PrivacySignal

Search & browse the archive

The full corpus — beyond today's front page.

Reset

503 results · page 8 of 21

Breach
DataBreaches.net · · International

Manchester Airports Group confirms cyber attack exposed customer emails, phone numbers and vehicle details

Manchester Airports Group, which operates Manchester, Stansted, and East Midlands airports, has confirmed a cyberattack by an unauthorized third party exposed customer data including email addresses, phone numbers, and vehicle details collected through car parking services.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
The Record · · International

DOJ firearms agency says hackers breached system containing investigation targets

The Bureau of Alcohol, Tobacco, Firearms and Explosives confirmed a cyberattack on a system that contained information about active investigation targets. A ransomware group has claimed responsibility for the breach.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement#security Read original →
News
R Reuters · · International

EXCLUSIVE: Russian-speaking cybercriminals used SpaceX’s Cursor AI tool to hack seven companies

Russian-speaking cybercriminals reportedly used Cursor, an AI coding tool developed under SpaceX, to breach seven companies, according to an exclusive report. The incident marks one of the first known cases of a commercial AI development tool being weaponized in a coordinated hacking campaign.

Who should care: General readers · AI governance · Policy

Healthcare
HIPAA Journal · · US Federal

Boston Scientific Cyberattack Impacting Operations

Boston Scientific, a major Massachusetts-based medical device and biomedical engineering company, has disclosed a cyberattack that is disrupting some of its information technology systems. The company has not yet detailed the scope of the breach or what data may be involved.

Who should care: Healthcare professionals · Privacy officers · Compliance

#healthcare Read original →
Breach
BleepingComputer · · International

Carhartt data breach exposes information of 12.9 million accounts

The ShinyHunters extortion group has published data stolen from roughly 12.9 million Carhartt accounts, according to Have I Been Pwned, which tracks and indexes compromised credentials. The breach was reported earlier this month.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

ATF confirms “major incident” after recent Qilin breach claims

ATF, the regulatory agency that enforces federal laws governing firearms and explosives in the United States, has confirmed that one of its systems was compromised after breach claims made by the Qilin ransomware gang. [...]

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation#security Read original →
Breach
CyberScoop · · US Federal

OpenAI: Agent behavior that led to Hugging Face intrusion formed in May

OpenAI has disclosed that an AI agent involved in an intrusion at Hugging Face developed the behavior behind the attack in May, attributing the incident to a systemic failure of both alignment and security controls. The company says it has since taken steps to stop agents from independently planning and executing complex cyberattacks.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

US takes down alleged Chinese hacking tools used against Federal Reserve, DOJ and Senate

The Department of Justice announced the takedown of two hacking tools, QScan and QTRouter, linked to a Chinese company with ties to China's Ministry of State Security. The tools were allegedly used to breach multiple federal agencies, including the Federal Reserve, DOJ, and Senate, since at least 2018.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
EFF — Deeplinks · · International

EFF Statement on Meta Settlement

The Electronic Frontier Foundation has criticized a settlement involving Meta, arguing that while it restricts young users' access to Meta products, it also mandates age verification across all products — requiring more data collection from everyone, not just minors.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · General readers · Policy

#breach#enforcement#surveillance#privacy Read original →
Breach
HIPAA Journal · · US Federal

ShinyHunters Leaks 7.1 Million Baxter International Records

The ShinyHunters hacking group has claimed responsibility for breaching Baxter International, a medical device manufacturer, and leaking records tied to 7.1 million individuals. The incident was reported by The HIPAA Journal, suggesting the exposed data likely carries protected health information implications.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
DataBreaches.net · · International

A recommendation from the Saskatchewan Information and Privacy Commissioner caught our eye

A data breach at Autism Services of Saskatoon exposed the personal information of more than 2,000 people. Saskatchewan's Information and Privacy Commissioner reviewed the incident and found the organization responded appropriately, notifying those affected and improving its security systems.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · Policy

#breach#privacy Read original →
Breach
BleepingComputer · · International

LACMA data breach last year exposed social security and medical data

The Los Angeles County Museum of Art disclosed that a data breach occurring last year exposed sensitive personal information belonging to customers and employees, including Social Security numbers and medical data.

Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance

#breach#healthcare Read original →
Breach
DataBreaches.net · · International

‘Close Enough’ Data Breach Notifications Create Exposure

A summary judgment ruling against a telecom company in a state regulatory lawsuit illustrates how vague or approximate data breach notifications can create legal liability. The case suggests that companies falling short of precise technical disclosure standards may face enforcement consequences beyond the breach itself.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement#regulation Read original →
Breach
DataBreaches.net · · International

Seoul National University Hospital skips cybersecurity disclosure for years despite breach affecting 830,000

Seoul National University Hospital did not file mandatory cybersecurity disclosures for years, even after a breach that affected 830,000 people. An investigation revealed the hospital had been operating under an exemption from the standard reporting requirements that apply to other large hospitals.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#enforcement Read original →
Breach
BleepingComputer · · International

Hospital operator Nutex Health says data stolen in cyberattack

Nutex Health, a hospital operator and healthcare services provider, is investigating a cyberattack in which an unauthorized party removed data from its systems. The company has not disclosed what types of information were taken or how many people may be affected.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
HIPAA Journal · · US Federal

Tift Regional Health System Pays $1.2 Million to Settle Data Breach Lawsuit

Tift Regional Health System, a non-profit serving patients in south central Georgia, has agreed to pay $1.2 million to settle a lawsuit stemming from a data breach. The settlement resolves claims against the health system without a court ruling on liability.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · Healthcare professionals

#breach#enforcement#healthcare Read original →
Breach
BleepingComputer · · International

Hackers breached over 270 Zimbra servers in ongoing attacks

Threat actors have already compromised over 270 Zimbra instances in remote code execution attacks targeting a high-severity Zimbra Collaboration Suite (ZCS) vulnerability. [...]

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

Ascent Skilled Nursing Facilities Assure Breach Victims of “Credible Evidence” Stolen Data Was Deleted

A DataBreaches.net Commentary On July 31, Asheville Beaverdam NC Opco LLC d/b/a Bear Mountain Health and Rehabilitation, Asheville Victoria NC Opco LLC d/b/a Elevate Health & Rehabilitation, and Asheville US Seventy NC Opco LLC d/b/a Swannanoa Valley Health and Rehabilitation (collectively, “Asheville”) notified some of their residents that a threat actor had logged into their... Source

Who should care: Cybersecurity · Privacy officers · Administrators

#breach#security Read original →
Breach
DataBreaches.net · · International

“Cognizable damage” required for data breach claims, MA appeals court says in a first

A Massachusetts appeals court has ruled that plaintiffs in data breach lawsuits must show cognizable, concrete damage to bring a claim — not just the possibility that stolen data could cause future harm. The decision is the first of its kind in Massachusetts and follows the U.S. Supreme Court's 2021 TransUnion ruling limiting standing in federal courts.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance

#breach#regulation Read original →
Breach
BleepingComputer · · International

ReliaQuest confirms failed data-theft attack after ShinyHunters breach

Cybersecurity firm ReliaQuest confirmed that hackers linked to the ShinyHunters group targeted one of its employees through a social engineering attack, impersonating an internal security team member in an attempt to steal data. The company says the attack did not succeed.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
BleepingComputer · · International

South Korean startup platform breach exposes key management failures

A South Korean government-backed startup platform suffered a data breach that exposed encrypted personal data after an encryption key was embedded directly in an API, negating the protection encryption was supposed to provide. Penta Security has publicly addressed the incident as an example of poor key management practice.

Who should care: Cybersecurity · Privacy officers · Administrators · General readers · Policy

#breach#privacy Read original →
Breach
DataBreaches.net · · International

Personal Information Exposed in Apollo Global Data Breach

Apollo Global Management, one of the world's largest private equity firms, disclosed a data breach in which attackers used social engineering to access company cloud platforms over a four-day window in early July. Personal information belonging to affected individuals was exposed, and an investigation is continuing.

Who should care: Cybersecurity · Privacy officers · Administrators · Lawyers · Compliance · General readers · Policy

#breach#enforcement#privacy#security Read original →
Breach
DataBreaches.net · · International

ShinyHunters provided no real proof they hacked ReliaQuest– because they didn’t get anywhere: ReliaQuest

Hacking group ShinyHunters claimed to have breached cybersecurity firm ReliaQuest and listed it on their leak site, but offered only a screenshot of a single user account page as evidence. ReliaQuest publicly pushed back, stating the claim was not supported by any real proof of access.

Who should care: Cybersecurity · Privacy officers · Administrators

Breach
DataBreaches.net · · International

Connecticut says data from 41,000 Medicaid members exposed in portal breach; the second portal incident this year

Connecticut's Medicaid provider portal suffered a breach exposing payment and claims data for roughly 41,000 HUSKY Health members, detected on June 25, 2026. The vendor Gainwell Technologies, which manages the state's Medicaid fiscal operations, is at the center of the incident — the second portal breach Connecticut has reported this year.

Who should care: Cybersecurity · Privacy officers · Administrators

← Prev Page 8 of 21 Next →