Marriott International has approved a $52 million FTC settlement to conclude an investigation into over half a decade of data breaches that rocked the hotel franchise.
With a major GDPR fine of $123 million on Marriott following an even bigger $230 million fine on British Airways, businesses worldwide are now on notice to have adequate security safeguards in place to protect user data.
Marriott suffered its second large data breach through two employees’ login credentials that exposed personal information of 5.2 million guests from their customer loyalty accounts.
While 79% of respondents in recent Marsh and Microsoft survey ranked “cyber risk” as a top risk management concern, only 17% of C-suite or board members spend more than a few days per year focusing on it.
A massive data leak of 2.87 billion X/Twitter profiles, more than four times the site's current active monthly user estimate and likely including most going back to the creation of Twitter, may have been the work of a disgruntled former employee laid off during Musk's takeover of the company.
A third-party platform that has the ability to pull fitness tracking data from nearly all of the major wearable device providers has been breached, leaving about 61 million records exposed.
Many organizations affected by Log4j’s zero-day vulnerability with mass internet scanning detected, suggesting the remote code execution flaw was actively targeted in the wild.
Threat actors hijack thousands of reputable domains and subdomains to deliver over 5 million malicious emails daily in a mass ad fraud campaign dubbed SubdoMailing.
AT&T customer records of calls and texts were taken from 110 customers, and the data breach may be an offshoot of the ongoing fallout from the Snowflake storage compromise that took place in April.
Citrix is the latest big name to fall victim to a major data breach. The data breach is thought to have been perpetrated by Iranian hackers in a group called IRIDIUM, which is believed to have ties to the country's government.









