The investment research firm’s first disclosed data breach took place between November 2021 and August 2022, and a notification on January 25 of this year indicated that 820,000 customers were impacted. That number has now been revised to 8.8 million.
Cybersecurity firm Kaspersky Lab has discovered an iOS malware variant spreading via an iPhone zero-click exploit in iMessage. Russia has accused the NSA of targeting the country’s diplomatic missions and Apple of providing backdoors.
Failure to strictly follow children's privacy laws on the Xbox Live gaming service is about to cost Microsoft a substantial amount of money, as the company has settled a FTC case with a $20 million fine for inappropriate collection and storage of personal data.
Toyota discovered a second cloud misconfiguration data leak that exposed 260,000 domestic and international customers' in-vehicle data and personal information for over eight years.
The annual Verizon DBIR provides further confirmation that attackers are showing a renewed interest in social engineering, particularly in conjunction with business email compromise (BEC) attacks. And the average financial damage of a ransomware attack has doubled and is almost certain to cost organizations at least $1 million to remediate.
Prior to its seizure in April 2022, RaidForums was one of the biggest hacking forums catering to cybercriminals that trade in stolen data. A new competitor is looking to make a name for itself by exposing some 478,000 former RaidForums members.
Supply chain security is in the news once again as a cyber attack on Zellis, a UK-based payroll provider, has led to the compromise of numerous organizations. Among the biggest names impacted by the attack are the BBC, British Airways and major UK drugstore chain Boots.
Amazon has settled a FTC privacy lawsuit involving repeated breaches of Ring video cameras by both employees and hackers. The order would require Amazon to pay $5.8 million in restitution and delete a great deal of the video it has collected over the past several years.
One of North America's largest Medicaid and CHIP dental care providers has suffered a massive data breach of highly sensitive patient information, thought to be perpetrated by the LockBit ransomware group.
Free VPN app SuperVPN data leak exposed over 360 million records that could identify users. The app has over 100 million downloads on Google Play and Apple's App Store.










