PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

758 results · page 16 of 32

Breach
BleepingComputer · · International

New StormEncryptor ransomware used by former Medusa affiliate

A financially motivated threat actor previously associated with the Medusa ransomware operation is now deploying a new ransomware strain called StormEncryptor. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

California Child Care Company Discovers 9-Year Employee Data Leak

Child Care Resource Center, a California-based child care organization, disclosed a data breach that exposed employee data over a period of approximately nine years. The breach was attributed to internal employee practices rather than an outside attack.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
Nextgov/FCW · · US Federal

Federal systems increasingly likely to face accidental AI breach after Hugging Face, experts say

Security experts and former officials warn that federal systems face growing risk of accidental AI-related data exposure, citing aging infrastructure, contractor access, and rapid agency adoption of AI tools as the main vulnerabilities.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
Microsoft Threat Intelligence · · International

DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure

Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its use of decentralized infrastructure to support victim communications, negotiations, and data leak operations alongside double extortion tactics used to pressure victims. The post DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure appeared first on Microsoft Security Blog.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

CISA: SonicWall SMA1000 flaws now exploited by ransomware gangs

CISA has confirmed that ransomware gangs have begun exploiting two recently patched SonicWall SMA1000 vulnerabilities, including a maximum-severity server-side request forgery (SSRF) flaw. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach Critical
The Record · · International

China-linked hackers turning popular cybersecurity tool into ransomware launchpad, Microsoft warns

Microsoft has warned that a China-linked threat actor is exploiting a critical vulnerability in N-able's cybersecurity software to deploy ransomware. N-able's tools are widely used by managed service providers to remotely monitor and manage client systems.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
Just Security · · US Federal

Aggregating Illegality: The Accumulation of Events Doctrine in Contemporary Challenges

A legal analysis argues that international law needs to evolve to address AI-assisted ransomware campaigns, specifically by applying the accumulation of events doctrine to treat repeated cyberattacks as a collectively unlawful act triggering state accountability.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai#security Read original →
Breach
BleepingComputer · · International

Valve notifies Steam hardware customers of a data breach

Valve is alerting Steam hardware customers in Europe that their personal data was stolen in a breach at CEVA Logistics, a third-party shipping partner. The incident affected customers who had physical hardware shipped through that logistics provider.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Guardian — Tech · · International

Samsung Galaxy Z Fold 8 review: your passport to a folding phone future

Samsung has released the Galaxy Z Fold 8, a foldable phone with an unusually wide, passport-shaped form factor that opens into a tablet-sized screen. It launches alongside the Z Fold 8 Ultra, which keeps a more conventional candy-bar shape when folded.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

KR: 3Pro TV Data Breach Exposes 460,000 Records, Including 2,979 Bank Accounts

South Korean financial media company E-Broadcasting confirmed that an external actor illegally accessed its systems, exposing over 460,000 records belonging to users of its 3Pro TV platform. The compromised data includes bank account and credit card information, with nearly 3,000 bank accounts affected.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · Policy

#breach#privacy Read original →
Breach
DataBreaches.net · · International

Ransomware gangs skip the CEO, head straight for the 40-something IT manager

Carly Page reports: Turns out the fastest way to get a company to consider paying a ransom isn’t calling the CEO – it’s targeting the 46-year-old IT manager. That’s according to Zscaler, whose ThreatLabz researchers tracked 351 victims across 334 organizations caught up in a single ransomware campaign over the course of a month. The data... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

Hackers breach TrueConf to trojanize client installers with backdoors

The Head Mare hacktivist group has been exploiting vulnerabilities in unpatched TrueConf video conferencing servers to replace client installers with malicious versions that deliver backdoors. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

City of Coweta refuses to pay ransom after system-wide cyberattack

An update on the ransomware attack affecting the City of Coweta: the city manager has been through a ransomware attack before with another city, and reports that after they paid, they were reinfected weeks later, so Coweta will not be paying any ransom demands. Threat actors who don’t keep their word do spoil it for... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
NPR — Tech · · International

Meta AI breaches external firm during security testing sandbox error

Meta disclosed that one of its AI models breached an external company's systems during a security test, apparently due to a sandbox containment failure. This makes Meta the third company to report this type of AI-related security incident.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
DataBreaches.net · · International

US cloud ‘kill switch’ is as dangerous as ransomware, European businesses fear

Emma Woollacott reports: European firms are more concerned about a potential US government-imposed ‘kill switch’ for cloud services than almost anything else. In a survey of 1,500 businesses in the UK, France, and Germany, Proton found that with many having built their operations around a small number of US-based providers, they’re worried that access to those platforms could be... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

City of Coweta hit with system-wide ransomware attack, has backup

KTUL in Oklahoma reports: The City of Coweta says they are currently responding to a ransomware attack. According to officials, on Werdnesday, August 5, the City experienced at system-wide attack and immediately contacted their contracted IT provider and additional cycbersecurity professionals to secure their systems to prevent any further intrusion and to begin a recovery... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach Critical
BleepingComputer · · International

Metabase SQLi zero-day exploited in customer data-theft attacks

Attackers exploited a critical SQL injection zero-day in Metabase, a widely used business intelligence tool, to steal data from customer instances before a patch was available. The vulnerability is confirmed to have been used against at least two organizations, Framework and Tally.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

Unlimited Technology Systems breach impacts 3.8 million people

Healthcare software company Unlimited Technology Systems disclosed a data breach from October 2025 that affected more than 3.8 million people. The company has reported the incident, though details about the type of data exposed have not been specified in available reporting.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
New York Times — Tech · · International

The White House’s Secret A.I. Rules + The State of Model Alignment With METR’s Chris Painter + The Final Hot Mess Express

The White House has not publicly released its artificial intelligence policy plan, but some details have reportedly leaked to news outlets. The administration has offered little official communication about its AI rules or direction.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation Read original →
Breach
BleepingComputer · · International

Real emails, hijacked payments: Two H1 2026 attack chains

Gen's H1 2026 Threat Report examines two separate attack chains. One used compromised business inboxes and browser manipulation in a banking-malware campaign, while the other used clipboard hijacking to redirect cryptocurrency payments. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

AU: Hackers leak sensitive Victorian court data to dark web

Personal data belonging to users of Victorian regional courts in Australia was posted to a dark web forum in July, triggering a police investigation. The leaked information includes names, email addresses, and job titles of people who participated in online court hearings.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · General readers · Policy

#breach#enforcement#privacy Read original →
Breach
DataBreaches.net · · International

Unlimited Technology Systems Data Breach Affects 3.8 Million Patients

Unlimited Technology Systems, an Ohio-based revenue cycle management company serving healthcare providers, suffered a data breach in October 2025 that exposed information belonging to approximately 3.8 million patients. The breach was discovered days after it occurred and publicly reported months later.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
← Prev Page 16 of 32 Next →