The stolen passwords are for a MoD portal specifically designed to be used safely from home via member personal devices, but it appears the Russian hackers have been targeting the devices themselves and intercepting the credentials.
A 2019 incident in which user passwords were inadvertently stored in plaintext has netted a €91 million GDPR fine for Meta from Ireland's DPC, though access to the password storage was limited to Meta workers on an internal company network.
Report from Mandiant mapped out recent cyber attacks against FTA and finds it likely that more organizations have been compromised. CISA has issued a joint advisory with Australia, New Zealand, Singapore and the UK.
Hundreds of NATO documents of "extreme gravity" were reportedly stolen and made available on the dark web, and the Portuguese government is facing tough questions about why the breach was not discovered for weeks.
Facebook responds to 1,200 questions posed by U.S. lawmakers on its data privacy practices. It seems that as long as the questions keep coming, Facebook can safely delay and mitigate the risk of regulatory or legal action.
New Data Protection Rules From Chinese Government Targeted Squarely at Limiting Power of Tech Giants
China’s data protection rules are now being strengthened in a way that seems to be aimed specifically at limiting the power of tech giants.
U.S. doing an “adequate” job for Privacy Shield but could be doing more to protect the data transfer of EU users, including reform of the FISA regulations.
Top court in Europe struck down the Privacy Shield agreement that governed EU-US data transfers and can potentially limits data sharing with other countries via companies in the US.
US consumer finance watchdog appears to have data brokers in its crosshairs, announcing that it is developing a new rules proposal for the industry. CFPB specifically noted a focus on the impact of AI and announced that an outline of proposals will be released sometime in September.
With rising risks of Internet of Things, the draft of the NIST 800-53 revision 5 addresses IoT security and privacy challenges head on.










