FBCS Collection Agency Data Breach Impacts 2.7 Million

May 13, 2024 at 06:48AM FBCS announced that personal information of roughly 2.7 million individuals was compromised in a data breach. The breach involved unauthorized access to certain systems, potentially exposing names, dates of birth, Social Security numbers, and account information. FBCS has taken steps to secure the impacted systems and is offering free credit … Read more

CISO as a CTO: When and Why It Makes Sense

May 10, 2024 at 02:36PM Enterprises are realizing that CISO’s skills in developing risk-based cyber programs can be applied to other C-suite roles. This suggests a growing appreciation for the transferability of CISO’s expertise across leadership positions. Based on the meeting notes, it seems that enterprises are realizing that the skills and experience of a … Read more

One year on, universities org admits MOVEit attack hit data of 800k people

May 8, 2024 at 10:06AM The University System of Georgia confirmed a data breach involving 800,000 individuals, linked to the Cl0p gang’s exploitation of a flaw in Progress Software’s MOVEit MFT tool. Personal data including social security numbers and bank account numbers may have been accessed. USG has taken steps to secure its systems and … Read more

Ten years since the first corp ransomware, Mikko Hyppönen sees no end in sight

May 8, 2024 at 03:35AM Ransomware has plagued the information security landscape for a decade, with attacks increasingly targeting corporations for big payouts. Mikko Hyppönen, chief research officer at WithSecure, warns that the rise in attacks and the value of Bitcoin has created lucrative opportunities for criminals. Despite this, the security industry offers a promising … Read more

Consultant charged over $1.5M extortion scheme against IT giant

May 6, 2024 at 01:08PM Cybersecurity expert Vincent Cannady faces a 20-year prison sentence after being accused of extorting $1.5 million from a multinational IT services company by threatening to expose stolen data. Cannady, fired from his consultancy job, allegedly accessed and downloaded confidential company data, demanding a substantial settlement. He has been charged with … Read more

Ex-NSA Employee Sentenced to 22 Years for Trying to Sell U.S. Secrets to Russia

May 1, 2024 at 03:12AM A former NSA employee has been sentenced to 22 years in prison for attempting to transfer classified documents to Russia. Despite a short tenure at NSA, Jareh Dalke made contact with an undercover FBI agent posing as a Russian, and transmitted top-secret documents in exchange for money. Dalke pleaded guilty … Read more

Indian bank’s IT is so shabby it’s been banned from opening new accounts

April 25, 2024 at 02:35AM India’s central bank has banned Kotak Mahindra Bank from acquiring new customers through its online platforms due to deficiencies in IT systems and non-compliance. The bank’s security measures were found insufficient, impacting over 41 million customers and causing outages. The Reserve Bank aims to lift the ban if Kotak Mahindra … Read more

Leicester streetlights take ransomware attack personally, shine on 24/7

April 23, 2024 at 07:13AM Leicester City Council experienced a ransomware attack causing residential streetlights to stay on continuously, disrupting daily life. The cyberattack led to system shutdowns and data theft, making the council reluctant to pay the ransom. The 1.3 TB data breach prompted close cooperation with law enforcement and data breach notifications to … Read more

Ransomware Gang Leaks Data Allegedly Stolen From Government Contractor

April 23, 2024 at 06:57AM The LockBit ransomware gang leaked 1Gb of allegedly stolen data from the District of Columbia’s Department of Insurance and Banking. The group threatens to release an additional 800Gb unless a ransom is paid. The stolen data contains sensitive information, potentially including names, Social Security numbers, and driver’s license numbers. Tyler … Read more

US Government Releases Guidance on Securing Election Infrastructure

April 19, 2024 at 08:04AM The US government has issued guidance to enhance election infrastructure resilience against malign influence operations from China, Russia, and Iran. Tactics include using fake online accounts, enlisting individuals to promote narratives, and laundering influence through proxy entities. The agencies advise debunking narratives, securing systems, and working with trusted sources to … Read more