Infosys subsidiary named as source of Bank of America data leak

February 13, 2024 at 12:31AM Infosys’s US subsidiary, IMS, suffered a cyber security incident, resulting in a data breach. Personal data of 57,028 people, including Social Security Numbers, was exposed. The breached information includes names, addresses, birth dates, and other sensitive account details, potentially putting victims at risk of identity fraud. The alleged involvement of … Read more

Researchers link 3AM ransomware to Conti, Royal cybercrime gangs

January 20, 2024 at 10:16AM The 3AM ransomware operation is found to have connections with infamous groups like the Conti syndicate and the Royal ransomware gang. They are using new tactics such as sharing data leaks with victims’ social media followers and using bots to reply to high-ranking accounts on X. 3AM also tested a … Read more

Medusa Ransomware on the Rise: From Data Leaks to Multi-Extortion

January 12, 2024 at 09:18AM The emergence of Medusa ransomware, notorious for targeting various industries, has led to increased activity, including the launch of a data leak site. Victims are given options such as time extension or data deletion, each with a price tag. With a focus on multi-extortion and professional tactics, this highlights the … Read more

Yakult Australia confirms ‘cyber incident’ after 95 GB data leak

December 27, 2023 at 04:11AM Yakult Australia and New Zealand have confirmed a “cyber incident,” currently under investigation with cyber experts. The incident, detected in mid-December, has led to data leaks. A group named ‘DragonForce’ claims responsibility for the attack, leaking 95 GB of data, including company information and employee records. The offices remain operational … Read more

OpenAI rolls out imperfect fix for ChatGPT data leak flaw

December 21, 2023 at 11:49AM OpenAI has addressed a data exfiltration bug in ChatGPT that could leak conversation details. The latest fix includes client-side checks, but it’s not perfect and attackers may still exploit it under certain conditions. Safety checks are not yet implemented in the iOS app, leaving the risk unaddressed. The issue was … Read more

FBI disrupts Blackcat ransomware operation, creates decryption tool

December 19, 2023 at 09:19AM The FBI successfully breached the ALPHV ransomware operation, obtaining decryption keys and monitoring the activities. Over 500 victims received free decryption keys. The FBI has seized the data leak site and created a free decryption tool. Affiliates are now contacting victims directly, and the operation may rebrand due to law … Read more

Kraft Heinz investigates hack claims, says systems ‘operating normally’

December 14, 2023 at 06:35PM Kraft Heinz confirmed their systems are normal with no evidence of a breach listed by an extortion group. Kraft Heinz, a leading food and beverage company, is being threatened by the Snatch extortion group, but no proof of breach was provided. The company is investigating claims but sees no evidence … Read more

LockBit ransomware now poaching BlackCat, NoEscape affiliates

December 13, 2023 at 01:25PM LockBit ransomware operation is recruiting affiliates and developers from the recently disrupted BlackCat/ALPHV and NoEscape operations. NoEscape’s exit scam has raised concerns of lost ransom payments and decryption keys for victims, while BlackCat/ALPHV suffered a disruption possibly related to law enforcement. LockBitSupp, LockBit’s manager, seeks to recruit affiliates and a … Read more

ALPHV ransomware site outage rumored to be caused by law enforcement

December 8, 2023 at 01:32PM Ransomware gang ALPHV’s websites have been down for over 30 hours, suggesting a potential law enforcement operation. Admin claims the sites may be back soon, but remain down. Speculation on FBI involvement arises. ALPHV is believed to be a rebrand of DarkSide and BlackMatter, known for targeting critical infrastructure globally. … Read more

23andMe updates user agreement to prevent data breach lawsuits

December 7, 2023 at 04:43PM 23andMe faced a data breach from a credential stuffing attack, affecting 6.9 million people. Post-lawsuits, the company updated its Terms of Use to mandate arbitration over jury trials or class actions. Customers have 30 days to opt-out of the new terms, but the effectiveness of this change is questionable. Meeting … Read more