Mysterious organization exposed tools and source code used by Iranian hackers, including personal information of some Iranian Ministry of Intelligence members responsible for state-sponsored cyber attacks.
Facebook warned investors on potential FTC fine of $3 to $5 billion from upcoming Facebook settlement in Cambridge Analytica scandal, the company could be forced to create new privacy oversight review board reporting to FTC.
New cyber security directive from DHS has cut mandatory time for U.S. federal government agencies to patch vulnerabilities considered critical from 30 to 15 days, failure to do so may result in administrative penalties.
Connected devices will soon be subject to new IoT security laws, with California taking the lead and requiring devices to have “reasonable security features” and U.K. draft law requires devices to have cyber security features labeled on package.
Report from the Internet Society, in partnership with Consumers International, shows continuing concerns with IoT security and privacy, where 53% of consumers distrust connected devices to protect their privacy and handle information in a responsible manner.
Personal information of over 80 million U.S. households was exposed from an unsecured cloud database, while the owner of the database remains unknown.
Israel's cyber response to cyber attacks launched by Hamas was to launch an air strike on a building known to be the cyber HQ for Hamas. It is believed to be the first time any military has responded to a digital threat with immediate force.
Major anti-malware vendors, Symantec, McAfee, and Trend Micro, allegedly had their source code stolen by Russian hackers. The full set of data including access to the companies' networks are now going on sale for $300,000.
Chinese spies known as Buckeye group are alleged to be using some of the NSA cyber weapons as early as March 2016, long before Shadow Brokers released them in April 2017.
Latest 2019 Verizon data breach report highlights absence of foundation-level and layered security controls, internal security discipline, and general security awareness as the common denominators in the data breach dilemma.










