2.8M US folks learn their personal info was swiped months ago in Sav-Rx IT heist

May 28, 2024 at 06:29PM Sav-Rx informed 2.8 million individuals of a potential data breach, which occurred over seven months ago. The company discovered an IT intrusion in October, restored systems, and initiated an investigation, revealing unauthorized access to personal information. Affected data may include names, social security numbers, and more. Sav-Rx offers free credit … Read more

OmniVision discloses data breach after 2023 ransomware attack

May 20, 2024 at 04:55PM OmniVision, a California-based imaging sensors manufacturer and subsidiary of Chinese Will Semiconductor, suffered a Cactus ransomware attack in September 2023, leading to a security breach and theft of personal information. The company has advised authorities and is offering credit monitoring and identity theft restoration services to affected individuals. The threat … Read more

American Radio Relay League Hit by Cyberattack

May 20, 2024 at 07:15AM The American Radio Relay League (ARRL), a national association for amateur radio, was targeted in a cyberattack resulting in service disruptions and potential data breach, impacting its Learning Center and Logbook of the World. Member database with personal information was accessed, but the organization assured that no credit card or … Read more

Nissan North America data breach impacts over 53,000 employees

May 15, 2024 at 03:37PM Nissan North America experienced a data breach in November 2023. A threat actor targeted the external VPN, accessing personal data of over 53,000 employees, including Social Security numbers. Nissan promptly notified law enforcement, contained the incident, and offered affected individuals 24-month credit monitoring and identity theft protection. This is among … Read more

Dell Says Customer Names, Addresses Stolen in Database Breach

May 9, 2024 at 01:09PM Millions of Dell Technologies customers have been notified about a security incident that resulted in the theft of customer data, including full names and addresses. Dell confirmed the breach involved a database with limited customer information, primarily related to purchases from the company. The stolen data did not include sensitive … Read more

One year on, universities org admits MOVEit attack hit data of 800k people

May 8, 2024 at 10:06AM The University System of Georgia confirmed a data breach involving 800,000 individuals, linked to the Cl0p gang’s exploitation of a flaw in Progress Software’s MOVEit MFT tool. Personal data including social security numbers and bank account numbers may have been accessed. USG has taken steps to secure its systems and … Read more

Panda Restaurants discloses data breach after corporate systems hack

May 1, 2024 at 01:36PM Panda Restaurant Group, the parent company of Panda Express, disclosed a data breach in March 2024, affecting an unknown number of individuals. The breach involved personal information accessed from corporate systems, and an investigation is ongoing. Panda has implemented additional security measures and is cooperating with law enforcement for further … Read more

UnitedHealth Says Patient Data Exposed in Change Healthcare Cyberattack

April 23, 2024 at 10:13AM UnitedHealth Group confirmed a ransomware attack in February, exposing PII and PHI of many Americans. Despite paying a $22 million ransom, the attacker released data. UnitedHealth reported partial functionality restoration and incurred $872 million in costs. $6 billion was allocated for impacted healthcare providers. Investigation and notifications to affected individuals … Read more

United Nations agency investigates ransomware attack, data theft

April 19, 2024 at 02:10PM The UNDP is investigating a cyberattack in which threat actors stole human resources data from its IT systems in Copenhagen. The organization is assessing the incident’s impact and working with affected individuals to protect their personal information. While the specific threat group has not been identified, a ransomware gang claims … Read more

Delinea Scrambles to Patch Critical Flaw After Failed Responsible Disclosure Attempt

April 16, 2024 at 06:48AM Privileged access management provider Delinea rushed to patch a critical authentication bypass vulnerability in Secret Server SOAP API. Despite attempts at responsible disclosure, the company initially ignored researcher Johnny Yu’s findings. Delinea has since released patches for its platforms and assured customers that their data has not been compromised. No … Read more