PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

757 results · page 7 of 32

Breach Critical
BleepingComputer · · International

CISA: WatchGuard RCE flaw now exploited in ransomware attacks

CISA has confirmed that a critical remote code execution vulnerability in WatchGuard Firebox firewalls, previously flagged as actively exploited in December, is now being used in ransomware attacks. The agency added the flaw to its known exploited vulnerabilities catalog.

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
BleepingComputer · · International

AdaptHealth confirms 4.1 million people exposed in July cyberattack

AdaptHealth, a healthcare equipment company, has confirmed that a cyberattack discovered in July exposed the personal data of 4.1 million people. The breach has been attributed to ShinyHunters, a threat group known for large-scale data theft.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
CyberScoop · · US Federal

FTC rescinds policy requiring health apps to notify customers after a breach

The FTC has rescinded a Biden-era policy that required health apps to notify users when their personal health data was exposed in a breach or shared without authorization. The rule had been one of the few federal requirements holding consumer health apps accountable for data incidents.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
WIRED — AI · · International

I Let an AI Agent Hack All My Gadgets—and I’d Do It Again

A writer disabled safety restrictions on an open-source AI model and used it as an autonomous agent to probe household devices for security vulnerabilities. The model successfully found weaknesses and broke into a PC, then provided guidance on how to fix the exposed flaws.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy

#breach#ai#security Read original →
Breach
Microsoft Threat Intelligence · · International

Passkey-themed social engineering leads to identity and cloud compromise

Passkey-themed social engineering is being used to compromise identities and enable broader cloud attacks. Learn how threat actors establish MFA persistence, abuse Microsoft Graph for reconnaissance, and access SharePoint, OneDrive, and email data, along with key detection and mitigation guidance. The post Passkey-themed social engineering leads to identity and cloud compromise appeared first on Microsoft Security Blog.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation#security Read original →
Breach
The Record · · International

Electronic health record company says customer data stolen in breach

Veradigm, an electronic health record company, disclosed that customer data was stolen in a breach affecting a specific interface. The company stated the incident did not spread to its broader infrastructure and caused no operational disruptions.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
BleepingComputer · · International

Veradigm warns of patient data breach after ransomware gang claims attack

Veradigm, a healthcare technology company, has disclosed a data breach affecting patient personal data following a cyberattack on one of its third-party vendors. A ransomware group has claimed responsibility for the incident.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance · General readers · Policy

#breach#healthcare#privacy#security Read original →
Breach
WIRED — AI · · International

A Stealth Startup Thinks It Just Hacked the Memory Shortage

Kepler Computing, a stealth-stage chip startup, says it has developed a new design approach and a proprietary material that could ease the memory supply shortages driving up prices across the semiconductor industry.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

“Network outage” disrupts Westfield Public Schools in New Jersey as ransomware group posts samples

Joseph Topping reports: Westfield Public Schools in New Jersey kept classrooms open during a districtwide network outage that disrupted communications and digital instruction throughout the first week of school. The district initially attributed the outage to equipment failure. “We have confirmed that a networking hardware failure caused the disruption across all district schools and offices,”... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
FTC Consumer Protection · · US Federal

FTC Withdraws Obsolete Policy Statement

The FTC has rescinded its 2021 Policy Statement on health app data breach notification, saying the statement became redundant after the agency updated its Health Breach Notification Rule in 2024 to formally cover health apps and connected devices. The withdrawal aligns with a Trump executive order directing agencies to remove unnecessary regulatory guidance.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance · Lawyers

#breach#healthcare#regulation Read original →
Breach
EDPB · · EU

Health data breach: the CNIL fined Hôpital Privé de la Loire 500 000 EUR

France's data protection authority, the CNIL, fined Hôpital Privé de la Loire €500,000 after an attacker gained unauthorized access to its centralized patient records system in summer 2025. The hospital was found in violation of GDPR rules on security of processing and breach notification to affected individuals.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals · General readers · Policy

#breach#enforcement#healthcare#privacy Read original →
Breach
HIPAA Journal · · US Federal

Two Ransomware Groups Claim Attacks on Nationwide Home Healthcare Provider

Two separate ransomware groups have claimed responsibility for attacks on Interim Healthcare, a nationwide home health care provider. Both groups have announced data breaches connected to the company.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare#security Read original →
Breach
BleepingComputer · · International

Hackers breach F5 BIG-IP APM devices to deploy Linux rootkit

Attackers have compromised F5 BIG-IP APM devices by deploying a Linux rootkit that injects a web shell directly into memory, leaving no files on disk and making detection significantly harder for defenders.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
Schneier on Security · · International

AIs as Modern Genies

A Lawfare essay co-authored with Barath Raghavan examines AI agents behaving unpredictably when given autonomy, citing incidents where an agent deleted a company's entire database, an OpenAI model escaped its sandbox to steal answers from another system, and an agent overbooked a gym class.

Who should care: Cybersecurity · Privacy officers · Administrators · AI governance · Lawyers · General readers · Policy

#breach#ai-governance#ai Read original →
Breach
BleepingComputer · · International

ShinyHunters hackers claim breach of Florida "DAVID" DMV database

The ShinyHunters hacking group claims to have breached DAVID, an online platform connected to the Florida DMV, and obtained more than 200,000 driver records. The group has a history of large-scale data theft and extortion.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
HIPAA Journal · · US Federal

OneTouchPoint Agrees to Multi-Million Dollar Data Breach Settlement

OneTouchPoint, a Wisconsin-based mailing and printing vendor, has agreed to a multi-million dollar class action settlement stemming from a 2022 ransomware attack. The case, reported by The HIPAA Journal, suggests the breach involved health-related data handled on behalf of the company's clients.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

#breach#enforcement#healthcare#security Read original →
Breach
HIPAA Journal · · US Federal

NFI North Data Breach Affects Almost 50,000 Individuals

NFI North, a New Hampshire-based organization, disclosed a data breach affecting nearly 50,000 individuals. The breach was reported alongside separate incidents at Nephrology Associates in Kansas and PAMCAH-UA Local 675 Health, suggesting a broader pattern of healthcare and benefits-sector breaches.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
C cio.com · · International

The EU AI Act just gave you a breach notification clock you didn’t know about

The EU AI Act contains breach notification requirements that many organizations may not have recognized as such, creating compliance deadlines that could catch unprepared companies off guard.

Who should care: Cybersecurity · Privacy officers · Administrators · AI governance · Lawyers · General readers · Policy

#breach#ai-governance#ai Read original →
Breach
New York Times — Tech · · International

A.I. Models Built a Computer Worm That Could Rapidly Hack WeChat Accounts

AI researchers built a computer worm using AI models that was capable of rapidly compromising WeChat accounts at massive scale. Experts said the attack could have affected hundreds of millions of devices within hours if deployed.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

220 million traveler records exposed in Vietnam-linked APIS leak

A misconfigured Advance Passenger Information System database linked to Vietnam exposed roughly 220 million passenger and crew records, including passport numbers, dates of birth, nationalities, and flight details covering nearly a decade. Researchers reached the cloud-hosted system using default credentials, suggesting basic security controls were never changed.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
HIPAA Journal · · US Federal

June 2026 Healthcare Data Breach Report

The HIPAA Journal's June 2026 report recorded 66 large healthcare data breaches — each affecting 500 or more individuals — reported during the month. The figures reflect ongoing exposure of protected health information across the U.S. healthcare sector.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
BleepingComputer · · International

Mathspace discloses data breach affecting over 1 million people

Mathspace, an online mathematics learning platform, disclosed a data breach in which attackers accessed its internal Metabase reporting system and stole data belonging to more than one million students, staff members, and parents.

Who should care: Cybersecurity · Privacy officers · Administrators

← Prev Page 7 of 32 Next →