Global Affairs Canada (GAC), the country’s foreign affairs department, is reeling from the impacts of a data breach that leaked the personal information of users and staff members.
The Russian ransomware gang ALPHV/BlackCat has threatened to leak 300 GB of top-secret and classified military documents it stole from a Pentagon contractor.
Amazon was penalized for excessive employee monitoring, insufficient data minimization, and failing to meet transparency and security requirements. Much of the GDPR fine centers on the hand scanners that are issued to warehouse employees.
The privacy lawsuit dates all the way back to 2018, when Google internally discovered that the Google+ API was being abused. The privacy lawsuit has now been settled for $350 million, after a lengthy appeals process played out.
A Hong Kong deepfake scam that netted HK$200 million made use of a fake video conference with multiple company executives. The employee that was targeted reportedly did suspect fraud at first, but nevertheless ended up making a total of 15 bank transfers.
An INTERPOL-led global law enforcement operation has taken action against 1,300 ransomware, phishing, and malware command-and-control (C2) servers and the arrest of dozens of suspects.
Clorox reported a total of $49 million in incremental expenses related to the attack, with Johnson Controls reporting data breach costs of nearly $27 million. This money went to remediation costs such as third party contracting, as well as added operating costs due to disruptions.
Popular remote monitoring and management software firm AnyDesk has suffered a cyber attack that compromised its production systems and leaked source code and code signing certificates.
According to a new joint warning published by the CISA, NSA and FBI, exploits by the Chinese hackers have been going on for at least five years in some victim critical infrastructure environments.
A Verizon insider data breach has impacted employee data of 63,206 employees. incident occurred when a Verizon employee violated company policy by gaining unauthorized access to a file containing workers’ personal information.










