Israeli Man Who Made $5M From Hacking Scheme Sentenced to Prison in US

November 17, 2023 at 08:09AM Israeli private investigator Aviram Azari has been sentenced to 80 months in prison in the US for hacking companies and individuals, earning him nearly $5 million. Azari owned an Israeli intelligence firm, Aviram Hawk or Aviram Netz, and hired hacking groups to access online accounts and steal information. Targets included … Read more

CitrixBleed Vulnerability Exploitation Suspected in Toyota Ransomware Attack

November 17, 2023 at 06:33AM Toyota Financial Services Europe & Africa confirmed being targeted in a cyberattack by the ransomware group Medusa. Unauthorized activity was detected in a limited number of locations and systems were taken offline. The group is threatening to distribute stolen data unless an $8 million ransom is paid. The attack may … Read more

Samsung UK discloses year-long breach, leaked customer data

November 17, 2023 at 01:01AM Samsung Electronics UK has reportedly suffered a data breach affecting customers who made purchases between July 2019 and June 2020. The breach, which was discovered on November 13, exposed information including names, phone numbers, addresses, and email addresses. This incident marks the third data breach for Samsung in the past … Read more

Ransomware Group Files SEC Complaint Over Victim’s Failure to Disclose Data Breach

November 16, 2023 at 07:33AM The ransomware group Alphv and BlackCat has allegedly breached the systems of MeridianLink, a California-based company, and claims to have stolen customer data and operational information. They have filed a complaint with the US Securities and Exchange Commission (SEC) accusing MeridianLink of failing to disclose the breach within the required … Read more

Clorox CISO flushes self after multi-million-dollar cyberattack

November 15, 2023 at 07:46PM The chief security officer of Clorox, Amy Bogac, has left her position following a corporate network breach that cost the company hundreds of millions of dollars. In separate news, ransomware group AlphV has claimed to have breached digital lending firm MeridianLink and filed a complaint against the company with the … Read more

PJ&A says cyberattack exposed data of nearly 9 million patients

November 15, 2023 at 11:17AM PJ&A, a medical transcription service provider, experienced a cyberattack in March 2023 that exposed the personal information of approximately 9 million patients. The breach included sensitive data such as full names, dates of birth, medical records, social security numbers, and more. PJ&A began notifying affected individuals on October 31, 2023. … Read more

Pharmacy provider Truepill data breach hits 2.3 million customers

November 14, 2023 at 12:40PM Truepill, a B2B pharmacy platform, has notified individuals of a data breach in which threat actors accessed sensitive personal information. The breach affects 2,364,359 people and includes data such as full names, medication types, demographic information, and names of prescribing physicians. Social Security numbers were not exposed. Multiple class action … Read more

Royal Ransom Demands Exceed $275M, Rebrand in Offing

November 14, 2023 at 10:56AM The Royal ransomware gang is potentially preparing for a rebrand or spinoff, as their ransom demands have already exceeded $275 million. The group has targeted over 350 victims worldwide, demanding between $1 million and $12 million in ransom. They primarily gain access through phishing emails and employ partial encryption and … Read more

The Importance of Continuous Security Monitoring for a Robust Cybersecurity Strategy

November 14, 2023 at 07:33AM The global average cost of a data breach in 2023 was $4.45 million, leading organizations to realize that traditional cybersecurity measures may not be enough. Continuous monitoring, which involves actively searching for vulnerabilities and threats, is seen as a key strategy. For web applications, a pen testing as a service … Read more

Against the Clock: Cyber Incident Response Plan

November 13, 2023 at 09:03PM The article emphasizes the importance of having a well-defined incident response process in place for cybersecurity breaches. It presents a fictional scenario of a metal fabrication company experiencing a cyberattack and outlines the steps involved in identifying, containing, and recovering from the attack. The role of technology, such as an … Read more