❌

Normal view

There are new articles available, click to refresh the page.
Yesterday — 24 September 2026Main stream

FBI Hack Exposed FBI’s Own Hacking Unit

By: Dissent
23 September 2026 at 19:52
Joseph Cox reports: The catastrophic hack of at least thousands of FBI officials’ personal data, including their addresses, phone numbers, and even their spouses, includes members of the FBI’s secretive hacking team, potentially revealing who exactly is in that unit, 404 Media has found. The findings further highlight how sensitive the stolen data is, and...

Source

Before yesterdayMain stream

HHS’ Office for Civil Rights Settles HIPAA Investigation of Ambry Genetics for Security Rule Violations

By: Dissent
18 September 2026 at 20:47
WASHINGTON — September 17, 2026 — The U.S. Department of Health and Human Services (HHS) Office for Civil Rights (OCR) today announced a settlement with Ambry Genetics Corporation (Ambry) concerning potential violations of the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Security Rule. Ambry, headquartered in Aliso Viejo, California, is a covered entity...

Source

Navigate360 may soon release a public notice about its horrific breach, but will any individuals be notified?

By: Dissent
17 September 2026 at 08:07
Six months ago, a hacktivist announced that they had accessed and acquired 8.3 million tips submitted on supposedly anonymous tip lines and platforms used by schools, communities, Crime Stoppers organizations, law enforcement, and the military. Six months later, individuals affected by the breach STILL haven’t been notified.  Since April, DataBreaches has reported Navigate360’s lack of public transparency about the...

Source

Korea raises data breach fines to 10% of revenue

By: Dissent
10 September 2026 at 09:36
Korea JoongAng Daily reports: Korea’s privacy regulator is sharply raising the cost of data breaches, aiming to push companies to treat data protection as a preventive investment rather than a routine cost of doing business. Starting Friday, companies found to have leaked the personal data of 10 million or more people through intent or gross negligence...

Source

Party’s over for scammers who went on spending spree after $240M bitcoin theft

By: Dissent
8 September 2026 at 07:32
Michael Kunzelman of the AP reports: They pulled off one of the largest cryptocurrency thefts in U.S. history, duping a stranger out of bitcoin worth over $240 million. They tried to hide their digital fingerprints, carrying out a sophisticated scheme to launder the proceeds. And then the party started. The scammers — a network of young men...

Source

Agentic Ransomware Took Down Enterprise in Ten Hours: AI Left 80-Page Audit

By: Dissent
3 September 2026 at 12:51
Roger Satterfield reports: An attacker handed an unknown corporate victim a comprehensive, 80-page security audit on Wednesday — not as a service, but as a postscript to the ransomware attack that had just consumed the victim’s enterprise. According to Palo Alto Networks’ threat intelligence unit Unit 42, whose researchers documented the September 2 incident, the...

Source

Russian National Indicted For Exploiting Online Platform Used For Freelance Employment And Distributing Malware To Thousands Of Victims

By: Dissent
3 September 2026 at 07:49
SAN FRANCISCO – A federal grand jury has indicted Searzhudin Tamirlanovich Aktulaev on charges of Conspiracy, Transmission of a Program, Information, Code, and Command to Cause Damage to a Protected Computer, and Aggravated Identity Theft, among other offenses.  Defendant was arrested in Cyprus in May 2025 and has been extradited to the United States.  Yesterday,...

Source

Time’s Up: Ransomware Group Claims 150,000+ Cardiology Patient Records. We’ve Seen the Data.

By: Dissent
31 August 2026 at 10:00
On August 6, DataBreaches reported that Cardiology Associates of Port Huron (CAPH), a Michigan medical practice with 9 locations, appeared to have been breached by a group called Orova. As reported at the time, the listing included screenshots with personally identifiable and protected health information. Orova’s listing, posted on its leak site on August 4,...

Source

“Cognizable damage” required for data breach claims, MA appeals court says in a first

By: Dissent
24 August 2026 at 14:11
Christopher R. Deubert of Constangy, Brooks, Smith & Prophete, LLP writes: Helpful guidance for businesses, and for Massachusetts state courts. In 2021, the U.S. Supreme Court held in TransUnion, LLC v. Ramirez that in a suit for damages, “the mere risk of future harm, without more, cannot qualify as a concrete harm” sufficient to establish standing under Article...

Source

Beware the Ransomware Rescuer: Ransom Busters

By: Dissent
19 August 2026 at 08:48
Justin Timothy reports: The GuidePoint Research and Intelligence Team (GRIT) has responded to several recent ransomware incidents in which victims received an unexpected email from an ostensible third-party entity referring to itself as “Ransom Busters.” In these messages, the third-party offers to help the victim recover from ransomware attack. This immediately stands out as anomalous....

Source

CISA Unveils New Cybersecurity Resources for K-12 Schools and Districts

By: Dissent
15 August 2026 at 07:20
A recent report claims ransomware attacks on K-12 are down for the first half of 2026, while another news story’s headline today claims schools are becoming a new cybersecurity battleground. New? We don’t think it’s new. But the education sector has long been characterized as providing low-hanging fruit for criminals, and recent attacks on edtech...

Source

In a first, US will allow some private firms to carry out cyberattacks

By: Dissent
13 August 2026 at 11:05
Zack Whittaker reports: The U.S. government will for the first time allow vetted private companies to launch offensive cyber operations against international criminal gangs and hackers, the White House said on Wednesday. In a newly published presidential memorandum, the Trump administration said the move will allow the federal government to use “innovative capabilities of the private...

Source

Stolen Change Healthcare data gets new handling rules in court order

By: Dissent
11 August 2026 at 14:35
Naomi Diaz reports: A federal judge in Minnesota has signed off on a strict set of rules for how the data stolen in Change Healthcare’s 2024 cyberattack can be handled during the ongoing lawsuit. Magistrate Judge Dulce J. Foster approved the plan, reviewed by Becker’s, Aug. 7. It applies to the combined lawsuit against UnitedHealth Group and several of...

Source

HHS OCR Settles Ransomware Investigation of OSF Healthcare System and Affiliated Covered Entities

By: Dissent
30 July 2026 at 07:26
In June 2021, DataBreaches reported on a ransomware attack affecting OSF Healthcare by a little-known gang called Xing Team. Our reporting noted OSF’s lack or response to inquiries and lack of timely notification. When OSF issued a statement in October, DataBreaches reported on that, too, commenting that we did not find their incident response timely...

Source

KR: KT Fined 54 Billion Won Over Data Breach via Illegal Base Stations

By: Dissent
30 July 2026 at 07:21
Two years after a malware incident that was not handled in accordance with South Korea’s requirements, KT has been fined. Lee Jin-seok reports: KT has been fined more than 53.9 billion won [USD $37,630,484.43] over a personal data breach and unauthorized micropayment damages caused by the exploitation of illegal small base stations (femtocells). The government...

Source

US House Votes to Extend Cyber Sharing Law for 10 Years

By: Dissent
25 July 2026 at 10:25
Chris Liotta reports: Lawmakers voted to extend a key cyberthreat sharing law for another decade, attaching the long-stalled reauthorization to Washington’s annual defense policy bill. The U.S. House of Representatives narrowly approved its $1.15 trillion fiscal year 2027 national defense authorization act in a 216-212 vote Wednesday, including a provision that would reauthorize the Cybersecurity Information...

Source

Crime Stoppers assured people their tips would be anonymous. Then more than 1 million tips leaked.

By: Dissent
24 July 2026 at 08:49
Previous reporting about the Navigate360 breach focused on tips submitted by students, teachers, and parents. In this article, we focus on tips submitted to Crime Stoppers and law enforcement-related programs that use Navigate360’s software. Links to previous articles on this breach are at the end of this article.  Background In 1976, an Albuquerque detective had...

Source

Clop gang targets Windchill, FlexPLM in data theft attacks

By: Dissent
24 July 2026 at 08:06
Sergiu Gatlan reports: The Clop ransomware gang (also tracked as Cl0p) is targeting Internet-exposed PTC Windchill and FlexPLM instances in a new data theft extortion campaign. Clop has reportedly been exploiting a critical improper input validation vulnerability tracked as CVE-2026-12569, which allows attackers to execute arbitrary code on vulnerable Windchill and FlexPLM instances. As cybersecurity company...

Source

❌
❌