Affirm says cardholders impacted by Evolve Bank data breach

July 2, 2024 at 12:03PM Affirm, a fintech company, disclosed a data breach at its third-party issuer, Evolve Bank & Trust, affecting personal information of its cardholders. Evolve, a financial services provider, faces an investigation after a cybercriminal organization illegally obtained and released data. Affirm, Wise, and Bilt are among the fintech firms potentially impacted, … Read more

Amtrak Says Guest Rewards Accounts Hacked in Credential Stuffing Attacks

June 19, 2024 at 09:33AM Amtrak notifies customers of a hacking incident involving username and password combinations obtained from other data breaches. Threat actors accessed accounts, changing email addresses and accessing personal and financial information. Amtrak urges affected individuals to reset passwords, review account statements, and consider placing fraud alerts on credit files. The company … Read more

Insurance giant Globe Life investigating web portal breach

June 14, 2024 at 08:39AM Globe Life, a financial services company, confirms potential unauthorized access to consumer and policyholder data via a breached web portal. The incident, discovered on June 13, prompted immediate portal closure. The company assures no significant operational impact, initiating incident response and hiring security experts for remediation and impact assessment. Ongoing … Read more

Collection agency FBCS ups data breach tally to 3.2 million people

June 4, 2024 at 11:44AM Debt collection agency FBCS reports a data breach affecting over 3.2 million people, including compromised personal information like SSN, date of birth, and account details. Notice recipients will receive instructions for free credit monitoring and are advised to be wary of potential risks. FBCS assures stronger security measures moving forward. … Read more

2.8 Million Impacted by Data Breach at Prescription Services Firm Sav-Rx

May 28, 2024 at 07:03AM Pharmacy prescription services provider A&A Services, known as Sav-Rx, is notifying 2.8 million individuals of a cyberattack compromising personal information. Though patient care wasn’t disrupted, non-clinical system data was accessed, including names, addresses, email/phone numbers, and Social Security/insurance ID data. The company is not disclosing whether ransomware was used but … Read more

Student, Personnel Information Stolen in City of Helsinki Cyberattack

May 14, 2024 at 06:54AM The City of Helsinki announced a cyberattack compromising personal information of students and personnel. Initially affecting usernames and email addresses, it expanded to include IDs, addresses, and sensitive data like education and medical records. Over 80,000 individuals are likely affected. The breach exploited a known vulnerability, prompting measures to prevent … Read more

DocGo discloses cyberattack after hackers steal patient health data

May 7, 2024 at 06:26PM DocGo, a mobile medical care provider in the US and UK, confirmed a cyberattack resulting in stolen patient health data. They are working with cybersecurity experts to investigate and contain the breach and are reaching out to affected individuals. While no financial impact is expected, there are concerns of potential … Read more

FBI: Akira ransomware raked in $42 million from 250+ victims

April 18, 2024 at 02:18PM The Akira ransomware has targeted 250+ organizations and amassed $42 million in ransom payments. It gained notoriety in March 2023, deploying a Linux encryptor for VMware ESXi virtual machines. Ransoms ranged from $200,000 to millions. The FBI, CISA, Europol, and NCSC-NL issued guidance to mitigate the attacks’ impact and risk. … Read more

Here’s something else AI can do: expose bad infosec to give cyber-crims a toehold in your organization

March 7, 2024 at 01:35AM Group-IB’s annual High Tech Crime Trends report revealed 225,000 stolen ChatGPT stealer logs were found for sale on the dark web between January and October 2023, with a 36% increase in the number of logs from June to October. This poses significant security risks for businesses, as compromised logins expose … Read more

AnyDesk says hackers breached its production servers, resets passwords

February 2, 2024 at 05:21PM Remote access solution AnyDesk suffered a cyberattack leading to data theft from its production systems. The company, with 170,000 clients including 7-Eleven and Samsung, reassures the safety of the software and has initiated security measures after revoking certificates. It urges users to update to version 8.0.8 and change passwords due … Read more