PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

764 results · page 30 of 32

Breach
DataBreaches.net · · International

Kaspersky Lab experts have discovered a new attack vector and toolkit for compromising corporate Gmail accounts

Kaspersky Lab has identified a new toolkit used by the threat actor group ToddyCat that targets corporate Gmail accounts through API-based access, allowing attackers to read emails, extract calendar data, and move through connected Google services while staying hidden for long periods.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

Lessons from the Underground: How to Combat Business Email Compromise

Business Email Compromise attacks operate as structured criminal enterprises, combining account takeovers, financial reconnaissance, and organized cash-out infrastructure. Analysis of underground forums reveals how these operations are planned, coordinated, and carried out before a single deceptive email is ever sent.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

Insurance giant Aflac discloses data breach at Japan subsidiary

Aflac has disclosed a data breach affecting its Japan subsidiary, in which attackers accessed and stole personal information and bank account data. The incident involves one of the largest supplemental insurance providers in the United States, a Fortune 500 company serving millions of customers.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

Insurance giant Aflac discloses data breach after subsidiary hack

Aflac has disclosed a data breach stemming from an attack on its Japan-based subsidiary, in which personal information and bank account details were stolen from affected individuals. The company has not publicly confirmed the full scope of the breach.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

Blackfield ransomware asks Nidec Corporation for $2 million ransom

The Blackfield ransomware gang is asking for a $2 million ransom from Nidec Corporation, a large Japanese manufacturer of electronic components for automotive and computing applications. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
CyberScoop · · US Federal

How ransomware syndicates weaponize corporate-style organization

From outsourced labor to tiered pricing models, an inside look at how today's top ransomware threats operate less like rogue hackers and more like Fortune 500 companies. The post How ransomware syndicates weaponize corporate-style organization appeared first on CyberScoop.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach Critical
BleepingComputer · · International

CISA: Windows BlueHammer flaw now exploited by ransomware gangs

CISA confirmed on Monday that ransomware gangs are now exploiting a Microsoft Defender privilege escalation vulnerability, dubbed BlueHammer, that has previously been abused in zero-day attacks. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

Washington Dept. Health & Social Services Insider Breach Affects 8,600 Individuals

Washington State's Department of Social and Health Services disclosed that an employee improperly accessed protected records belonging to approximately 8,600 individuals, constituting an insider data breach of sensitive personal information held by a state agency.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
The Guardian — Privacy · · International

Ireland is big tech’s lapdog – and that compromises its EU presidency | Johnny Ryan

A commentary piece argues that Ireland's economic reliance on major US technology companies headquartered in Dublin creates a structural conflict of interest as Ireland assumes the EU Council presidency in July, during which key digital and AI regulations are set for renegotiation.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
DataBreaches.net · · International

EXCLUSIVE: Top-100 Law Firm Fox Rothschild Suffers Data Breach and Leak by Silent Ransom Group

Fox Rothschild, a top-100 U.S. law firm, has suffered a data breach carried out by Silent Ransom Group, a threat actor known to target law firms specifically. The breach resulted in a data leak, exposing the firm and potentially its clients to serious confidentiality risks.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach Critical
BleepingComputer · · International

Nissan discloses employee data breach linked to Oracle zero-day attacks

Nissan is warning that it suffered a data breach affecting current and former employees after threat actors exploited an Oracle PeopleSoft vulnerability in data theft attacks previously linked to the ShinyHunters extortion group. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach Critical
BleepingComputer · · International

NAIC says public data stolen in ShinyHunters' PeopleSoft breach

The National Association of Insurance Commissioners (NAIC) says the ShinyHunters extortion group stole only publicly available data, outdated logs, and configuration files after breaching its systems by exploiting a zero-day vulnerability in an Oracle PeopleSoft server. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

MOVEit Breach Defendants Lose 2nd Bid to Toss Negligence Claims

A federal court rejected a second attempt by Progress Software and co-defendants to dismiss negligence claims stemming from the large-scale MOVEit data breach, allowing lawsuits under the laws of California, Indiana, Michigan, and Ohio to move forward in multi-district litigation.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

UK businesses fear stigma of ransomware

Alex Scroxton reports: Fear of stigmatisation is likely leading businesses across the UK to drastically underreport data on ransomware attacks, especially when they have paid a ransom to a cyber criminal gang, as admission of such is often seen as supporting further criminal activity or defying compliance regulations. Data gleaned from the national Report Fraud service – which... Source

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation#security Read original →
Breach
DataBreaches.net · · International

Central Bank of Libya investigates alleged data leak after cyberattack

Libya's Central Bank has confirmed it is investigating data that appeared on the dark web following a cyberattack earlier this month. The bank says its technical teams, alongside international experts, are working to determine what the data contains and whether it is directly tied to the breach.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

ZA: Copying the wrong person on an email could be considered a data breach in South Africa

South Africa's data privacy law, POPIA, can require mandatory breach reporting even when personal information is exposed by something as routine as a misdirected email, according to attorneys citing an enforcement notice against a Johannesburg college. The case confirms that accidental internal disclosures are not exempt from the law's reporting obligations.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · General readers · Policy

#breach#enforcement#regulation#privacy Read original →
Breach
War on the Rocks · · International

The Art of Statecraft in an Age of Strategic Failure

A forthcoming book by analyst Jack Watling examines how the U.S. conflict with Iran exposed persistent failures in American statecraft, arguing that Washington has struggled to coordinate its instruments of power toward coherent foreign policy goals. The excerpt suggests the current administration is unlikely to undertake an honest internal review of those shortcomings.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation Read original →
Breach
DataBreaches.net · · International

A KDDI data breach has put up to 14.2 million ISP email logins at risk across Japan

Japanese telecommunications company KDDI confirmed a data breach on June 17, 2026, in which attackers gained unauthorized access to a system shared by six ISP mail services. Up to 14.22 million email addresses and associated passwords may have been exposed as a result.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

Data breach exposes up to 14.2 million email logins at six ISPs

Japanese telecommunications operator KDDI Corporation disclosed a data breach where threat actors gained access to one of its email systems used by five other internet service providers (ISPs) in the country. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

AssuranceAmerica breach may have affected more than 1.1 million people in seven states

AssuranceAmerica Managing General Agency has notified at least 1.1 million people across seven states after detecting suspicious activity on its systems. Breach notices have been sent to residents in California, Massachusetts, Nebraska, South Carolina, Texas, Vermont, and Washington.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

NZ pharmacy scrambles to scrub internet of patients’ private messages

A Wellington pharmacy, Unichem Petone, inadvertently exposed private messages sent by 29 patients through its website's contact form, triggering an effort to remove the leaked data from the internet and directly notify those affected.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
DataBreaches.net · · International

Russian Hackers Behind the $2.5 Billion Jaguar Land Rover Cyberattack, Investigators Say

Rex Edison reports A single cyberattack dented an entire country’s GDP. The Cyber Monitoring Centre estimates that the ransomware assault on Jaguar Land Rover cost the UK economy £1.9 billion — roughly $2.5 billion — rippling through more than 5,000 businesses and dragging car production to levels not seen since 1952. The Bank of England flagged the damage in its economic outlook. Now, after months... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

First Circuit Affirms Dismissal of Data Breach Class Action for Lack of Traceable Injury

Melanie Conroy of Pierce Atwood LLP writes: The First Circuit recently affirmed dismissal of a putative data breach class action against Bayamón Medical Center (BMC), holding that the plaintiff failed to plausibly allege that her injuries were traceable to the healthcare provider’s 2019 ransomware attack. In Santos-Pagán v. Bayamón Medical Center, the court concluded that allegations... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
← Prev Page 30 of 32 Next →