Employers must familiarise themselves with India's new Digital Personal Data Protection Act, and assess its implications for employee data. With compliance likely to require significant administrative and technical overhauls within organizations, it is prudent to begin readiness evaluations early.
15 million Canadians’ sensitive personal information was exposed in LifeLabs data breach and the company is now facing a civil lawsuit seeking $1.14 billion dollars in damages.
Theft of LastPass’s decrypted password vaults has been tracked to a DevOps engineer. Attackers reportedly targeted a vulnerability in a media software package on the employee's home computer.
The US Treasury is now warning of potential sanctions violations if ransomware payments are made, citing the possibility of civil penalties even if the attacker’s identity is unknown.
CISA has released a roadmap establishing four overarching broad goals, with five more specific lines of effort that appear to indicate concrete immediate priorities. Defensive AI cybersecurity measures and plans for critical infrastructure adoption are repeating themes.
Trustwave analyzed dark web chatter on the underground hacking forums and discovered that cybercriminals were anxious after the Russian FSB arrested 14 REvil ransomware gang members.
TikTok made the privacy policy announcement last month, and had scheduled the switch for July 13. The video sharing platform claimed a "legitimate interests" exception to obtaining consent for personalized ads.
The sudden announcement of an FAA system outage that grounded all flights nationwide immediately raised natural concerns about a cyber attack, but the agency is saying that the incident was a "glitch" caused by a damaged database file.
The International Counter Ransomware Initiative conference has produced a pledge by 40 countries to refuse ransomware payments going forward, including the United States and EU members. The pledge appears to only apply to government entities.
FBI's annual internet crime report says cyber crime losses increased by almost two-thirds while ransomware attacks remain the greatest risk to critical infrastructure organizations.










