Top

Category: Data loss


Data loss, Threats & Malware

Sydney Man Sentenced for Blackmailing Optus Customers After Data Breach

February 8, 2023

Via: The Hacker News

A Sydney man has been sentenced to an 18-month Community Correction Order (CCO) and 100 hours of community service for attempting to take advantage of the Optus data breach last year to blackmail its customers. The unnamed individual, 19 when […]


Data loss, Threats & Malware

20 Million Users Impacted by Data Breach at Instant Checkmate, TruthFinder

February 6, 2023

Via: Security Week

In individual data breach notices published on February 3, the organizations informed users that the incident was discovered after cybercriminals started sharing databases stolen from the two companies on underground forums. The databases – or ‘lists’, as the two companies […]


Data loss, Threats & Malware

Supply chain attacks caused more data compromises than malware

January 26, 2023

Via: Help Net Security

The first half of 2022 saw fewer compromises reported due in part to Russia-based cybercriminals distracted by the war in Ukraine and volatility in the cryptocurrency markets, according to the Identity Theft Resource Center. However, data compromises steadily increased in […]


Data loss, Threats & Malware

Companies Impacted by Recent Mailchimp Breach Start Notifying Customers

January 23, 2023

Via: Security Week

Marketing automation platform Mailchimp revealed recently that its security team discovered unauthorized access to one of its tools on January 11. The tool is used by the company’s customer-facing teams for support and account administration. According to Mailchimp, the hacker […]


Data loss, Threats & Malware

18k Nissan Customers Affected by Data Breach at Third-Party Software Developer

January 18, 2023

Via: Security Week

The breach occurred after data provided by Nissan to the services provider was inadvertently exposed on the internet, the company notes in a notification letter sent to the impacted customers. “The impacted third-party service provider provides software development services to […]


Data loss, Threats & Malware

Timeline of the latest LastPass data breaches

January 11, 2023

Via: CSO Online

Here is a timeline of the most recent LastPass data breaches from August and November. August 25, 2022: LastPass detects “unauthorized” access LastPass CEO Karim Toubba wrote to inform LastPass users that the company had detected unusual activity within portions […]


Data loss, Threats & Malware

Bay Bridge Administrators, LLC Notifies Individuals of Data Breach

January 11, 2023

Via: Dark Reading

Bay Bridge Administrators, LLC, (“BBA”), an Austin, Texas based full-service third-party administrator of insurance products that works with many major insurance carriers and employers, has learned of a data security incident that involved the personal information of individuals enrolled in […]


Data loss, Threats & Malware

Top European airlines confirm customer accounts hacked

January 9, 2023

Via: TechRadar

Two major European airlines have been compromised, and sensitive customer data likely accessed. The two airlines in question are Air France, and KLM, who have contacted customers of Flying Blue, a multi-airline loyalty program which allows travelers to exchange loyalty […]


Data loss, Threats & Malware

Facebook to Pay $725 Million to settle Lawsuit Over Cambridge Analytica Data Leak

December 27, 2022

Via: The Hacker News

Meta Platforms, the parent company of Facebook, Instagram, and WhatsApp, has agreed to pay $725 million to settle a long-running class-action lawsuit filed in 2018. The legal dispute sprang up in response to revelations that the social media giant allowed […]


Data loss, Threats & Malware

DraftKings Data Breach Impacts Personal Information of 68,000 Customers

December 20, 2022

Via: Security Week

The incident, initially disclosed in November, was the result of a credential stuffing attack and not a breach of DraftKings’ systems, the company says. Credential stuffing involves the use of leaked credentials (usernames, email addresses, and passwords) obtained from a […]


Data loss, Threats & Malware, Vulnerabilities

Twitter Responds to Recent Data Leak Reports

December 13, 2022

Via: Security Week

The social media giant revealed in August that a vulnerability patched in January was exploited to obtain user data before a fix was rolled out. The admission came following reports that the flaw had been exploited to collect data on […]


Data loss, Threats & Malware

How companies time data leak disclosures

December 5, 2022

Via: Help Net Security

Every year the personal data of millions of people, such as passwords, credit card details, or health details, fall into the hands of unauthorized persons through hacking or data processing errors by companies. The consequences for those affected can be […]


Data loss, Threats & Malware

LastPass admits to customer data breach caused by previous breach

December 2, 2022

Via: Naked Security

Back in August 2022, popular password manager company LastPass admitted to a data breach. The company, which is owned by sofware-as-a-service business GoTo, which used to be LogMeIn, published a very brief but nevertheless useful report about that incident about […]


Data loss, Threats & Malware

3 of the Worst Data Breaches in the World That Could Have Been Prevented

December 1, 2022

Via: Security Affairs

Data breaches can be devastating for organizations and even entire countries. Eliminating the risk of a data breach is nearly impossible, but some things can be done to reduce it significantly. Here are three of the worst data breaches that […]


Data loss, Threats & Malware, Vulnerabilities

Twitter Data Breach Bigger Than Initially Reported

November 28, 2022

Via: Security Week

In August, Twitter admitted that a vulnerability affecting its systems had been exploited to obtain user data. The issue, introduced in June 2021, could have been exploited to determine whether a specified phone number or email address was tied to […]


Data loss, Threats & Malware

Leaked Algolia API Keys Exposed Data of Millions of Users

November 22, 2022

Via: Security Week

Organizations can use Algolia’s API to incorporate into their applications functions such as search, discovery, and recommendations. The API is used by over 11,000 companies, including Lacoste, Slack, Medium, and Zendesk. CloudSEK says it has identified 1,550 applications that leaked […]


Data loss, Threats & Malware

Researchers Discover Hundreds of Amazon RDS Instances Leaking Users’ Personal Data

November 16, 2022

Via: The Hacker News

Hundreds of databases on Amazon Relational Database Service (Amazon RDS) are exposing personal identifiable information (PII), new findings from Mitiga, a cloud incident response company, show. “Leaking PII in this manner provides a potential treasure trove for threat actors – […]


Data loss, Threats & Malware

US States Announce $16M Settlement With Experian, T-Mobile Over Data Breaches

November 8, 2022

Via: Security Week

The multi-state settlement with Experian totals more than $13.67 million and the settlement with T-Mobile is for $2.5 million. In addition, each company has agreed to take steps to improve their data security practices. The attorneys general in several states […]


Data loss, Threats & Malware

Label Giant Multi-Color Corporation Discloses Data Breach

October 31, 2022

Via: Security Week

A global supplier of premium label solutions, MCC operates roughly 100 label producing operations and has approximately 10,000 employees. MCC provides label solutions to organizations in the automotive, beverage, chemicals, food, healthcare, technical, and other industries. In a data breach […]


Data loss, Threats & Malware

Microsoft Confirms Server Misconfiguration Led to 65,000+ Companies’ Data Leak

October 21, 2022

Via: The Hacker News

Microsoft this week confirmed that it inadvertently exposed information related to thousands of customers following a security lapse that left an endpoint publicly accessible over the internet sans any authentication. “This misconfiguration resulted in the potential for unauthenticated access to […]