The USPTO says that an API vulnerability was present between February 2020 and March 2023, causing a data leak of about 61,000 private residential addresses attached to patent filings.
Security researchers have discovered hundreds of federal network devices with exposed management interfaces violating the recently mandated CISA security requirements detailed in the Binding Operational Directive (BOD) 23-02.
Cyber attack on parent company Suncor Energy has disrupted the Petro-Canada's payment and loyalty reward systems. Petro-Canada has about 1,500 gas stations and is the second-largest chain of gas stations in the country.
In opposition to the proposed UK Online Safety Bill, Apple has issued a statement referring to encrypted messaging as being critical to privacy and online safety.
US military personnel were warned against turning on unsolicited smartwatches mailed to service members that auto-connect to Wi-Fi and smartphones, potentially collecting sensitive information.
A breach of a third party vendor used by some airlines to process pilot job applications has exposed at least 8,700 records, according to data breach disclosures made by American and Southwest Airlines. The impacted airlines have said that they have cut ties with the third party vendor.
Snack giant Mondelēz International has suffered a third-party law firm data breach from its legal services provider, Bryan Cave Leighton Paisner LLP, leaking sensitive personal information of over 50,000 current and former employees.
Australia has been experiencing unusually serious problems with data breaches for nearly a year now. HWL Ebsworth, one of the country's most prominent law firms, appears to have had a huge amount of client information stolen by ALPHV/BlackCat.
BlackCat ransomware group has claimed responsibility for the Reddit hack and threatened to leak 80GB of information stolen during the Feb 2023 data breach and claims to have obtained damaging information capable of destroying the company’s reputation.
One of the world's largest adtech companies is facing a €40 million GDPR fine over failure to collect proper consent for personal information processing. Criteo's targeted advertising program was also cited for transparency and right of access shortcomings.










