New paper tackles the two conflicting challenges that complicate compliance with regulations: fear of failing an audit versus the costs of running effective programs.
Multinational food retailer Ahold Delhaize reports that the November 2024 ransomware attack on its U.S. operations resulted in a massive data breach affecting over 2.2 million individuals.
Facebook is employing some creative new tactics in its extended battle with Apple. A paid academic study concludes that Apple's new privacy policies in iOS 14 are anticompetitive.
Racial and gender bias may extend even to the world of cybercrime. New study finds that disadvantaged groups are not only more frequent targets of attacks, but also that they suffer disproportionate damage from them.
HealthEquity is notifying 4.3 million individuals of a third-party breach that leaked their personal (PII) and protected health information (PHI) after an unauthorized actor accessed a vendor’s data repository.
$1.3 million BEC attacks on three large financial services companies in U.K. and Israel shows how far cyber criminals are willing to go and what they are capable of.
The cyber attack stemmed from a phishing email and impacted some 113,000 people. The government supplier was also faulted for not following up on an antivirus alert as well as having outdated systems and inadequate staff training in place.
As Data Privacy Day approaches on January 28, it’s the perfect time for enterprises to reevaluate the way they safeguard data to ensure they’re maximizing its value while still mitigating risk to data subjects or brand safety.
U.S. government-funded Android phones are found to contain unremovable pre-installed malware that leaves the phone vulnerable to invasive advertising and auto-installation of apps without user’s permission.
Attackers are targeting the DocuSign APIs to generate large amounts of fake invoices, which often skirt automated security and land in inboxes as they originate from "docusign.net" and appear to be coming from legitimate companies.










