Tech giants are facing hefty fines after France's CNIL ruled that their cookie consent processes were too confusing and difficult. Central to the case was the use of "dark patterns" by each site.
The Office of the Attorney General of New York has recorded 1.1 million compromised accounts. The stolen logins were put to use in credential stuffing attacks against a variety of "well-known" online retail, food and delivery businesses.
Legal action may be forthcoming for organizations that do not patch Log4j. The FTC has issued an alert that references the Equifax breach (which ended in a settlement of $700 million) as a precedent.
Password Manager LastPass says no master password was compromised after multiple users received unauthorized login alerts. The company blamed credential stuffing and system errors.
Cyber attack on Norwegian media company Amedia halted the publication of printed newspapers and potentially compromised personal information of employees and subscribers.
In general, law enforcement does not have access to E22E messages sent via secure messaging apps. However, there is a workaround: message backups sitting in cloud storage services.
Report contends that the pandemic was used as an excuse to normalize various elements of mass surveillance, with some of these having no real impact on Covid-19 response at all.
Tiandy, one of the largest firms in the video surveillance field, has a relationship with Iran. It is known for its ethically questionable product line, which includes "smart tables" designed to accompany Chinese torture chairs.
Fraudsters stole at least S$8.5 million from OCBC Bank customers through fake SMS impersonating the bank. OCBC warned of increased phishing scams in December 2021.
Positive Technologies found that cybercriminals can penetrate 93% of company networks, disrupt processes and services, steal funds and data, while insiders can breach 100% of networks.









