❌

Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

Scoop: FulcrumSec Leaks Novo Nordisk Data After $25M Demand Goes Unpaid (2)

By: Dissent
15 June 2026 at 20:51
Danish pharma giant Novo Nordisk disclosed a cybersecurity incident last week, and although the firm’s name may not be familiar to everyone, they are a major producer of insulin and semaglutide. Semaglutide is marketed as Wegovy for weight loss and Ozempic for Type 2 diabetes. In its June 11 update, the firm stated that the...

Source

Ukrainian national pleads guilty to role in Conti ransomware operation

By: Dissent
12 June 2026 at 15:32
Lawrence Abrams reports: A Ukrainian national extradited from Ireland to the United States last year has pleaded guilty to conspiracy charges tied to the Conti ransomware operation. The U.S. Department of Justice announced Thursday that 44-year-old Oleksii Oleksiyovych Lytvynenko pleaded guilty to conspiracy to commit wire fraud for his role in Conti ransomware attacks conducted...

Source

After a Massive Hack, Global Schools Group’s Negotiator Acted β€œBizarrely.” It Didn’t End Well for Them.

By: Dissent
12 June 2026 at 09:44
The bigger they are, the harder they fail? Global Schools Foundation (GSF) is a Singapore-headquartered, not-for-profit K–12 education organization. With a global network of schools, the foundation strives to provide world-class education to students across multiple countries. Global Schools Group (GSG), an initiative of GSF, manages and operates a network of 12 international school brands...

Source

CISA gives feds 3 days to patch Check Point VPN bug exploited as zero-day

By: Dissent
9 June 2026 at 08:05
Sergiu Gatlan reports: CISA has ordered U.S. government agencies to secure their Check Point Remote Access VPN and Mobile Access deployments against a critical vulnerability exploited in zero-day attacks by Qilin ransomware affiliates. Unauthenticated remote attackers can exploit this security flaw (tracked asΒ CVE-2026-50751) to bypass authentication and establish a remote access VPN connection on targeted...

Source

Data of 600,000 Gaza households exposed in World Food Programme cyberattack

By: Dissent
2 June 2026 at 12:02
Jacob Goldberg and Irwin Loy report: A cyber-attack targeting the World Food Programme has exposed sensitive personal information belonging to some 600,000 households in Gaza, the UN’s food agency has confirmed, in what may be the largest-known breach of humanitarian beneficiary data to date. WFP is investigating a β€œsecurity-related incident” in which β€œunauthorised actors” accessed...

Source

Radiology Associates of Richmond discloses second data breach; 266k people affected

By: Dissent
22 May 2026 at 12:46
On July 1, 2025,Β  Radiology Associates of Richmond (β€œRAR”) reported a breach to HHS that had occurred in April 2024 and affected more than 1.4 million patients. By the end of July 2025, the well-known radiology practice had experienced a second breach. The second breach, recently reported to the Maine Attorney General’s Office on May...

Source

Murphy measure to protect Illinois consumers’ sensitive data advances in Senate

By: Dissent
22 May 2026 at 09:50
From the Illinois Senate Democrats: Β State Senator Laura Murphy is leading a comprehensive measure to protect consumers’ data and shield them from targeted advertisements. β€œBy placing guardrails around consumers’ personal information, we eliminate companies’ ability to collect and sell the most sensitive data of Illinoisans,” said Murphy (D-Des Plaines). β€œWe then put the power in...

Source

Another detail emerges about Instructure’s agreement with ShinyHunters; Debate continues about whether to pay

By: Dissent
16 May 2026 at 13:29
Media outlets have been understandably eager to learn whether Instructure paid ShinyHunters after the latter attacked them for a second time on May 7. Considering that they pledged to be more transparent, DataBreaches doesn’t fully understand why Instructure wasn’t more forthright about the payment issue in its update, unless they were trying to avoid encouraging...

Source

No need to hack when it’s leaking: Dalbir Singh & Associates law firm edition

By: Dissent
14 May 2026 at 20:48
Dalbir Singh & Associates ignored multiple attempts at responsible disclosure but finally locked down its misconfigured Amazon bucket, only to expose it again. Now the data is in the hands of criminals trying to extort them.Β  On April 6, DataBreaches reported on a misconfigured Amazon bucket belonging to an immigration law firm in New York....

Source

Alleged Dream Market admin arrested in Germany

By: Dissent
14 May 2026 at 08:24
Jonathan Greig reports: German and U.S. authorities arrested the alleged administrator behind Dream Market, a popular dark web forum that shut down in 2019. During a May 7 raid on three locations, German and U.S. law enforcement arrested Owe Martin Andresen, 49, on multiple charges of money laundering. An indictment unsealed this week by the...

Source

Homeland Security wants to know about the Instructure breach; we still want to know about the Navigate360 breach

By: Dissent
12 May 2026 at 09:58
Breaches involving school-related vendors such as PowerSchool and Instructure are causing major headaches for schools, students, and parents. They are also getting more attention from Congress. While some breaches have not exposed core data or personal information of students or personnel, other breaches, such as those involving PowerSchool and Navigate360’sΒ  P3 Campus, have involved sensitive...

Source

A government contractor hired twin brothers who were convicted felons. A year later, it regretted it.

By: Dissent
10 May 2026 at 16:35
In May 2015, DataBreaches reported that on April 30, 2015, the Department of Justice had announced the indictment of twin brothers Muneeb and Sohaib Akhter of Virginia. The twins. who were 23 years old, were indicted on charges of aggravated identity theft, conspiracy to commit wire fraud, conspiracy to access a protected computer without authorization,...

Source

Instructure discloses second data breach in less than a year

By: Dissent
3 May 2026 at 20:00
Instructure defines itself as the β€œO.G. champions of open edtech. The makers of Canvas, Mastery, and Parchment (solutions for learning, assessment, and credentialing). Host of the world’s largest online community of educators. (And yesβ€”we’re β€˜the panda people.’). We build industry-leading edtech, empowering both teachers and learners at every step of their journey.” Sadly, they were...

Source

Maryland pharmacist indicted on unauthorized computer access related to U. Maryland Medical Center

By: Dissent
2 May 2026 at 08:15
From the U.S. Attorney’s Office, District of Maryland: A Maryland man is facing federal indictment stemming from an unauthorized computer access scheme involving a Maryland medical system. Matthew Bathula, 41, of Clarksville, is charged with two counts of unauthorized access to a protected computer, and one count of aggravated identity theft while working as a...

Source

Michigan residents sue Thomson Reuters over public display of Social Security numbers

By: Dissent
1 May 2026 at 14:50
Caitlyn Rosen reports: A class of Michiganders asserted in a federal lawsuit filed Thursday that a Thomson Reuters search engine wrongfully published their Social Security numbers. In an 11-page lawsuit filed in the U.S. District Court for the Eastern District of Michigan, the class claims Reuters search engines publicly displayed plaintiffs’ social security numbers in...

Source

Unprecedented: Private Equity Firm Potentially on Hook for PowerSchool’s Data Breach

By: Dissent
1 May 2026 at 07:14
Tyler Bridegan, Scott Hyman, Patrick Strubbe, and Sarah Wilk of Womble Bond Dickinson write: In a first of its kind, a California federal judge allowed claims against Bain Capital to proceed based on a data breach at its subsidiary, PowerSchool. Notably, many of the claims are based on conduct that occurredΒ beforeΒ Bain’s acquisition of PowerSchool. Although...

Source

VECT Ransomware is a Wiper, Not Ransomware β€” Don’t Bother Paying, Says Check Point Research

By: Dissent
29 April 2026 at 12:08
Check Point Researchers recently dug into all three versions of VECT’s ransomware. And what they found should concern anyone who discovers they have been locked by it. From their blog post: Ransomware is supposed to be reversible. The attacker locks your files, holds the key, and returns it when you pay.Β That’sΒ the business model. VECT’s software...

Source

The β€œBlueLeaks 2.0” Breach: Will there be any accountability? Senators start with transparency.

By: Dissent
28 April 2026 at 09:37
A DataBreaches.net Editorial The β€œBlueLeaks 2.0” data breach may be the worst privacy and data security breach affecting students that DataBreaches has seen in 20 years of reporting on breaches affecting the education sector. If people thought the Power School incident was the worst ever, hold my coffee. Who will hold P3 Global Intel (β€œP3”)...

Source

Regulator fines Fidelity Brokerage Services $1.25M over data breach

By: Dissent
27 April 2026 at 19:44
Melanie Waddell reports: William Galvin, Massachusetts’ top securities regulator, ordered Fidelity Brokerage Services on Monday to pay $1.25 million for failing to enforce appropriate cybersecurity controls that resulted in a data breach affecting about 77,000 customers. β€œAfter learning of the breach, Fidelity also failed to notify many impacted residents, including the relatives and minor children...

Source

❌
❌