Healthcare giant CVS exposed over a billion health records through a misconfigured cloud database leak, including visitor and session IDs, device information and multiple records for medications.
New report from Allianz finds that cyber crime causes the most expensive insurance losses, but that internal failures are the most frequent overall reasons for cyber claims.
French privacy watchdog CNIL has opened an inquiry into Clubhouse’s handling of user data which may be in conflict with EU privacy laws, most notably the GDPR.
A class action lawsuit accuses Oracle of creating “global surveillance” profiles for five billion people worldwide, attaching things like purchase records and GPS locations to their name and contact information.
The NSA has issue a cybersecurity advisory that Russian hackers are exploiting a unique vulnerability to gain access to computer systems by sending a specially crafted email to targeted users.
Iranian hackers installed crypto miner on federal agency’s network after exploiting unpatched Log4Shell vulnerability on the VMWare Horizon server to gain access. The threat actors moved laterally to the domain controller, compromised credentials and implanted reverse proxies on several hosts to maintain persistence.
Sony Interactive Entertainment has confirmed a MOVEit data breach that leaked the personal information of current and former employees and their family members.
US law enforcement agencies make up the majority of the information requests and nearly all of the ‘three letter’ players are getting in on the action, from the FBI to the IRS.
GAO audits carried out between fiscal years 2012-2017 have discovered significant cyber vulnerabilities in the U.S. Department of Defense’s top weapons systems, reflecting a misguided approach that does not take into consideration basic cyber security.
Cyber attack on Norwegian media company Amedia halted the publication of printed newspapers and potentially compromised personal information of employees and subscribers.










