Russia's current conflict with Ukraine is so far playing out with cyber attacks rather than physical warfare. A series of defacement attacks on government websites appears to be the opening salvo.
Cyber attack that targeted irrigation systems in Israel is thought to be part of an annual "OpIsrael," hacktivist campaign that takes place every April, and this year's attempt at least managed to cause a nuisance for some farms in the Jordan Valley.
The new New York cybersecurity regulations require healthcare facilities to appoint a CISO, implement incident response plans, and to face new breach reporting requirements. They will also have access to a total of $500 million in new funding from the state.
Since these are ransomware groups after all, the retirement announcements may well be FUD to cover strategic retreats and rebrands after an extended period of high-level exposure. But at least for the moment some of the world's most significant threats such as Scattered Spider, ShinyHunters, and Lapsus$ appear to be out of the game.
UK data protection watchdog argues that personal data has monetary value and wants powers to seize assets for criminal cases, including data, under the Proceeds of Crime Act 2002 (POCA).
Hackers demanded $17 million in Compal's security breach despite its denial of the ransomware attack. Compal also claimed that its production lines were not affected.
Brave privacy browser may have violated FTC and GDPR regulations for automatically redirecting users to affiliate links after they entered the name or URL of cryptocurrency sites.
Medibank has opted to ignore demands for ransom payments for the recent data breach of about 9.7 million health data records. Criminals have published a fraction of the stolen data on the dark web, including those of high-profile politicians.
Civil actions brought by the SolarWinds Corp and its CISO Timothy Brown have been dismissed with prejudice by the Manhattan federal court handling the case, the end result of a settlement negotiation process that began in July of this year.
To combat coronavirus outbreak, some E.U. nations are making use of GDPR emergency provisions to loosen up the rules in collecting and processing sensitive health data.










