecting the education sector. If people thought the Power School incident was the worst ever, hold my coffee. Who will hold P3 Global Intel (โ€œP3โ€)...

Source

Regulator fines Fidelity Brokerage Services $1.25M over data breach

By: Dissent
27 April 2026 at 19:44
Melanie Waddell reports: William Galvin, Massachusettsโ€™ top securities regulator, ordered Fidelity Brokerage Services on Monday to pay $1.25 million for failing to enforce appropriate cybersecurity controls that resulted in a data breach affecting about 77,000 customers. โ€œAfter learning of the breach, Fidelity also failed to notify many impacted residents, including the relatives and minor children...

Source

South Koreaโ€™s regulator fines matchmaking service Duo $830,000 over data breach

By: Dissent
23 April 2026 at 13:02
Hyun Su-a reports: Duo Info, South Koreaโ€™s top matchmaking company, leaked the personal information of 430,000 members, authorities said. The leaked items went far beyond names and email addresses to include religion, hobbies, height, weight, education and remarriage history. Excluding income and asset information, virtually all of the membersโ€™ personal details were exposed externally. The...

Source

BlueLeaks 2.0: 7,300+ Schools, Referral Systems Reported, and a Breach Navigate360 Still Hasnโ€™t Publicly Confirmed

By: Dissent
22 April 2026 at 10:14
Overview and Background This is the first of what will likely be several updates to this siteโ€™s exclusive reporting on the โ€œBlueLeaks 2.0โ€ incident that exposed anonymous and sensitive tips by and about students on a platform that promised them anonymity and security.ย  DDoSecrets.org named the incident โ€œBlue Leaks 2.0โ€ because, like a previous leak...

Source

Florida Man Working as a Ransomware Negotiator Pleads Guilty to Conspiracy to Deploy Ransomware and Extort U.S. Victims

By: Dissent
21 April 2026 at 06:37
And then there were threeโ€ฆ. A third man has pleaded guilty to conspiring with two other cybersecurity professionals and BlackCat to use BlackCatโ€™s ransomware and negotiation platform to target U.S. firms. Ryan Goldberg of Georgia and Kevin Martin of Texas pleaded guilty in December, and are scheduled to be sentenced on April 30.ย  Two of...

Source

Brussels launched an age checking app. It took 2 minutes to hack it.

By: Dissent
17 April 2026 at 08:39
ร‰mile Marzolf, Ellen Oโ€™Regan, and Eliza Gkritsi report: The European Unionโ€™s unveiling of a mobile app to check peopleโ€™s age online has quickly turned sour, as cybersecurity experts found glaring privacy and security problems with the code. European Commission President Ursula von der Leyen presented the age-verification tool in Brussels on Wednesday, saying it was...

Source

Californiaโ€™s cybersecurity audit rule is now in effect: its impact for class litigation

By: Dissent
14 April 2026 at 13:10
The IAPP writes: Last year, the California Privacy Protection Agency adopted a majorย new ruleย requiring certain businesses to conduct an annual cybersecurity audit. The rule went into effect 1 Jan. 2026. This pioneering requirement, the first of its kind among state data privacy laws of general applicability, may entail substantial compliance efforts for affected companies to...

Source

Silent Ransom Group leaked another big law firm: Orrick, Herrington & Sutcliffe

By: Dissent
10 April 2026 at 10:38
Jones Day wasnโ€™t the only big law firm to recently fall prey to threat actors variously known as Silent Ransom Group, Luna Moth, Chatty Spider, or UNC3753. DataBreaches will refer to them as the Silent Ransom Group (โ€œSRGโ€).* In January, SRG gained access to the law firm of Orrick, Herrington & Sutcliffe LLP (โ€œOrrickโ€). In...

Source

86% of businesses refused to pay cyber ransoms in 2025 โ€” Coalition Insurance

By: Dissent
9 April 2026 at 08:23
Two firms recently told DataBreaches that about 30% or more of their clients pay ransom after a cyberattack. But you may get a different impression from other findings. The Actuary reports: Initial ransom demands by cyber attackers surged by 47% last year but record numbers of businesses declined to pay up, according to a specialist...

Source

Act-of-War Clauses Cloud Cyber Insurance Coverage

By: Dissent
8 April 2026 at 09:09
Angus Loten reports: From Europe to the Middle East, geopolitical conflicts have companies rereading the fine print on insurance policies that deny coverage for wartime cyberattacks. Act-of-war exclusionsโ€”a common provision in homeowners, life and travel insuranceโ€”are largely untested in the cyber market, where the line between cybercrime and nation-state warfare is unclear. That can leave...

Source

Russians hijacking routers for cyber spying

By: Dissent
8 April 2026 at 08:21
George Allison reports: In a new advisory, the NCSC warned that APT28, a cyber group linked to Russiaโ€™s GRU Military Unit 26165, has been exploiting vulnerabilities in edge network devices to conduct Domain Name System hijacking operations. DNS is the system that translates website addresses into the numerical IP addresses computers use to connect, and...

Source

Jones Day confirms limited breach after phishing attack by Silent Ransom Group

By: Dissent
6 April 2026 at 22:44
One of the top-ranked law firms in the country confirmed today that it has suffered a data breach. Jones Day disclosed the breach after hackers known as Silent Ransom Group (SRG) posted the data โ€‹to their dark web leak site on March 30. A spokesperson for the firm said that limited files for 10 clients...

Source

Moscow, Idaho, clinics reopen after Gritman cyber incident

By: Dissent
6 April 2026 at 07:20
DysruptionHub reports: Gritman Medical Center began reopening clinics in Moscow, Idaho, on Friday after a cybersecurity incident disrupted outpatient care beginning early Wednesday, though the hospital and emergency department remained open throughout. Gritman first publiclyย disclosedย the problem Thursday, saying several primary and specialty clinics were closed because of an electronic systems outage. In anย updateย later that night,...

Source

โŒ
โŒ