#ransomware attack

[ follow ]
Ars Technica
2 months ago
Privacy professionals

Amid paralyzing ransomware attack, feds probe UnitedHealth's HIPAA compliance

Healthcare ransomware attack targeting Change Healthcare, owned by UnitedHealthcare Group, paralyzed claims processing and payments.
US Department of Health and Human Services investigating compliance of UnitedHealthcare Group with federal rules to protect patient data. [ more ]
British Library
The British Library has told customers that their personal data may have been stolen during a recent ransomware attack that knocked the library’s systems and website offline for the past month. #databreach @CarlyPage_ @TechCrunch

https://t.co/Apvvjcb1nY
TechCrunch
5 months ago
Privacy professionals

British Library confirms customer data was stolen by hackers, with outage expected to last 'months' | TechCrunch

The British Library experienced a ransomware attack that resulted in customer data potentially being stolen.
The Rhysida ransomware gang claimed responsibility for the attack and has published 90% of the stolen data.
The stolen data includes customer names, email addresses, and potentially postal addresses and telephone numbers. [ more ]
TechCrunch
5 months ago
Privacy professionals

British Library confirms customer data was stolen by hackers, with outage expected to last 'months' | TechCrunch

The British Library experienced a ransomware attack that resulted in customer data potentially being stolen.
The Rhysida ransomware gang claimed responsibility for the attack and has published 90% of the stolen data.
The stolen data includes customer names, email addresses, and potentially postal addresses and telephone numbers. [ more ]
TechCrunch
5 months ago
Privacy professionals

British Library confirms data stolen during ransomware attack | TechCrunch

The British Library has confirmed that a ransomware attack led to the theft of internal data.
The attack caused a major technology outage across the library's sites and disrupted online and on-site services.
The ransomware gang responsible for the attack has demanded over $740,000 worth of bitcoin. [ more ]
ComputerWeekly.com
5 months ago
Privacy professionals

Internal documents leaked as Rhysida claims responsibility for British Library ransomware attack | Computer Weekly

The British Library has confirmed that internal HR documents have been leaked following a ransomware attack.
The Rhysida ransomware group has claimed responsibility for the attack and is auctioning off the stolen data. [ more ]
ComputerWeekly.com
5 months ago
Privacy professionals

Internal documents leaked as Rhysida claims responsibility for British Library ransomware attack | Computer Weekly

The British Library has confirmed that internal HR documents have been leaked following a ransomware attack.
The Rhysida ransomware group has claimed responsibility for the attack and is auctioning off the stolen data. [ more ]
www.standard.co.uk
5 months ago
Privacy professionals

British Library confirms ransomware cyber attack has crippled services

The UK's national library, the British Library, is currently experiencing a major technology outage as a result of a ransomware attack.
The attack has affected the library's website, online systems, and services, as well as some onsite services including the Reading Rooms and public WiFi.
The library is working to restore services, but some disruption may persist for longer, and they are investigating the attack with the support of cybersecurity specialists. [ more ]
moreBritish Library
cyberattack
www.cbc.ca
5 months ago
Medicine

Patient gets biopsy in U.S. after she says she was denied in Ontario due to ransomware attack | CBC News

A resident in Ontario was denied necessary medical care due to ongoing hospital delays caused by a ransomware attack.
The resident was told she couldn't get a biopsy done because computer systems were still down from the cyberattack.
The resident was frustrated and wanted answers as to why her emergency situation was being denied. [ more ]
www.cnn.com
11 months ago
US politics

Cyberattack forces Idaho hospital to send ambulances elsewhere

A hospital in Idaho has been diverting ambulances to other hospitals for more than 24 hours because of a cyberattack, a hospital spokesperson confirmed to CNN on Wednesday in the latest example of a hacking incident complicating health care in the US.The cyberattack took place on Monday and has forced nurses and doctors at Idaho Falls Community Hospital, an 88-bed hospital in the east of the state, to use pen and paper rather than computers for patient charts, hospital spokesperson Brian Ziel told CNN.
SecurityWeek
1 year ago
Privacy professionals

Capita Says Ransomware Attack Will Cost It Up to $25 Million

UK-based business process outsourcing and professional services company Capita said on Wednesday that it expects to incur costs ranging between roughly £15 million ($19 million) and £20 million ($25 million) as a result of the recent cybersecurity incident, but it has not clarified whether that includes a ransom payment to the hackers.
SecurityWeek
1 year ago
Privacy professionals

14 Million Records Stolen in Data Breach at Latitude Financial Services

Australian financial services company Latitude Financial Services now says that roughly 14 million records were stolen in a cyberattack earlier this month.The incident was disclosed in mid-March, when the company started notifying roughly 300,000 customers of a data breach impacting their personal information.
SecurityWeek
1 year ago
Privacy professionals

Dole Says Employee Information Compromised in Ransomware Attack

Produce giant Dole admitted in a document submitted on Wednesday to the US Securities and Exchange Commission (SEC) that the recent ransomware attack resulted in unauthorized access to employee information.The Ireland-based company said in February that it was forced to shut down some plants due to the cyberattack, but still claimed that impact on its operations was limited.
SecurityWeek
1 year ago
Information security

Ransomware Gang Publishes Data Allegedly Stolen From Maritime Firm Royal Dirkzwager

Founded in 1872, the company provides ship management services to hundreds of organizations in the maritime industry, including monitoring of incoming and outgoing vessel traffic in ports, emergency response services, and more.Royal Dirkzwager fell victim to the cyberattack on March 6, being forced to take systems offline and suspend several services.
morecyberattack
organizations
Chicago Tribune
11 months ago
Chicago

State of Illinois victim of global ransomware attack

The state of Illinois was among the victims of a global ransomware attack late last month that is believed to have exploited a vulnerability in a popular file transfer program, the state's information technology agency announced Friday.The FBI and the federal Cybersecurity and Infrastructure Security Agency have attributed the attack, which hit Illinois state government May 31, to a ransomware gang called CL0P, which exploited the popular MOVEit Transfer file-sharing software.
SecurityWeek
1 year ago
Information security

New Babuk-Based Ransomware Targeting Organizations in US, Korea

An emerging threat actor has been targeting organizations in the US and South Korea with a new ransomware family based on leaked Babuk source code, Cisco's Talos research unit reports.Dubbed RA Group and active since April 2023, the gang has compromised at least three organizations in the US and one in South Korea, spanning across the insurance, manufacturing, pharmaceuticals, and wealth management sectors.
www.cnn.com
1 year ago
US politics

Ransomware attack on City of Dallas knocks police website offline

The City of Dallas is dealing with a ransomware attack that took the Dallas Police Department website offline but so far appears to have limited impact on city services for residents, the city said in a statement on Wednesday.City officials have confirmed that a number of servers have been compromised with ransomware, impacting several functional areas, including the police department's website, the statement said.
SecurityWeek
1 year ago
Privacy professionals

Ring Denies Falling Victim to Ransomware Attack

In response to a cybercrime group's claims, home security firm Ring says it has no evidence that it has fallen victim to a ransomware attack.Founded in 2013 and acquired by Amazon in 2018, Ring started with a smart doorbell and later expanded its portfolio with an alarm system and other smart home security products.
moreorganizations
years
www.theguardian.com
1 year ago
UK politics

Royal Mail boss to step down after bitter dispute with unions

The chief executive of Royal Mail is stepping down after only two years following an acrimonious tussle with unions.Simon Thompson, who took the top job in early 2021, will stay on until the end of October as the postal firm seeks its fourth boss in four years.Royal Mail's parent company, International Distributions Services, said it was in the advanced stages of appointing a new chief.
ComputerWeekly.com
1 year ago
Privacy professionals

Black Basta ransomware attack to cost Capita over 15m | Computer Weekly

UK outsourcer and public sector specialist Capita expects to incur "exceptional costs" in the region of £15m to £20m as a result of the March 2023 Black Basta ransomware attack on its systems, which saw clients left unable to provide vital public services for days, and has resulted in a major breach of customer data, including information held by pensions providers.
Theregister
1 year ago
Privacy professionals

T-Mobile suffers second data theft in less than six months

in brief We'd say you'll never guess which telco admitted to a security breakdown last week, but you totally will: T-Mobile US, and for the second time (so far) this year.For those counting, this also makes the seventh incident in five years at the cellular provider - though this one is small compared to the 37 million subscribers whose data leaked in January.
Theregister
1 year ago
Medicine

Cancer patient sues hospital over stolen naked photos

A cancer patient whose nude treatment photos and medical records were posted online after they were stolen in a ransomware attack, has sued the health-care provider for allowing a "preventable" and "seriously damaging" invident.The proposed class-action lawsuit stems from a February intrusion during which ransomware gang BlackCat (also known as ALPHV) broke into one of the Lehigh Valley Health Network (LVHN) physician's networks, stole images of patients undergoing radiation oncology treatment along with other sensitive health records belonging to more than 75,000 people, and then demanded a ransom payment to decrypt the files and prevent it from posting the health data online.
moreyears
investigation
SecurityWeek
1 year ago
Privacy professionals

1 Million Impacted by Data Breach at NextGen Healthcare

Healthcare solutions provider NextGen Healthcare has started informing roughly one million individuals that their personal information was compromised in a data breach.Headquartered in Atlanta, Georgia, the company makes and sells electronic health records software and provides doctors and medical professionals with practice management services.
SecurityWeek
1 year ago
Privacy professionals

$1.1M Paid to Resolve Ransomware Attack on California County

A $1.1 million payment was made to resolve a ransomware attack on a California county's law enforcement computer network, Southern California News Group reported.The San Bernardino County Sheriff's Department announced in April that a "network disruption" was being investigated by information technology staff and forensic specialists, and that the FBI and Department of Homeland Security were notified.
Theregister
1 year ago
Privacy professionals

City of Dallas hit by Royal ransomware infection

The city of Dallas, Texas, is working to restore city services following a ransomware attack that crippled its IT systems.On May 3 Dallas' Information and Technology Services (ITS) said around than 200 of the US city's thousands of devices appear to be affected by the infection.ITS said it is focused on fixing compromised devices related to public safety prior to addressing hardware in other departments.
www.mercurynews.com
1 year ago
Privacy professionals

Ransomware fallout: Could lawsuits break Oakland's silence?

OAKLAND Numerous city workers received alerts this month confirming the worst: strangers were attempting to open lines of credit on their accounts, using social security numbers hacked from the city during a ransomware attack that began Feb 8. It's a nightmare no one would want to experience, but Oakland's union leaders are just as concerned about the messages they say workers aren't getting from city leaders who have yet to offer a pathway out of the ongoing mess.
SecurityWeek
1 year ago
Information security

Ferrari Says Ransomware Attack Exposed Customer Data

Italian sports car maker Ferrari said on Monday that a threat actor had demanded a ransom related to customer contact details that may have been exposed in a ransomware attack."Upon receipt of the ransom demand, we immediately started an investigation in collaboration with a leading global third-party cybersecurity firm," the iconic car maker said.
moreinvestigation
Privacy professionals
ITPro
1 week ago
Privacy professionals

Ransomware group publishes stolen NHS Scotland data to dark web

Ransomware attack on NHS Dumfries and Galloway led to leak of 3TB of sensitive data onto dark web. [ more ]
Theregister
4 weeks ago
Privacy professionals

185K people's data stolen in Cherry Health ransomware raid

Ransomware attack on US healthcare organization compromised sensitive data of nearly 185,000 individuals. [ more ]
Nextgov.com
1 month ago
Privacy professionals

Ransomware payment debate resurfaces amid Change Healthcare incident

Ransomware attack impact on healthcare sector
Debate on banning ransom payments [ more ]
BleepingComputer
2 months ago
Privacy professionals

Stanford: Data of 27,000 people stolen in September ransomware attack

27,000 individuals' personal information stolen in SUDPS ransomware attack.
Attackers accessed only SUDPS network but collected sensitive PII like SSNs, biometric data, financial details. [ more ]
BleepingComputer
2 months ago
Privacy professionals

Equilend warns employees their data was stolen by ransomware gang

EquiLend Holdings confirmed data breach due to ransomware attack
Personal information of employees stolen, but no evidence of fraudulent activity found yet [ more ]
Theregister
2 months ago
Privacy professionals

UK council hit by 'cyber' attack yanks IT systems offline

Leicester City Council facing IT system outage due to cyber incident
Speculation on ransomware involvement in the attack [ more ]
morePrivacy professionals
Information security
Hot for Security
6 days ago
Information security

Boeing refused to pay $200 million ransomware demand from LockBit gang

Boeing confirmed $200M ransom demand from LockBit group. Hackers failed to retrieve astronomical ransom, published data after negotiations broke down. [ more ]
ITPro
1 week ago
Information security

April rundown: Ransomware revenants and 'open source' AI

April highlighted AWS legal issues, a ransomware attack on Change Healthcare, and advancements in AI like Llama 3. [ more ]
CyberScoop
2 weeks ago
Information security

Data stolen in Change Healthcare attack likely included U.S. service members, executive says

UnitedHealth Group CEO revealed data breach involving U.S. military personnel.
Delay in notifying affected individuals poses challenges for health data protection. [ more ]
The Verge
2 weeks ago
Information security

UnitedHealth CEO admits it paid $22 million ransom to BlackCat

CEO Andrew Witty confirmed paying a $22 million ransom to hackers for data breach, facing criticism and calls for better cybersecurity measures. [ more ]
Ars Technica
2 weeks ago
Information security

Change Healthcare hacked through stolen password for account with no MFA

Cyberattack on Change Healthcare due to lack of multifactor authentication led to prescription market disruption. [ more ]
BleepingComputer
4 months ago
Information security

The biggest cybersecurity and cyberattack stories of 2023

23andMe experienced a major data breach due to credential stuffing attacks
Two Danish hosting providers were forced to shut down after a ransomware attack [ more ]
moreInformation security
Iapp
3 weeks ago
Data science

UN agency suffers ransomware attack

UN Development Programme data stolen in ransomware attack. [ more ]
Theregister
1 month ago
EU data protection

UK council eerily cagey about 'cyber incident' details

The Leicester City Council is battling a suspected ransomware attack without confirming key details.
Experts suggest ransomware is involved, but the council has not confirmed it. [ more ]
Theregister
3 months ago
EU data protection

EquiLend back in action as ransom payment rumors swirl

EquiLend's systems are back online after a ransomware attack.
EquiLend's Next Generation Trading platform transacts $113.5 billion every day. [ more ]
ComputerWeekly.com
4 months ago
EU data protection

British Library ransomware attack could cost up to 7m | Computer Weekly

The cost of rebuilding the British Library's systems following the ransomware attack is estimated to be between £6m and £7m.
The attack caused widespread operational disruption and resulted in the theft of personal information of readers and visitors. [ more ]
WIRED
2 months ago
Privacy professionals

Security News This Week: Russian Hackers Stole Microsoft Source Code-and the Attack Isn't Over

Registered Agents Inc. allegedly used fake personas to register thousands of companies.
State attorneys general demand Meta to address complaints over hacked accounts and improve customer service. [ more ]
Theregister
2 months ago
Privacy professionals

Play ransomware group stole 65,000 Swiss government files

Sensitive information from Swiss government stolen by ransomware gang.
Cyber attack targeted software biz Xplain, affecting multiple government agencies. [ more ]
www.npr.org
2 months ago
Privacy professionals

Health care company ties Russian-linked cybercriminals to prescriptions breach

Ransomware attack disrupts health care payment systems
UnitedHealth Group accuses BlackCat or AlphV gang of hacking [ more ]
TechCrunch
2 months ago
Public health

UnitedHealth confirms ransomware gang behind Change Healthcare hack amid ongoing pharmacy outages | TechCrunch

UnitedHealth Group subsidiary Change Healthcare faces ransomware attack
ALPHV/BlackCat claims responsibility for the cyberattack [ more ]
Databreaches
3 months ago
Public health

Tilbury District Family Health Team confirms patient data impacted by October ransomware attack

Tilbury District Family Health Team (TDFHT) confirms that patient health information was impacted by a ransomware attack on five southwestern Ontario hospitals.
The attack targeted TransForm Shared Service Organization, which runs technology systems at all five hospitals and TDFHT.
TDFHT determined that its electronic medical record was not compromised, but data stored on a shared drive was stolen. [ more ]
Cbsnews
5 months ago
Public health

Ransomware attack on health care chain impacts hospitals across U.S.

A national health care chain that operates 30 hospitals across six states has experienced a ransomware attack.
Ardent Health Services took its network offline as a protective measure.
Patients and facilities have been affected by the attack. [ more ]
www.theguardian.com
5 months ago
Public health

Cyber-attack closes hospital emergency rooms in three US states

A cyber-attack has shut down emergency rooms in at least three states, leading to patient diversion and rescheduling of procedures.
The hospital operator, Ardent Health, reported being targeted by a ransomware attack that affected computer programs tracking patients' healthcare records.
Ransomware attacks on healthcare providers are increasingly common, with at least 35 reported in the US this year. [ more ]
Databreaches
2 months ago
Privacy professionals

Pharmaceutical giant Cencora reports cyberattack

Data breach at Cencora reported
Connection between previous ransomware attack and recent incident unclear [ more ]
BleepingComputer
2 months ago
Privacy professionals

Insomniac Games alerts employees hit by ransomware data breach

Insomniac Games notified employees of data breach due to a Rhysida ransomware attack.
Sony's Insomniac Games suffered a data breach affecting personal information and game details. [ more ]
www.cbc.ca
2 months ago
Privacy professionals

4 months after a crippling cyberattack, the Toronto library has almost recovered | CBC News

Ransomware attack at Toronto Public Library caused significant disruptions, including a million books stranded and computers down.
Library staff working tirelessly to return books, manage backlog, and restore services after cyberattack. [ more ]
Databreaches
3 months ago
Privacy technologies

20+ hospitals in Romania hit hard by ransomware attack on IT service provider

Over 20 hospitals in Bucharest have been hit by a ransomware attack, impacting their computer systems.
The attackers used the Backmydata ransomware to encrypt hospital data. [ more ]
Databreaches
4 months ago
Privacy technologies

Ransomware wrecks Paraguay's largest telco

Tigo, the largest mobile operator and internet service provider in Paraguay, suffered a ransomware attack on January 4th.
Around 300 servers in Tigo's data center were encrypted, impacting at least 300 companies who lost phone service and files hosted on Tigo servers. [ more ]
Databreaches
4 months ago
Privacy technologies

The State of Ransomware in the U.S.: Report and Statistics 2023

Ransomware attacks in 2023 impacted 2,207 U.S. hospitals, schools, and governments
Emsisoft believes the solution to the ransomware crisis is to ban the payment of ransoms [ more ]
Databreaches
4 months ago
Privacy technologies

A Lump of Coal: Users Report Getting DMCA Notices After Downloading Leaked Wolverine Build

Bobby Anhalt reports:
Users who downloaded the Marvel's Wolverine leaked play build reportedly received DMCAs from their internet service providers.
Databreaches
5 months ago
Privacy technologies

Newfound school district still working to recover data after cyber attack

Newfound Area School District is recovering from a ransomware attack that locked users out but did not include a financial demand.
Printing functions will be restored by Dec. 15, but the timeline for restoring financial data is uncertain. [ more ]
Sacramento Bee
3 months ago
Privacy professionals

Data breach at California state worker union targeted social security numbers, home addresses

California's largest state employee union experienced a ransomware attack that likely exposed sensitive information.
The hackers responsible for the attack stole 308 gigabytes of data including Social Security numbers, addresses, and birth dates. [ more ]
Databreaches
3 months ago
Digital life

Tx: BISD phone system now back online with new vendor following ransomware attack

The Beaumont ISD phone system is back online with a new vendor following a ransomware attack.
The district has changed phone vendors. [ more ]
ComputerWeekly.com
3 months ago
Privacy professionals

Blackbaud blasted for failing to prevent customer breaches | Computer Weekly

Blackbaud, the US-based supplier of cloud software, has been criticized by authorities over major cybersecurity failings following a ransomware attack in 2020.
The attack impacted the data of multiple UK universities and non-profit organizations, including the Labour Party donors' data.
The US Federal Trade Commission (FTC) stated that Blackbaud failed to implement proper safeguards and deceived its customers. [ more ]
Engadget
3 months ago
Privacy professionals

LoanDepot discloses that hackers breached personal data of 16 million customers

Hackers stole data from over 16 million LoanDepot customers in a recent ransomware attack.
LoanDepot has taken some IT systems offline but is slowly recovering. [ more ]
TechCrunch
3 months ago
Privacy professionals

Vans, Supreme owner VF Corp says hackers stole 35 million customers' personal data | TechCrunch

VF Corp. reported a data breach that resulted in the theft of personal data from 35.5 million customers.
The company does not retain sensitive information such as Social Security numbers or payment card information for its consumer businesses. [ more ]
Theregister
4 months ago
Privacy professionals

Fidelity National says 1.3M customers' data stolen last year

Criminals gained unauthorized access to Fidelity National Financial's network and stole data belonging to 1.3 million customers
The company has not confirmed if the incident was a ransomware attack [ more ]
Theregister
4 months ago
Privacy professionals

Ransomware payment ban: Wrong idea at the wrong time

Banning ransomware payments may not effectively reduce attacks.
Excluding critical infrastructure from the ban is essential to prevent harm or loss of life. [ more ]
BleepingComputer
4 months ago
Privacy professionals

The biggest cybersecurity and cyberattack stories of 2023

23andMe experienced a major data breach due to credential stuffing attacks
Two Danish hosting providers were forced to shut down after a ransomware attack [ more ]
BleepingComputer
4 months ago
Privacy professionals

The biggest cybersecurity and cyberattack stories of 2023

23andMe experienced a major data breach due to credential stuffing attacks
Two Danish hosting providers were forced to shut down after a ransomware attack [ more ]
Theregister
4 months ago
Privacy professionals

Ban on ransomware payments? The alternative isn't working

Emsisoft calls for a ban on ransom payments
Record-breaking year of ransomware attacks in the US [ more ]
Theregister
4 months ago
Privacy professionals

Cyberattackers breach trove of Victoria court recordings

The court system in Victoria, Australia, experienced a suspected ransomware attack, potentially compromising audiovisual recordings of court hearings.
The attack began on December 8 and may have allowed attackers to access recordings between November 1 and December 21, with a small number of recordings prior to this also potentially compromised. [ more ]
TechCrunch
5 months ago
Privacy professionals

US healthcare giant Norton says hackers stole millions of patients' data during ransomware attack | TechCrunch

Hackers accessed personal data of millions of patients and employees during a ransomware attack on Norton Healthcare.
Sensitive data of approximately 2.5 million patients and employees was accessed, including names, Social Security numbers, and health information. [ more ]
TechCrunch
5 months ago
Privacy professionals

US healthcare giant Norton says hackers stole millions of patients' data during ransomware attack | TechCrunch

Hackers accessed personal data of millions of patients and employees during a ransomware attack on Norton Healthcare.
Sensitive data of approximately 2.5 million patients and employees was accessed, including names, Social Security numbers, and health information. [ more ]
www.theguardian.com
5 months ago
Privacy professionals

UK at high risk of catastrophic ransomware attack', report says

The UK government is at high risk of a catastrophic ransomware attack due to poor planning and lack of investment.
The National Cyber Security Centre warns that the country could face a crippling cyber-attack on its critical national infrastructure (CNI) at any moment. [ more ]
BleepingComputer
5 months ago
Privacy professionals

Norton Healthcare discloses data breach after May ransomware attack

Kentucky health system Norton Healthcare experienced a ransomware attack in May, exposing personal information of patients, employees, and dependents.
The attack did not compromise Norton Healthcare's medical record system or Norton MyChart, but sensitive information such as names, contact details, Social Security Numbers, and health information was accessed. [ more ]
BleepingComputer
5 months ago
Privacy professionals

Norton Healthcare discloses data breach after May ransomware attack

Kentucky health system Norton Healthcare experienced a ransomware attack in May, exposing personal information of patients, employees, and dependents.
The attack did not compromise Norton Healthcare's medical record system or Norton MyChart, but sensitive information such as names, contact details, Social Security Numbers, and health information was accessed. [ more ]
Theregister
5 months ago
Privacy professionals

2.5m people's data lost in Norton hospital ransomware hit

Norton Healthcare experienced a ransomware attack in May, potentially impacting 2.5 million individuals.
Sensitive data such as names, contact information, Social Security Numbers, and financial account information may have been stolen. [ more ]
TechCrunch
5 months ago
Information security

US healthcare giant Norton says hackers stole millions of patients' data during ransomware attack | TechCrunch

Hackers accessed personal data of millions of patients and employees during a ransomware attack on Norton Healthcare.
Sensitive data of approximately 2.5 million patients and employees was accessed, including names, Social Security numbers, and health information. [ more ]
BleepingComputer
5 months ago
Information security

Norton Healthcare discloses data breach after May ransomware attack

Kentucky health system Norton Healthcare experienced a ransomware attack in May, exposing personal information of patients, employees, and dependents.
The attack did not compromise Norton Healthcare's medical record system or Norton MyChart, but sensitive information such as names, contact details, Social Security Numbers, and health information was accessed. [ more ]
Databreaches
5 months ago
Privacy professionals

If you're in Rock County, Wisconsin, do NOT read this post. Absolutely do not read this post.

The IT Director and Corporation Counsel of Rock County, Wisconsin are withholding information about a September ransomware attack from the public.
The county is required to notify affected individuals and the U.S. Department of Health and Human Services (HHS) within 60 days of discovering the breach. [ more ]
Databreaches
5 months ago
Privacy professionals

Proliance Surgeons notifying 437,392 patients after ransomware attack earlier this year

Proliance Surgeons experienced a ransomware attack, resulting in the breach of personal information of 437,392 patients.
The breach occurred on an unknown date, but the unauthorized access to additional files was discovered on May 24, 2023. [ more ]
ComputerWeekly.com
5 months ago
Privacy professionals

Scope of British Library data breach widens | Computer Weekly

User data was exfiltrated and leaked in the ransomware attack on the British Library.
The extent of the data breach appears to be worse than initially thought.
The library will be contacting users to advise them on steps they may need to take. [ more ]
ComputerWeekly.com
5 months ago
Privacy professionals

Scope of British Library data breach widens | Computer Weekly

User data was exfiltrated and leaked in the ransomware attack on the British Library.
The extent of the data breach appears to be worse than initially thought.
The library will be contacting users to advise them on steps they may need to take. [ more ]
ComputerWeekly.com
5 months ago
Information security

Scope of British Library data breach widens | Computer Weekly

User data was exfiltrated and leaked in the ransomware attack on the British Library.
The extent of the data breach appears to be worse than initially thought.
The library will be contacting users to advise them on steps they may need to take. [ more ]
Databreaches
5 months ago
Privacy professionals

Mission Community Hospital issues notification for May 1 ransomware attack

Deanco Healthcare LLC, also known as Mission Community Hospital, has issued a breach notification about a ransomware attack it discovered in early May.
The unauthorized party accessed files containing patient information, including addresses, dates of birth, Social Security numbers, and financial account information.
The hospital did not detect the ransomware attackers in their network until it was too late. [ more ]
Theregister
5 months ago
London

London & Zurich ransomware attack causes customer chaos

A ransomware attack on London & Zurich has caused outages, leaving customers unable to process direct debit payments.
One customer had to take out a short-term loan due to cash flow issues caused by the attack.
Communication from London & Zurich has been infrequent and unclear, leaving customers confused. [ more ]
SecurityWeek
5 months ago
Privacy professionals

Kansas Officials Blame 5-Week Disruption of Court System on 'Sophisticated Foreign Cyberattack'

Cybercriminals hacked into the Kansas court system and stole sensitive data in a ransomware attack.
Access to court records has been hobbled for over five weeks due to the attack.
The stolen information includes district court case records on appeal and potentially confidential data. [ more ]
ComputerWeekly.com
6 months ago
Privacy professionals

British Library's Halloween cyber scare was ransomware | Computer Weekly

The British Library has confirmed that it was hit by a ransomware attack at the end of October
The outage is still ongoing and is affecting its website, online systems, and services [ more ]
www.cbc.ca
6 months ago
Privacy professionals

Personal info, including staff social security numbers, stolen in Toronto library cyberattack | CBC News

Personal information of Toronto Public Library employees was stolen in a ransomware attack.
Data of both current and former employees dating back to 1998 was stolen, including government-issued identification documents. [ more ]
www.cbc.ca
6 months ago
Privacy professionals

Personal info, including staff social security numbers, stolen in Toronto library cyberattack | CBC News

Personal information of Toronto Public Library employees was stolen in a ransomware attack.
Data of both current and former employees dating back to 1998 was stolen, including government-issued identification documents. [ more ]
BKReader
6 months ago
Privacy professionals

NY Attorney General Finds US Radiology Specialists Failed to Protect Patient Data

New York Attorney General secures $450,000 settlement from US Radiology for data breach
US Radiology failed to upgrade its hardware, leading to a ransomware attack on its network [ more ]
Harvard Business Review
11 months ago
Business

Where to Focus Your Company's Limited Cybersecurity Budget

Recent research indicates that organizations with 10,000 or more employees typically maintain almost 100 security tools.And yet, well-established global companies continue to be victimized by cyber attacks.For example, payments-processor NCR recently experienced a ransomware attack that caused downstream outages across numerous restaurant back-office and point-of-sale systems.
SecurityWeek
1 year ago
Privacy professionals

WordPress Plugin Vulnerability Exposed Ferrari Website to Hackers

A vulnerability discovered in the official website of luxury sports car maker Ferrari could have exposed potentially sensitive information, according to a cybersecurity firm.The issue was discovered in March by researchers at Char49, a company that provides penetration testing, auditing and training services.
www.theguardian.com
1 year ago
UK politics

Royal Mail chief expected to step down within weeks

Royal Mail boss Simon Thompson is expected to step down within weeks, after a turbulent two-year stint at the helm.The chief executive has been accused by unions of inflaming the bitter industrial dispute, and his credibility was put in question after a Commons select committee appearance.According to Sky News, his exit could be announced as early as this week, with some members of the board of International Distributions Services (IDS), the parent of Royal Mail, having concluded that new leadership is needed.
www.cnn.com
1 year ago
US politics

US Marshals Service still recovering from February ransomware attack affecting system used by fugitive hunters

The US Marshals Service is still recovering from a February ransomware attack on a computer system holding sensitive law enforcement data and will soon bring a new version of the system online with better security, an agency spokesperson told CNN on Monday.Most critical tools related to the affected computer network were restored within 30 days of the breach discovery in February, US Marshals Service spokesperson Drew Wade told CNN in an email, declining to explain what those critical tools were.
www.theguardian.com
1 year ago
Privacy professionals

Australian law firm HWL Ebsworth hit by Russian-linked ransomware attack

The Australian commercial law firm HWL Ebsworth has fallen victim to a ransomware attack, with Russian-linked hackers claiming to have obtained client information and employee data.Late last week, the ALPHV/Blackcat ransomware group posted on its website that 4TB of company data had been hacked, including employee CVs, IDs, financial reports, accounting data, client documentation, credit card information, and a complete network map.
www.fastcompany.com
1 year ago
Privacy professionals

Security analysts may balk at Microsoft's latest copilot.' Here's why.

The new offering follows Microsoft's general strategy of bringing an AI natural language assistant to its main user interfaces.But security may be a dangerous place to deploy AI technology that hallucinates.The Security Copilot is powered by OpenAI's GPT-4 large language model and Microsoft's own security-focused model, which contains its proprietary knowledge about security threats.
SecurityWeek
1 year ago
Information security

Ransomware Will Likely Target OT Systems in EU Transport Sector: ENISA

Ransomware has become the top threat to the transport sector in the EU, and the European Union Agency for Cybersecurity (ENISA) expects ransomware groups to disrupt operational technology (OT) systems.The overall number of cyberattacks targeting aviation, maritime, railway and road transport organizations has increased between January 2021 and October 2022, with cybercriminals responsible for most of the incidents (54%), according to a new report from ENISA.
SecurityWeek
1 year ago
Privacy professionals

Latitude Financial Services Data Breach Impacts 300,000 Customers

Australian financial services company Latitude Financial Services is notifying roughly 300,000 customers that their personal information might have been compromised in a data breach.A subsidiary of Deutsche Bank and KKE operating since 2015 and headquartered in Melbourne, Latitude is the largest non-bank lender of consumer credit in Australia, also offering services in New Zealand, under the brand Gem Finance.
SecurityWeek
1 year ago
Privacy professionals

Data Breach at Independent Living Systems Impacts 4 Million Individuals

Florida-based health services company Independent Living Systems (ILS) has started sending out notification letters to more than 4 million individuals to inform them of a data breach impacting their personal and medical information.Founded in 2001, ILS has 10 offices across the US and provides managed care organizations and providers with clinical and third-party administrative services.
ComputerWeekly.com
1 year ago
Privacy professionals

Rubrik customer, partner data exposed in possible Clop attack | Computer Weekly

Rubrik, a supplier of cloud data management and security services, has disclosed a data breach, possibly attributable to the Clop (aka Cl0p) ransomware operation, arising through a previously reported zero-day in a third-party supplier's managed file transfer (MFT) software.The issue, found in Fortra's GoAnywhere MFT product, was first communicated to Rubrik in February of 2023.
ComputerWeekly.com
1 year ago
Privacy professionals

Royal Mail ransomware attack result of putting profit before security | Computer Weekly

The January 2023 ransomware attack on Royal Mail has further exposed the parlous state of the company's infrastructure, all while it battles for survival in an ultra-competitive marketplace.Ever since the loss of its 350-year monopoly in 2006, the once imperious courier has been beset by strife, with reported losses of £1m a day and a restive workforce staging strikes in a long-running, bitter standoff with management.
ComputerWeekly.com
1 year ago
Privacy professionals

Chinese Silkloader cyber attack tool falls into Russian hands | Computer Weekly

Threat researchers at WithSecure have revealed intelligence on how cyber criminal gangs are sharing tools along the historic Silk Roads of Eurasia, after finding a tool known to have been developed by Chinese cyber criminals being taken up enthusiastically among Russian-speaking ransomware operators.
DevOps.com
1 year ago
Information security

ReversingLabs Adds Ability to Detect Secrets in Application Binaries

By: Mike Vizard on
ReversingLabs today announced it added an ability to detect secrets exposed in application binaries to its Software Supply Chain Security (SSCS) platform.Tomislav Peričin, chief software architect for ReversingLabs, said this addition will make it easier for DevSecOps teams to identify secrets that are inadvertently left in applications as plain text or that can be discovered because of weak cryptography, scripts that have been included in directories that have secrets configuration files, packaging automation mistakes, compromised developer accounts or the activities of malicious insiders.
[ Load more ]