Bidding war for defunct Spirit Airlines’ employee data will not die
Bidding war for defunct Spirit Airlines’ employee data will not die csoonline.com
The full corpus — beyond today's front page.
13 results
Bidding war for defunct Spirit Airlines’ employee data will not die csoonline.com
Novocure, a medical technology company focused on oncology, has confirmed a cyberattack that exposed data belonging to patients and employees. The company has not publicly detailed the scope of the breach or the type of information compromised.
Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance
Spirit Airlines, currently in bankruptcy proceedings, is reportedly exploring a deal to sell customer and employee data to Google. Former flight attendants say they were not aware their personal information could be sold off as part of the airline's assets.
Who should care: General readers · AI governance · Policy
The Hospital for Sick Children — which was hit in a ransomware incident in 2022 that disabled some of its systems — released a statement on Thursday warning of a data theft incident they believe is tied to a third-party software application.
Who should care: Cybersecurity · Privacy officers · Administrators
Baylor Genetics, a company specializing in clinical diagnostic genomics, has disclosed a cybersecurity incident that exposed data belonging to both patients and employees. The company has not publicly detailed the scope of the breach or the types of information compromised.
Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance
Anthropic is facing a trust reckoning that is prompting organizations to reconsider how they set policy around AI use at work. The situation puts a spotlight on how employers handle employee data, decision-making authority, and accountability when AI tools are involved.
Who should care: AI governance · Lawyers · Administrators · General readers · Policy
A threat actor is selling employee databases allegedly stolen from the Microsoft Azure infrastructure of multiple Fortune 500 companies after gaining access using compromised credentials. [...]
Who should care: Cybersecurity · Privacy officers · Administrators
Child Care Resource Center, a California-based child care organization, disclosed a data breach that exposed employee data over a period of approximately nine years. The breach was attributed to internal employee practices rather than an outside attack.
Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance
The input is extremely thin — just a headline and what appears to be a source attribution with no substantive excerpt content. I cannot write a factual briefing without inventing details the input does not support. Could you provide the actual excerpt or a bit more context about what the CPPA publi
Who should care: General readers · Privacy officers · Policy
Park Dental Research Corporation in Oklahoma and Wabi Sabi Behavioral Health Center have each disclosed data security incidents involving employee data. Both organizations operate in healthcare-adjacent sectors, placing the breaches within the scope of HIPAA reporting obligations.
Who should care: Cybersecurity · Privacy officers · Administrators · Healthcare professionals · Compliance
Nissan is warning that it suffered a data breach affecting current and former employees after threat actors exploited an Oracle PeopleSoft vulnerability in data theft attacks previously linked to the ShinyHunters extortion group. [...]
Who should care: Cybersecurity · Privacy officers · Administrators
Amazon's MGM Studios has shelved a planned film about OpenAI, reflecting the growing and complicated entanglement between the AI industry and Hollywood. Separately, data center workers are organizing in response to labor concerns, and Meta experienced a leak exposing employee data.
Who should care: Cybersecurity · Privacy officers · Administrators · General readers · AI governance · Policy
The California Privacy Protection Agency is soliciting early public input on two areas: how businesses communicate privacy notices and disclosures, and how employee data is handled under California privacy law. The pre-rulemaking step signals the CPPA is laying groundwork for future regulatory action in both areas.
Who should care: General readers · Privacy officers · Policy