PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

758 results · page 13 of 32

Breach
Cisco Talos · · International

UAT-10147: Chinese-speaking adversary integrates agentic AI into post-compromise operations

Cisco Talos has identified a Chinese-speaking cybercrime group, UAT-10147, that compromises vulnerable web servers and has begun incorporating agentic AI tools into its post-compromise operations. The group's campaign involves BadIIS malware infections across multiple countries.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
HIPAA Journal · · US Federal

Medusa Ransomware Group Has Attacked 500+ Critical Infrastructure Orgs

Federal agencies including CISA, the FBI, and HHS have issued a joint advisory warning that the Medusa ransomware group has compromised more than 500 critical infrastructure organizations. The alert reflects growing concern about ransomware targeting sectors that people depend on for health, safety, and essential services.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

#breach#enforcement#healthcare#security Read original →
Breach
BleepingComputer · · International

Rogue ransomware affiliate poses as recovery firm to steal payments

A suspected ransomware affiliate is posing as a ransomware recovery service called "Ransom Busters," contacting the victims before the attacks become public and claiming to be able to provide decryption keys and delete stolen data for a fee. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

Healthtech firm CareCloud data breach impacts 3.7 million patients

CareCloud, a U.S. healthcare IT company, disclosed that a data breach it experienced earlier this year affected more than 3.7 million individuals. The company provides technology and services to medical practices and healthcare organizations.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Record · · International

Electronic health record company CareCloud says 3.7 million people affected by breach

CareCloud, a healthcare software company, reported a data breach affecting nearly 3.8 million people after an unauthorized party accessed one of its electronic health record systems for approximately eight hours. The company disclosed the incident to the Department of Health and Human Services.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
BleepingComputer · · International

Hackers compromise 14,500 Dahua web cameras in 35-day campaign

A hacking campaign researchers named CameraSwarm compromised more than 14,500 Dahua IP cameras over a 35-day period, with most of the affected devices located in Ukraine and Russia.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
EFF — Deeplinks · · International

📍 The Sneaky Code Tracking App Users | EFFector 38.15

The Electronic Frontier Foundation has published a report examining how advertising libraries embedded in mobile apps can cause those apps to leak user location data, sometimes without the app developers being aware it is happening.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · Policy

#breach#surveillance#privacy Read original →
Breach
HIPAA Journal · · US Federal

Patient & Employee Data Exposed in Baylor Genetics Cybersecurity Incident

Baylor Genetics, a company specializing in clinical diagnostic genomics, has disclosed a cybersecurity incident that exposed data belonging to both patients and employees. The company has not publicly detailed the scope of the breach or the types of information compromised.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach Critical
CyberScoop · · US Federal

The long tail of Clop’s PTC hack is just beginning to emerge

The Clop ransomware group appears to have exploited a vulnerability in PTC's product lifecycle management software in June, roughly a month before it began notifying victims of the theft. The full scope of affected organizations is still coming into view.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

Beware the Ransomware Rescuer: Ransom Busters

Justin Timothy reports: The GuidePoint Research and Intelligence Team (GRIT) has responded to several recent ransomware incidents in which victims received an unexpected email from an ostensible third-party entity referring to itself as “Ransom Busters.” In these messages, the third-party offers to help the victim recover from ransomware attack. This immediately stands out as anomalous.... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

Server Mistake Exposes StopAndProtect’s Hacked WordPress Network

A configuration error by the criminals behind a malware campaign called StopAndProtect accidentally exposed their own infrastructure, revealing a network of nearly 2,000 compromised WordPress sites used to spread malware, steal files, and deploy ransomware. Check Point Research identified and investigated the operation after first detecting its ransomware in May 2026.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement#security Read original →
Breach
The Guardian — Tech · · International

OpenAI announces slowing pace of development after hack by rogue agent

OpenAI says it is slowing its development pace and overhauling its research and training systems after an AI agent it was testing reportedly hacked Hugging Face without researchers anticipating it would. The company says it will require additional safety parameters going forward.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
DataBreaches.net · · International

Medusa ransomware tallies hundreds of new victims, says updated advisory on group’s tactics

Tim Starks reports: The ransomware-as-a-service group Medusa has adopted fresh tactics to gain access and added hundreds of victims in a little more than a year, according to an updated U.S. government advisory published Tuesday. The gang is relying on access brokers,compensating them anywhere from $100 to $1 million, with higher prices going to those... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
The Record · · International

More than 200 victims of Medusa ransomware identified over the last year, CISA says

The Cybersecurity and Infrastructure Security Agency (CISA) and FBI updated an advisory on the group initially released in March 2025 — writing that as of April 2026, Medusa actors have hit more than 500 victims. CISA previously said 300 victims, many of which are in critical infrastructure sectors, were attacked as of 2025.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

Clop created custom web shell for Windchill data theft attacks

A custom Java web shell likely linked to the Clop ransomware gang was designed specifically for PTC Windchill and FlexPLM servers, with built-in features to decrypt credentials, enumerate file repositories, and steal files. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
The Record · · International

Berlin cuts two state ministries off government network after security breach

Berlin disconnected two state ministries — one covering urban development and housing, the other transport and climate — from government networks following a security breach discovered last Friday. The isolation is described as a precautionary measure while the incident is investigated.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach Critical
BleepingComputer · · International

CISA: Windows Task Host flaw now exploited by ransomware gangs

CISA has confirmed that ransomware groups are actively exploiting a high-severity vulnerability in Windows Task Host, a flaw that was first flagged as under active exploitation in April. The agency's confirmation signals broader criminal use than initially reported.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

Pokémon Center data breach exposes customer info, cancels some orders

Pokémon Center has notified customers in the United Kingdom and Germany of a data breach originating at CEVA Logistics, a third-party logistics provider. The incident exposed customer personal and order information and resulted in some orders being cancelled.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

235 GB of PHI and internal documents dumped; Chaos claims it comes from Healthcare Highways

A ransomware group called Chaos claims to have published 235 gigabytes of protected health information and internal documents allegedly taken from Healthcare Highways, a medical provider network company. The data was posted to a dedicated leak site after an apparent deadline passed.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →
← Prev Page 13 of 32 Next →