Apria healthcare data breach has exposed the personal, medical, and financial information of up to 1.8 million individuals. The cyber intrusions occurred from April 5 to May 7, 2019, and from August 27 to October 10, 2021.
Popular mini-game module found in over 100 Android apps, pitched to developers as a legitimate marketing SDK meant to improve user engagement and attention, has been found to have spyware capability hidden in it.
Free VPN app SuperVPN data leak exposed over 360 million records that could identify users. The app has over 100 million downloads on Google Play and Apple's App Store.
One of North America's largest Medicaid and CHIP dental care providers has suffered a massive data breach of highly sensitive patient information, thought to be perpetrated by the LockBit ransomware group.
Amazon has settled a FTC privacy lawsuit involving repeated breaches of Ring video cameras by both employees and hackers. The order would require Amazon to pay $5.8 million in restitution and delete a great deal of the video it has collected over the past several years.
Supply chain security is in the news once again as a cyber attack on Zellis, a UK-based payroll provider, has led to the compromise of numerous organizations. Among the biggest names impacted by the attack are the BBC, British Airways and major UK drugstore chain Boots.
Prior to its seizure in April 2022, RaidForums was one of the biggest hacking forums catering to cybercriminals that trade in stolen data. A new competitor is looking to make a name for itself by exposing some 478,000 former RaidForums members.
The annual Verizon DBIR provides further confirmation that attackers are showing a renewed interest in social engineering, particularly in conjunction with business email compromise (BEC) attacks. And the average financial damage of a ransomware attack has doubled and is almost certain to cost organizations at least $1 million to remediate.
Toyota discovered a second cloud misconfiguration data leak that exposed 260,000 domestic and international customers' in-vehicle data and personal information for over eight years.
Failure to strictly follow children's privacy laws on the Xbox Live gaming service is about to cost Microsoft a substantial amount of money, as the company has settled a FTC case with a $20 million fine for inappropriate collection and storage of personal data.










