New FCC rules will essentially force a new set of procedures and checks on the customer service employees that are targeted by the criminal hackers that engage in SIM swapping.
CISA has released a roadmap establishing four overarching broad goals, with five more specific lines of effort that appear to indicate concrete immediate priorities. Defensive AI cybersecurity measures and plans for critical infrastructure adoption are repeating themes.
Postmeds’ Truepill data breach impacted over 2.3 million individuals and is the subject of a class-action lawsuit alleging the digital pharmacy's negligence.
The McLaren Health Care data breach impacted nearly 2.2 million patient records. The company confirmed the intrusion and unauthorized data access occurred in July-August 2023 and was discovered in Oct 2023. The ALPHV/BlackCat ransomware group claimed responsibility for the apparent ransomware attack.
Denmark Weathered Wave of Cyber Attacks on Energy Infrastructure in May, Industry Non-profit Reveals
Denmark's energy infrastructure was bombarded by cyber attacks in May of this year. Report says 16 energy infrastructure companies were targeted and 11 were compromised immediately, the other five only apparently dodging a breach because the attackers were sloppy in their technique.
The ALPHV/BlackCat ransomware group has filed an SEC complaint directed at MeridianLink, noting that the data breach took place over a week prior, and claims that new SEC rules require the victim to disclose a material impact within four business days.
Cyber Incident at DP World Australia Shut Down Port Operations, Backed Up 30,000 Shipping Containers
Large-scale cyber incident on critical infrastructure shut down port operations across Australia over the weekend, prompting a backup of some 30,000 shipping containers that were unable to unload for several days.
The final report on the Okta security breach indicates that the attackers were able to access HAR files containing session tokens of 134 customers, but it appears they were very selective in which they chose to pursue follow-up attacks on. Only five instances of successful session hijacking were logged.
The state government of Maine has confirmed a MOVEit data breach that leaked extensive personally identifiable information of basically all 1.3 million residents.
Magic Circle law firm Allen & Overy has confirmed a cyber attack claimed by the Russian LockBit ransomware group, which demanded a ransom and threatened to leak stolen data.










