SolarWinds and its CISO Timothy Brown are facing serious charges in connection with the catastrophic security breach of 2020, with the SEC alleging that he had knowingly ignored and downplayed serious security risks since at least 2018.
The MOVEit data breach saw about 632,000 emails from the Departments of Defense and Justice accessed by a criminal hacking group based in Russia, in addition to already-documented personal information leaks at some 1,000 companies.
The District of Columbia Board of Elections data breach claimed by a Russian ransomware gang leaked the entire voter roll, including personal information and voting records.
A new executive order from the Biden administration addresses a wide range of the potential harms that AI can cause, putting new safeguards in place for everything from biological materials engineering to deepfakes.
Five regional hospitals in Ontario, Canada, rescheduled appointments and diverted non-emergency patients after a cyber attack disrupted a shared service provider.
The cybersecurity workforce continues to grow, but not nearly fast enough to keep pace with demand. This is just one of several factors contributing to what the new ISC2 report calls a "perfect storm" of instability in the field.
Seiko has confirmed that the July 2023 data breach resulted from a ransomware attack and leaked personal information. BlackCat/ALPHV ransomware gang, took responsibility for the attack and claimed to have exfiltrated 2 TB of data.
With projections of closing out at $1 to $2 trillion by the end of the present decade and making up about a third of total regional GDP, ASEAN's rapid digital economy growth is poised to put it at the center of global conversations about cyber rights and regulations in the very near future.
Octo Tempest has gradually stepped up from data theft, to data extortion, and now to ransomware as of this summer (becoming an affiliate of the ALPHV/BlackCat group). The cybercriminals are entirely financially motivated and nearly always leads with either a phishing email/message or a social engineering call. It also looks to execute SIM swap attacks.
Employers must familiarise themselves with India's new Digital Personal Data Protection Act, and assess its implications for employee data. With compliance likely to require significant administrative and technical overhauls within organizations, it is prudent to begin readiness evaluations early.










