PrivacySignal
Breach

"City-Forum" data-theft attacks target Salesforce, ServiceNow portals

BleepingComputer · · International · Data Breaches

An ongoing data theft campaign uses custom tools to steal data exposed to anonymous users through Salesforce Experience Cloud and ServiceNow customer portals. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

Breach
DataBreaches.net · · International

Ransomware Attack Disables Canadian Hospital’s Doors, HVAC

Marianne Kolbasuk McGee reports: A Canadian hospital is dealing with a ransomware attack on its facility management systems that has affected the building’s doors and heating, ventilation and air conditioning equipment. Some experts said the incident underscores growing cyberthreats involving operational technology in healthcare. The attack this week on Manitoba, Ontario’s largest hospital – Winnipeg’s... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

Strict Rules Set for Change Healthcare Dataset in Multidistrict Litigation

Courts overseeing multidistrict litigation stemming from the 2024 Change Healthcare ransomware attack have established strict rules governing how the stolen dataset can be used in proceedings, reflecting the extraordinary volume and sensitivity of the compromised health information.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance · Lawyers

#breach#healthcare#regulation#security Read original →
Breach
The Record · · International

Three intrusions at UK criminal records office went undetected for two years

The UK's ACRO Criminal Records Office suffered three separate intrusions that went undetected for two years, according to a regulatory reprimand. Investigators found that antivirus alerts had gone unread and a content management system was left unpatched, leaving the agency exposed.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Record · · International

Ransomware group hijacks hospital system’s Facebook page amid ongoing cyberattack fallout

A ransomware group attacked a hospital system and then took over its Facebook page as part of the ongoing fallout. The attackers claim to have stolen 6 terabytes of data, including records tied to sexual assault, mental health care, abortions, and sexual harassment incidents.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →