MarineMax Notifying 123,000 of Data Breach Following Ransomware Attack

July 18, 2024 at 09:03AM MarineMax, a boat dealer, disclosed a data breach impacting over 123,000 individuals due to a ransomware attack. The attackers, known as the Rhysida ransomware group, allegedly obtained financial documents and personal information. The affected individuals will receive free credit monitoring and identity restoration services for two years. The ransomware group … Read more

Over 400,000 Life360 user phone numbers leaked via unsecured API

July 17, 2024 at 12:34PM A threat actor leaked personal data of over 440,000 Life360 customers by exploiting a flaw in the login API. The breach also impacted Trello accounts, and Life360 disclosed an extortion attempt linked to a separate Tile customer support platform breach. The exposed information includes names, addresses, email addresses, and phone … Read more

‘Gay furry hackers’ say they’ve disbanded after raiding Project 2025’s Heritage Foundation

July 11, 2024 at 08:25PM Hacktivist group SiegedSec claims to disband after leaking files from The Heritage Foundation. Amid disavowing crime, they vow to continue fighting for others’ rights. The leaked information related to Project 2025, a plan outlined by the think tank. The feud escalated, involving contentious messages from the foundation’s executive director, culminating … Read more

Ransomware Gang Leaks Data Allegedly Stolen from Florida Department of Health

July 9, 2024 at 09:33AM Ransomware group RansomHub leaked allegedly stolen Florida Department of Health data, including over 100GB of PII and PHI. Florida DOH missed a ransomware payment deadline due to state law. Potentially compromised data includes names, addresses, and health information. The cyber incident disrupted department services. RansomHub is a major ransomware group. … Read more

Shopify denies it was hacked, links stolen data to third-party app

July 7, 2024 at 11:29AM Shopify denies data breach following a threat actor’s sale of alleged customer data stolen from its network. The company attributes the data loss to a third-party app and expects the app developer to notify affected customers. The threat actor, ‘888,’ has a history of selling or leaking data from various … Read more

New Eldorado ransomware targets Windows, VMware ESXi VMs

July 5, 2024 at 11:57AM A new ransomware-as-a-service (RaaS) called Eldorado has emerged, targeting both Windows and Linux platforms. The ransomware aims to encrypt files and extort victims. Group-IB researchers have noted the malware’s capabilities and provided defense recommendations, including implementing multi-factor authentication, utilizing endpoint detection, taking regular backups, educating employees, and refraining from paying … Read more

Authenticator for X, TikTok Exposes Personal User Info for 18 Months

June 27, 2024 at 04:34PM Personal data and documents of users from popular apps have been exposed to cybercriminals by AU10TIX, a Tel Aviv-based identity verification company. The leaked data includes sensitive personal information such as names, birth dates, nationalities, and images of ID documents. AU10TIX initially claimed to have resolved the issue, but the … Read more

Leak Site BreachForums Springs Back to Life Weeks After FBI Takedown

May 29, 2024 at 05:41PM Following the shutdown of BreachForums by the FBI and the DOJ, the alleged reappearance of the site has raised suspicions among researchers. The revival includes attempts to sell purported personal data of 560 million customers. There are doubts regarding the legitimacy of the revival, with experts pointing to potential law … Read more

Hacker defaces spyware app’s site, dumps database and source code

May 24, 2024 at 06:35PM The pcTattletale spyware website was hacked, and databases and source code data were leaked, exposing a serious security flaw. Despite attempts to contact the developers, the vulnerability remains unresolved. A security researcher discovered the flaw and exposed it, prompting a hacker to deface the website and leak data. Meanwhile, the … Read more

UK data watchdog wants six figures from N Ireland cops after 2023 data leak

May 23, 2024 at 04:35AM The UK’s data protection watchdog plans to fine the Police Service of Northern Ireland £750,000 over a data breach exposing officers’ information. The breach impacted 9,483 officers and resulted from an accidental release of data. The Information Commissioner’s Office emphasizes the breach’s severe impact and intends to fine the PSNI … Read more