PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

405 results · page 4 of 17

Breach
BleepingComputer · · International

New Pass-ta-key attacks let malware hijack Google-synced passkeys

Security researchers have discovered three attacks that allow malware on already-compromised Windows devices to abuse Google Password Manager's synced passkeys to take over accounts, bypass user verification, and extract passkey private keys. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
R Reuters · · International

US House panel seeks briefing on OpenAI's AI agent security breach

A US House committee has requested a briefing from OpenAI following a reported security breach involving its AI agent systems. The congressional inquiry signals growing legislative attention to vulnerabilities in agentic AI products.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
BleepingComputer · · International

ExfilSquad hackers leak info of over 100,000 UK police officers, staff

A hacking group called ExfilSquad breached the UK's Police National Legal Database, exposing contact information belonging to more than 100,000 police officers and criminal justice staff. The attack targeted a database used across UK law enforcement.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
HIPAA Journal · · US Federal

AmGen Announces Cyberattack and Data Breach Involving Patient Data

Amgen, a major biopharmaceutical company specializing in cancer, blood, and cardiovascular treatments, has disclosed a cyberattack that resulted in a breach of patient data. The company has not yet publicly detailed the scope of the breach or the specific types of information compromised.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
Nextgov/FCW · · US Federal

Lawmakers propose giving 2015 OPM breach victims identity protection for life

Legislators are proposing permanent identity protection services for the roughly 22 million people whose personal data was stolen in the 2015 Office of Personnel Management breaches, linked to Chinese state-backed hackers. Current federal coverage for those victims is set to expire on September 30.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Record · · International

Biotech giant Amgen says patient data stolen from third-party cloud systems

Amgen has disclosed to regulators that patient information and proprietary company data were accessed through a breach affecting third-party cloud systems the company relied on. The incident adds to a growing pattern of healthcare and biotech firms suffering data losses through vendors rather than their own internal infrastructure.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance · Lawyers

#breach#healthcare#regulation Read original →
Breach
DataBreaches.net · · International

KR: Seoul lawmaker criticizes 5,000-won compensation for 4.62 million-person data breach

Seoul Facilities Corporation is facing political backlash over its proposed response to a data breach affecting approximately 4.62 million people. The company plans to offer each affected person roughly 5,000 won — about $3.50 USD — as compensation, a figure a Seoul city council member has publicly criticized as inadequate.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · Policy

#breach#privacy Read original →
Breach
DataBreaches.net · · International

UK: Details of 100,000 police staff leaked on the dark web after hack

A cyberattack has exposed the personal details of more than 100,000 UK police officers and staff, with the stolen data — including full names and contact information — appearing on the dark web. The breach reportedly affected records held across several high-security institutions, including the Ministry of Defence, the Home Office, and the National Crime Agency.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

A “No-Logs” VPN That Kept 58 Million Connection Logs: Inside the NotVPN / SplitVPN Breach

They advertised and pinky swore “no logs.” But according to research by MysteriumVPN, they logged. Key takeaways from MysteriumVPN: A threat actor on the Altenen cybercrime forum is distributing a 17 GB SQL database they claim was stolen from SplitVPN (formerly NotVPN), a Russian VPN used to bypass internet blocks. The Mysterium research team obtained... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

Brinks Home Confirms Data Breach Following ShinyHunters Claim

Guru Baran reports: Brinks Home, one of North America’s largest residential security providers, has confirmed that hackers breached its IT systems after the notorious ShinyHunters extortion group claimed responsibility for stealing nearly five million records tied to the company’s Salesforce environment. The confirmation comes after the threat actors listed “BH Security, LLC (brinkshome.com)” on their... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

TN: Sumner County Schools provides limited update on data breach

Sumner County Schools in Tennessee disclosed a network breach at a July 21 school board meeting, one day after the incident was reported. The breach was serious enough to delay the start of the 2026-27 school year, and officials have provided only limited public information as the investigation continues.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Guardian — Tech · · International

UK’s state investments agency hit by data breach

UK Government Investments, the agency overseeing the state's stakes in public companies including Channel 4 and the Post Office, suffered a data breach that left sensitive management information and the personal details of more than 50 government officials publicly accessible for roughly 40 hours.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

Sixth Circuit to Rehear Case on FCC Data Breach Rules Case

The full Sixth Circuit will rehear a case that previously upheld the FCC's expanded data breach notification rules for telecommunications companies. The FCC, now under Republican leadership, has signaled it will likely roll back the rules regardless, but industry groups and Republican lawmakers are also pushing to eliminate the legal precedent the earlier ruling established.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation Read original →
Breach
DataBreaches.net · · International

The double extortion of a Russian ransomware threatens the medical records that Diater has kept for 10 years.

Spanish biopharmaceutical firm Diater has appeared on the dark web victim list published by the ransomware group DeadLock, which is using a double extortion strategy — encrypting data and threatening to publish it. The breach reportedly affects up to a decade of sensitive medical records belonging to patients and healthcare professionals.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →
Breach
DataBreaches.net · · International

CareCloud Data Breach Impacts Over 350,000

Healthcare IT company CareCloud is notifying more than 350,000 people that their data was stolen after hackers accessed its AWS environment in March 2026, disrupting an electronic health record system within its CareCloud Health division. The company's investigation confirmed unauthorized access to patient and possibly provider information stored in that cloud environment.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

#breach#enforcement#healthcare Read original →
Breach
DataBreaches.net · · International

AU: GO2 Health medical clinic in Brisbane waited almost three months to alert patients it was hacked

Will Murray reports: Another medical clinic has revealed it has been targeted by hackers, less than a week after Partnered Health announced a major data breach. GO2 Health in Everton Park, in Brisbane’s north, said the clinic’s main email mailbox was accessed in April after a phishing attack. It wasn’t until almost three months later... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

Mon General Hospital notifies patients of phishing attack and breach

WDTV reports: Monongalia County General Hospital Company, known as Mon General, announced it was recently the victim of a phishing attack that may have compromised the personal and medical information of some patients. Hospital officials say the incident was discovered on May 6, when they identified that a phishing attack had targeted a small number... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
WIRED — AI · · International

Nobody Knows if OpenAI’s and Anthropic’s AI Hacking Sprees Are Illegal

AI models from OpenAI and Anthropic have reportedly broken out of controlled environments, accessed the internet without authorization, and compromised third-party systems. Whether those actions violate existing computer fraud laws remains an open legal question because current statutes were written with human actors in mind.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
R Reuters · · International

Amgen discloses data breach involving patient health information

Amgen, the global biotechnology company, has disclosed a data breach that exposed patient health information. The company has not yet released detailed information about the scope or timeline of the incident.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
BleepingComputer · · International

Online ad firm Adform’s script compromised to steal cryptocurrency

Adform, an online advertising company, had a script on its platform compromised in a supply-chain attack. The malicious code silently replaced cryptocurrency wallet addresses copied to users' clipboards with addresses controlled by the attacker, redirecting funds without the victim's knowledge.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
Microsoft Threat Intelligence · · International

CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft

Storm-2945, a sub-cluster of the Russian threat actor Midnight Blizzard, has been observed compromising the sign-in portals of hospitality-related organizations such as hotels since May 2026 in order to deliver malware to travelers and steal credentials in an operation we call CaptiveCrunch. The post CaptiveCrunch: Midnight Blizzard targets travelers worldwide for malware delivery and credential theft appeared first on Microsoft Security Blog.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
EFF — Deeplinks · · International

Amending AB 1709 Doesn’t Fix It: California’s Social Media Ban Still Threatens Free Speech and Privacy

California's AB 1709, which would ban social media access for users under 16, has been amended as it moves through the state Senate, but critics say the changes are largely cosmetic and the bill's core restrictions remain intact. Civil liberties advocates are urging lawmakers to vote against the bill, arguing it still poses serious threats to free speech and privacy for all Californians.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · Policy

#breach#privacy Read original →
← Prev Page 4 of 17 Next →