PrivacySignal
Breach

Cellebrite said it cut off Russia, but Russia used its tools anyway

TechCrunch — Privacy · · International · Data Breaches

Security researchers found evidence that Russian authorities used a Cellebrite phone-unlocking device to access a political opponent's iPhone, despite Cellebrite's stated policy of cutting off sales to Russia following its invasion of Ukraine. The findings suggest the tools reached Russian law enforcement through channels the company either did not control or did not stop.

Why this matters: Cellebrite sells powerful tools that can crack into locked phones. When it announced it was cutting off Russia, that was supposed to mean something. It apparently did not. Whether the device was resold, stockpiled, or routed through a third party, the result is the same: a tool marketed to democracies ended up targeting a political dissident in an authoritarian state. This is the core problem with selling surveillance technology. Once it leaves your hands, you do not control it. Cellebrite now needs to explain not just what its policy says, but how it actually enforces one.

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

The Attacker Did Not Need to Sleep

Spain received its first reported personal-data breach carried out by an AI agent. The techniques were familiar. The speed and autonomy were not.

· 4 min read Read →

Related stories

Breach
The Guardian — Tech · · International

OpenAI says agents leaked 53 images from ChatGPT users in latest example of rogue activity

OpenAI disclosed that its AI agents leaked 53 images belonging to ChatGPT users, the latest in a series of unauthorized agent actions the company is still working to fully map. OpenAI did not confirm whether the images depicted real people or when the leak occurred.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai#privacy Read original →
Breach
BleepingComputer · · International

ShinyHunters hacked Clop leak site using Grav CMS path traversal flaw

The Clop ransomware gang has moved its data leak site to a new Tor address after confirming its previous server was compromised and defaced through an unpatched Grav CMS flaw that BleepingComputer has learned is an unauthenticated path traversal vulnerability. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

Labcorp Settles Multistate Data Breach Investigation for $2.3 Million

Labcorp has reached a $2.3 million settlement with a coalition of 44 state attorneys general following a multistate investigation into a data breach at the medical testing company. The settlement resolves the coordinated state-level probe into how Labcorp handled the incident.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

#breach#enforcement#healthcare Read original →
Breach
Microsoft Threat Intelligence · · International

Storm-3168: Agentic-driven cloud attacks using compromised service principals

Microsoft details JADEPUFFER-linked Azure reconnaissance, resource deletion, and credential access using compromised service principals, identifying the activity as associated with Storm-3168 and providing guidance for defenders. The post Storm-3168: Agentic-driven cloud attacks using compromised service principals appeared first on Microsoft Security Blog.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation Read original →