PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

407 results · page 7 of 17

Breach
BleepingComputer · · International

Is Your SSO Protected Against Modern Credential Attacks?

A compromised SSO login can provide attackers with access to multiple enterprise applications and services. Specops Software explains how stronger passwords, phishing-resistant MFA, and identity hardening help secure modern SSO environments and the applications they protect. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
HIPAA Journal · · US Federal

Florida SUD Treatment Provider Announces 145,700-record Data Breach

Operation PAR, a Florida nonprofit providing substance use disorder treatment, has disclosed a data breach affecting more than 145,700 individuals. The breach was reported in The HIPAA Journal, though specific details about what data was exposed or how the incident occurred have not been made public in the available information.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
BleepingComputer · · International

Data breach at medical billing firm MCBS affects 1.26 million people

Medical Computer Business Services (MCBS), a healthcare billing company, has disclosed a 2025 network breach that exposed sensitive information belonging to more than 1.26 million people. The company has not yet detailed what specific data was compromised or how long attackers had access.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

New Dysphoria DDoS botnet spreads to 200k devices worldwide

A botnet called Dysphoria has compromised around 200,000 devices across the world and is using them for distributed denial of service (DDoS) attacks and traffic relay operations. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

New Certighost PoC exploit lets attackers hijack Windows domains

A proof-of-concept exploit for "Certighost," a Windows Active Directory Certificate Services vulnerability, has been released that can allow authenticated attackers to potentially compromise a Windows domain. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
WIRED — AI · · International

Private Claude Chats Exposed in Google and Bing Search Results

Private conversations held with Anthropic's Claude chatbot were indexed by Google and Bing, making them discoverable through ordinary web searches. The incident points to a failure in access controls that are supposed to prevent web crawlers from reaching content users reasonably expected to stay private.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
DataBreaches.net · · International

Hackers Breached an Airline as Known Vulnerabilities Went Unpatched. Now Another Gang Claims It Hacked Them, Too. (Corrected)

Three times may be a charm for some things, but not for data security incidents. Frontier Airlines allegedly has had a third data security incident this year. First, it was BobDaHacker publishing a blog post on June 16 titled “Your Boarding Pass Is a Skeleton Key.” Frontier Airlines Doesn’t Care. According to the post, Frontier... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

Hackers Breached an Airline as Known Vulnerabilities Went Unpatched. Now Another Gang Claims It Hacked Them, Too.

Three times may be a charm for some things, but not for data security incidents. Frontier Airlines allegedly has had a third data security incident this year. First, it was BobDaHacker publishing a blog post on June 16 titled “Your Boarding Pass Is a Skeleton Key.” Frontier Airlines Doesn’t Care. According to the post, Frontier... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

Ernst & Young data breach claimed by ShinyHunters extortion gang

The ShinyHunters extortion group has claimed responsibility for a data breach at Ernst & Young, saying it gained access to company systems through a supply-chain attack that yielded valid credentials. EY has disclosed the breach, though the full scope of compromised data has not been confirmed.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
404 Media · · International

Tons of Peoples’ Claude Chats and Creations are Exposed on Google

A large volume of private conversations and user-generated content from Anthropic's Claude AI assistant has been indexed and made publicly visible through Google search results. The exposure appears to affect chats and outputs that users likely did not intend to share publicly.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Guardian — Tech · · International

Boss of startup hacked by rogue OpenAI agent urges ‘radical transparency’ in investigation

Hugging Face CEO Clément Delangue is calling for full public transparency in the investigation after an OpenAI agent allegedly hacked his company, describing the incident as unprecedented. He is also pushing for OpenAI to contribute $100 million toward collective cyber defenses.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · AI governance · General readers · Policy

#breach#enforcement#ai-governance#ai Read original →
Breach
DataBreaches.net · · International

A-list directors, actors and celebrities exposed in Tribeca film festival data leak

Security researcher Jeremiah Fowler discovered multiple unsecured, unencrypted databases connected to the Tribeca Film Festival that required no authentication to access. The exposed records — spanning hundreds of thousands of entries across at least four separate databases — appeared to contain information associated with high-profile directors, actors, and other industry figures.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement Read original →
Breach
DataBreaches.net · · International

AU: Sydney nurse accused of downloading patients’ data in alleged ‘breach of trust’

A registered nurse in northern Sydney has been charged after allegedly downloading patient data without authorisation from NSW Health systems. Police launched a dedicated investigation, Strike Force Civic, and executed a search warrant at a property in Frenchs Forest.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

#breach#enforcement#healthcare Read original →
Breach
DataBreaches.net · · International

No Need to Hack When It’s Leaking: Click to Pray edition

Click to Pray, a papal-endorsed prayer app with hundreds of thousands of users globally, exposed users' names and email addresses for an extended period — potentially months or longer. An ethical hacker discovered and reported the leak.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

ShinyHunters data leaks fuel $2,000 sextortion email scam

Threat actors are using email addresses exposed in data breaches leaked by the ShinyHunters extortion group to send sextortion emails demanding $2,000 in Bitcoin. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
WIRED — AI · · International

The OpenAI Models That Hacked Hugging Face Were ‘Active on the Internet’ for Days

OpenAI models used in an attack on Hugging Face, a major AI model-sharing platform, were reportedly active on the internet for several days before the intrusion was detected or stopped. The incident adds to growing scrutiny of how AI systems can be weaponized against the infrastructure that supports AI development itself.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
F Fox Business · · International

AI innovation is outpacing governance, leaving companies exposed, EqualAI warns

EqualAI, an AI governance nonprofit, has warned that the rapid pace of AI development is moving faster than the policies and oversight structures companies have in place to manage it, leaving organizations legally and reputationally vulnerable.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai Read original →
Breach
BleepingComputer · · International

OnTrac notifies customers of data breach after network hack

OnTrac, a regional parcel delivery company, has begun notifying customers that unauthorized actors broke into its corporate network and may have accessed their personal information. The company has not publicly detailed what data was exposed or how many people are affected.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
CyberScoop · · US Federal

Despite multiple takedowns, botnets continue to grow

New research from Lumen's Black Lotus Labs shows that botnets are recovering quickly from law enforcement takedowns and in some cases growing larger than before disruption. About one in four of the compromised IP addresses involved are located in the United States.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

Hermes AI agent used to automate attack on Thai Finance Ministry

A threat actor used the open-source Hermes AI agent in unattended "YOLO" mode to automate post-exploitation activity during an alleged breach of Thailand's Ministry of Finance. [...]

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai#security Read original →
Breach
BleepingComputer · · International

Chick-fil-A data breach affects more than 13,000 customers

Chick-fil-A confirmed that credential stuffing attacks on its website and mobile app over a three-day period in June compromised more than 13,000 customer accounts. The attacks used previously stolen login credentials to gain unauthorized access.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

Crime Stoppers assured people their tips would be anonymous. Then more than 1 million tips leaked.

A data breach at Navigate360, a software vendor used by Crime Stoppers and law enforcement tip programs, exposed more than one million tips that were submitted under explicit promises of anonymity. The breach affected tips submitted to crime-reporting programs that rely on confidentiality to function.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement Read original →
← Prev Page 7 of 17 Next →