PrivacySignal
Breach

Lawmakers propose giving 2015 OPM breach victims identity protection for life

Nextgov/FCW · · US Federal · Data Breaches

Legislators are proposing permanent identity protection services for the roughly 22 million people whose personal data was stolen in the 2015 Office of Personnel Management breaches, linked to Chinese state-backed hackers. Current federal coverage for those victims is set to expire on September 30.

Why this matters: The OPM breach was not a typical hack. The stolen records included security clearance applications, fingerprints, mental health history, financial data, and personal information on family members and references. That kind of data does not expire. Someone holding it can cause harm years or decades later. Cutting off protection on an arbitrary deadline treats a permanent exposure like a temporary inconvenience. These were federal employees and contractors who handed over sensitive details because the government required it. Covering them for life is the least it can do.

Who should care: Cybersecurity · Privacy officers · Administrators

This summary is AI-assisted and may contain errors. It is an original briefing to help you gauge significance quickly — not a reproduction of the source. Always read the linked original before relying on it. See our methodology.

Analysis

All analysis →

Weekly Editorial Analysis from Experts and Editors

Related stories

Breach
CyberScoop · · US Federal

Coast Guard, FBI board US-bound foreign ships in order to probe for cyberattacks

The agencies issued a joint statement saying the “joint security boardings” came in response to “indications that the networks of both vessels were compromised.” The post Coast Guard, FBI board US-bound foreign ships in order to probe for cyberattacks appeared first on CyberScoop.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

The true cost of a ransomware attack, with and without BCDR

The ransom itself can be only a fraction of the total cost of a ransomware attack, with downtime, recovery, remediation, and legal obligations adding millions to the bill. Datto explains how a mature BCDR strategy can reduce downtime and provide a faster, more predictable path to recovery. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

xHealth Data Breach Affects 118,000 Individuals

zHealth, a software company that provides practice management and electronic health records tools to medical practices, has disclosed a data breach affecting approximately 118,000 people.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
DataBreaches.net · · International

Payroll system of mosques, madrasahs hit by ransomware; staff details potentially compromised

David Sun reports: The payroll system of mosques and madrasahs overseen by the Islamic Religious Council of Singapore (MUIS) has been hacked and held for ransom, The Straits Times has learnt. The SmartHRMS human resources (HR) system is supplied by Singapore-based software vendor Avelogic. The latest cybersecurity incident notice on Avelogic’s website, which was last... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →