Dell Technologies is notifying customers of a preventable data breach that exposed their personal information via a poorly protected application programming interface (API). The notification follows a recent BreachForum post by a threat actor auctioning the stolen data, allegedly belonging to 49 million customers.
The university system became aware of the MOVEit breach in late May of last year and blocked the software on its network, so it is very likely that the stolen data was already dumped to the dark web or sold some time ago.
A cyber attack has disrupted nationwide operations and forced Ascension Healthcare Network hospitals to resort to manual systems, divert ambulances, and reschedule appointments and elective surgeries.
The US cybersecurity strategy asks global partners to rally around three central principles: a broad vision of cyberspace grounded in commitment to international law and agreements, fundamental data security and privacy practices, and greater diplomatic involvement across all elements of the digital ecosystem.
Panda Express, the largest Chinese fast food chain in the US, leaked sensitive personal data during the March 2024 cyber attack that affected the parent company’s corporate systems.
For the most part the exposure appears to have been limited to names and bank details for both active members of the UK armed forces and veterans. The UK government has named SSCL, a business services provider, as the source of the third party breach.
A security breach has affected all users of the eSignature platform Dropbox Sign (formerly HelloSign), including those who received or signed a document without an account.
The new Microsoft security initiative update promises more sweeping changes. This move is also likely tied directly to the company's security woes and issues with cyber threats in 2023 and early 2024.
Austrian GDPR Complaint Claims OpenAI Refuses to Correct Potentially Libelous ChatGPT Hallucinations
Filed by data privacy crusader Max Schrems and his group "noyb," the GDPR complaint asserts that OpenAI refuses to correct ChatGPT output about individuals and will simply try to filter or block requests tied to that name. The complaint also accuses OpenAI of failing to live up to their subject access request (SAR) responsibilities under EU rules.
Qantas Airways Privacy Breach Exposed Passenger Information, Allowed Booking and Flight Cancellation
Australia’s national carrier, Qantas Airways, has apologized for a privacy breach that exposed passenger information and allowed booking, flight cancellation, and seat changes.










