The 1.2 terabyte MOAB file is broken up into over 3,800 folders, each one representing a prior data leak that saw personal information or credentials make their way to the open internet. In total there are over 26 billion records.
Today, data flows have become infinitely more complex in what has come to be known as surveillance capitalism. The challenge is how to future proof privacy legislation, learning the lesson of what worked with credit reporting laws as well as other more recent measures.
Microsoft has named "Midnight Blizzard," an established team of Russian state sponsored hackers also referred to as NOBELIUM and Cozy Bear, as the culprit behind a recent security breach that compromised high-level corporate email accounts.
Fidelity National Financial disclosed that hackers compromised the data of 1.3 million customers during the November 2023 cyber attack that disrupted operations for a week.
Russian-speaking cyber gang LockBit ransomware has breached Taiwanese Foxconn subsidiary Foxsemicon, defaced its website, and allegedly stole five terabytes of data.
State-sponsored hackers have exploited two Ivanti zero-days to compromise over 1,700 ICS VPN appliances, cybersecurity firm Volexity has found.
Leading data breach cross-checking service Have I Been Pwned has added about 71 million email addresses from "Naz.API," a new dataset circulating on the dark web that contains a massive collection of leaked credentials and plaintext passwords.
A joint parliamentary committee report warned that the UK government is risking a catastrophic ransomware attack that could cripple the country’s critical infrastructure.
The Inferno Drainer malware that plagued the crypto world throughout 2023 ultimately compromised about 130,000 victims and stole about $87 million in total, according to a new report from Group-IB. It was part of a broader movement of "crypto drainer" services that some security experts believe is poised to become the next big thing in cybercrime in 2024.
noyb's GDPR complaint asserts Meta’s privacy fee makes it impossible for existing service users to withdraw consent without paying. That in turn flies in the face of a GDPR stipulation (found in Article 7).









