Normal view

There are new articles available, click to refresh the page.
Before yesterdayMain stream

What Canvas learned from a massive cyberattack

By: Dissent
7 August 2026 at 09:39
Alcino Donadel reports: …. Instructure, the edtech company behind learning management system Canvas, suffered one of the largest data breaches in the U.S. this year after cybercriminals gained access through a third-party vendor—an increasingly common occurrence in higher ed. Higher education’s more meditative, governed approach to technological change is useful for reviewing rigor and long-term quality assurance, Pendleton...

Source

Unlimited Technology Systems Data Breach Affects 3.8 Million Patients

By: Dissent
7 August 2026 at 09:38
HIPAA Journal reports an update to the Unlimited Technology Systems breach that occurred between October 10 – 15, 2025, and was discovered on October 19, 2025: On July 23, 2026, the HIPAA Journal reported on a data breach at Unlimited Technology Systems, a Montgomery, Ohio-based provider of revenue cycle management services. At the time, the...

Source

Dutch retailer Bol follows De Bijenkorf in warning of data breach as leaked data appears on dark web

By: Dissent
6 August 2026 at 08:11
The NL Times reports: Online retailer Bol has warned customers about a data breach involving one of its logistics partners. The company said unauthorized parties accessed the partner’s systems, but emphasized that Bol’s own systems were not affected. Even so, some customer information may have been viewed or copied, the company said in a statement....

Source

Canadian Man Pleads Guilty to Hacking U.S. Cloud Storage Provider and Extorting Its Customers for Millions

By: Dissent
5 August 2026 at 18:10
Connor Riley Moucka, aka “Waifu” and “Judishe,” was scheduled to stand trial in January 2027. Today, he changed his “not guilty” plea to a guilty plea, and pleaded guilty to four counts of the multi-count indictment.   Connor Riley Moucka, 26, of Kitchener, Ontario, pleaded guilty today to a widespread computer hacking conspiracy that resulted in...

Source

CareCloud Data Breach Impacts Over 350,000

By: Dissent
1 August 2026 at 10:25
Ionut Arghire reports: Healthcare information technology company CareCloud is notifying at least 350,000 people that their information was stolen in a data breach. The incident involved an electronic health record environment within the CareCloud Health division, which was disrupted on March 16, 2026. CareCloud’s investigation determined that hackers accessed one of its AWS environments between...

Source

Instructure Incident Driving 58 Percent of Breach Notices in 2026

By: Dissent
22 July 2026 at 19:12
GovTech reports: The mega breach is back in 2026, according to a new report from the Identity Theft Resource Center (ITRC). The nonprofit group, which works to prevent and reduce incidences of identify theft, found that 1,029 data compromises generated 471 million breach notices in the first half of the year, with one incident —...

Source

The Breach That Won’t End: An Update on Canvas, and how they created an EdTech’s Vendor Trust Problem

By: Dissent
16 July 2026 at 16:46
Jeff Piontek comments on the Instructure breach: The forensic review has taken far longer than anyone expected. Through June, Instructure was still finalizing customer-specific findings and asking institutions to designate a security contact to receive them. In early July, the company began delivering the first wave of institution-specific data packets, through a permissioned file-sharing link...

Source

Files relating to India’s largest nuclear power plant Kudankulam exposed in data breach

By: Dissent
15 July 2026 at 13:30
Munsif Vengattil and Aditya Kalra Ransomware group World Leaks has posted on the dark web a huge cache of files related to India’s largest nuclear plant, including purported blueprints of parts of its ​facilities and supplier details — information it labelled as coming from Reliance Group. The Kudankulam Nuclear Power Plant, located in the southern...

Source

Synopsys Finds No Evidence of Data Breach Amid Bosch Hack Claims

By: Dissent
14 July 2026 at 17:15
Eduard Kovacs reports: A new ransomware group named D1R in recent days listed Synopsys and Bosch on its Tor-based leak website. The cybercriminals claimed to have exploited a vulnerability in Synopsys’ website to access a corporate client database containing 40,000 entries, and they are threatening to leak the stolen data unless a ransom is paid....

Source

AdaptHealth says attackers sweet-talked their way into cloud systems and stole patient data

By: Dissent
4 July 2026 at 08:01
Connor Jones reports: AdaptHealth says attackers used social engineering to breach its systems and steal sensitive patient data, including passwords associated with insurance billing. The medical equipment company disclosed the attack to the Securities and Exchange Commission (SEC) on Thursday, noting that attackers accessed internal patient management systems, document storage platforms, and external electronic health record system...

Source

MOVEit Breach Defendants Lose 2nd Bid to Toss Negligence Claims

By: Dissent
29 June 2026 at 13:56
Christopher Brown reports: Bellwether defendants in multi-district litigation over a massive data breach of Progress Software’s MOVEit file-transfer application failed to convince a federal court to toss negligence claims against them under the laws of California, Indiana, Michigan, and Ohio. The defendants—Progress and several of its customers—argued that the claims were barred under the economic-loss...

Source

LastPass says hackers stole customer support case data during Klue breach

By: Dissent
24 June 2026 at 09:16
Password manager LastPass is still dealing with the settlement from its 2022 data breach (see Related Posts, below, for background on that), but now it has another breach to disclose. Zack Whittaker reports: Password manager maker LastPass is notifying customers that their personal information and customer support case records were stolen during a recent hack...

Source

Xsolis breach affected 1,396,519 of its clients’ patients

By: Dissent
22 June 2026 at 12:04
Xsolis, Inc. is a business associate in the healthcare sector, providing utilization and case management services. They describe themselves as applying “industry-leading AI and automation to ensure appropriate care settings and accelerate collaboration across a connected network of providers and payers.” On June 19, California Attorney General’s Office posted a copy of a breach notification...

Source

Power company in Japan fears data breach after losing storage drive containing customer details

By: Dissent
10 June 2026 at 11:05
Buranond Kijwatanachai reports: Private personal information of nearly 11 million people may have been leaked after a Kyushu power company lost a storage drive earlier this year. According to Asahi Shimbun, the storage drive was discovered missing on 26 May. The company insists that sensitive financial information was not leaked. On 27 April, a contractor for...

Source

LA: St. George fire district sues IT company over cyberattack

By: Dissent
10 June 2026 at 10:45
Deon Guillory reports: St. George Fire Protection District No. 2 filed a lawsuit against its former IT security provider, alleging the company’s failures led to a cyberattack that compromised the fire district’s network. The lawsuit, filed March 20 in the 19th Judicial District Court, claims General Informatics LLC breached its contract and fiduciary duty by...

Source

FTC Gives Final Approval to Order Against Illuminate Settling Allegations It Failed to Secure Students’ Personal Data

By: Dissent
8 June 2026 at 08:30
From an FTC press release of June 5: Following a public comment period, the Federal Trade Commission finalized a modified order requiring Illuminate Education Inc. to implement a data security program, limit collection and retention of consumer data, and delete unnecessary data to settle charges that the company’s data security failures led to a major...

Source

French Health Payments Breach Exposed ID Data, Fuels Fraud Fears

By: Dissent
29 May 2026 at 08:22
Michel Gribouille reports: A major French health-care payments middleman says hackers broke into a key authorization portal and may have exposed sensitive personal data, including France’s equivalent of a Social Security number, setting off warnings about identity theft and scam attempts. Almerys, a company that helps process “third-party payment” transactions so patients don’t have to...

Source

❌
❌