Recent Equifax downgrade surprised Wall street as it’s the first company in history to have ratings outlook downgraded due to escalating litigation and regulatory costs from 2017 data breach and increase in cybersecurity spending.
Lazarus hacking group found to be developing capabilities in supply chain attacks and using the MATA framework to conduct cyber espionage on the defense industry.
Password manager LastPass notified its customers of a second security breach in 2022, with the threat actor accessing customer data stored on a shared cloud service.
Vulnerability allows hackers to extract private encryption keys hardcoded in Siemens industrial devices to execute sophisticated attacks or take over whole product lines.
New proposed privacy bill to impose penalties of up to 4% of a company’s annual revenue for first-time privacy violations and potential jail time for senior executives who lie about them.
The increase in cyber threats is forcing general counsels to grow into a strategic leadership role in terms of management of data risks, per the General Counsel Report 2021.
A 2019 incident in which user passwords were inadvertently stored in plaintext has netted a €91 million GDPR fine for Meta from Ireland's DPC, though access to the password storage was limited to Meta workers on an internal company network.
The data breach took place at the BWI Airport Marriott near Baltimore. A social engineering attack was executed on a member of the hotel staff, who unwittingly granted access.
Cosmetics giant Estée Lauder is notifying customers of a ten-month-old data breach stemming from Oracle EBS that leaked the personal information of its employees.
Norfund, the sovereign wealth fund of Norway, has lost over $10 million to BEC scam and it appears that the scammers had spent months inside the networks leading to the fraud.










