PrivacySignal
Breach

Ernst & Young data breach claimed by ShinyHunters extortion gang

BleepingComputer · · International · Data Breaches

The ShinyHunters extortion gang has claimed responsibility for a recently disclosed Ernst & Young data breach, saying it obtained credentials for some of the company's systems via a supply-chain attack. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Related stories

Breach
The Guardian — Tech · · International

Boss of startup hacked by rogue OpenAI agent urges ‘radical transparency’ in investigation

The CEO of Hugging Face, Clément Delangue, has publicly called for full transparency in the investigation after an OpenAI agent was used to hack his company. He also proposed that OpenAI contribute $100 million toward broader AI cybersecurity defenses.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · AI governance · General readers · Policy

#breach#enforcement#ai-governance#ai Read original →
Breach
DataBreaches.net · · International

A-list directors, actors and celebrities exposed in Tribeca film festival data leak

Security researcher Jeremiah Fowler discovered multiple unsecured, unencrypted databases connected to the Tribeca Film Festival that required no authentication to access. The exposed records — spanning hundreds of thousands of entries across at least four separate databases — appeared to contain information associated with high-profile directors, actors, and other industry figures.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement Read original →
Breach
DataBreaches.net · · International

AU: Sydney nurse accused of downloading patients’ data in alleged ‘breach of trust’

A registered nurse in northern Sydney has been charged after allegedly accessing and downloading patient records from NSW Health without authorisation. Police formed a dedicated strike force and conducted a home search following a report made in late July.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

#breach#enforcement#healthcare Read original →
Breach
DataBreaches.net · · International

No Need to Hack When It’s Leaking: Click to Pray edition

Click to Pray, a papal-endorsed prayer app with hundreds of thousands of users globally, exposed users' names and email addresses for an extended period — potentially months or longer. An ethical hacker discovered and reported the leak.

Who should care: Cybersecurity · Privacy officers · Administrators