The university system became aware of the MOVEit breach in late May of last year and blocked the software on its network, so it is very likely that the stolen data was already dumped to the dark web or sold some time ago.
The U.S. state of Georgia’s election website experienced a “probing” cyber attack from a suspected nation-state threat actor, delaying absentee ballot requests.
A German court has slashed a GDPR fine assessed to one of the country's largest telecommunications service providers by over 90%, calling it "unreasonably high."
Germany's data protection commissioner tells German government organizations to shut down their official Facebook Pages by January 2022 or face potential enforcement action.
An investigative report conducted by two of Germany's biggest newspapers and two of its public radio broadcasting stations has found that the country's government secretly purchased the controversial Pegasus spyware in late 2020.
Germany set a new precedent with an antitrust ruling against Facebook, forcing the company to make major changes to their data collection practices – German users are to be given a greater degree of notice and choice in how their data is used.
On May 19 GitHub confirmed the security breach across its social media channels, verifying that there was unauthorized access to internal repositories and stating that it was monitoring the situation for further activity. It also said that it had no evidence that information stored in customer repositories or internal information about customers was compromised.
Cybersecurity researchers disclosed a GitHub vulnerability that could allow attackers to hijack and poison thousands of popular open-source packages with millions of users which can lead to supply chain attacks.
GitHub says that the OAuth tokens were not stolen via a breach of its own systems, but that dozens of private repositories were accessed. OAuth tokens that were issued to two third-party integrators, Heroku and Travis-CI.
According to a new survey conducted by the IAPP and EY, Global 500 companies will spend a combined $7.8 billion over the next year on GDPR compliance. Those escalating compliance costs will mostly result from new hiring, as corporations race to catch up with changes to privacy laws.










