Mid Florida Primary Care, PA suffered a data breach where unauthorized access and copying of patient information occurred between November 29, 2024, and December 11, 2024. The breach was claimed by BianLian on December 14th, 2024.
United Food & Commercial Workers Local No. 7 experienced a data privacy incident involving personal information, including names and Social Security numbers, accessed by an unauthorized actor on December 10, 2024. The incident was discovered on December 11, 2024, and the organization took immediate...
Posted by Greg Mucci, Product Manager, Artifact Analysis, Oliver Chang, Senior Staff Engineering, OSV, and Charl de Nysschen, Product Manager OSVDevOps teams dedicated to securing their supply chain and predicting potential risks consistently face novel threats. Fortunately, they can now improve the...
Hackers exploited AWS misconfigurations, leaking 2TB of sensitive data, including customer information, credentials and proprietary source code
The utilities sector saw a 42% surge in ransomware incidents over the past year, with groups like Play focusing on targets with IT and OT systems
Australian Education Ransomware Attack, 10 December 2024: KillSec ransomware claims breach on Australian educational support platform Thanks For The Help (TFTH). The company’s website has been flagged by the Australian government’s Tertiary Education Quality and Standards Agency for providing essay...
New AppLite Banker malware targets Android devices, employing advanced phishing techniques to steal credentials and data
Researchers found that the broad accessibility of streams of Scottish Parliamentary proceedings make them highly susceptible to deepfake attacks
Le 10 décembre 2024, ATLAS a détecté une activité non autorisée visant ses systèmes d’information et a rapidement mis fin à l’intrusion. L’enquête a révélé que l’attaquant avait réussi à extraire certains fichiers contenant, entre autres, des numéros de sécurité sociale et des informations financièr...
The UK’s privacy regulator the Information Commissioner’s Office has welcomed a Court of Appeal ruling
Artivion has revealed in an SEC filing that it suffered a double-extortion ransomware attack
We are publishing another set of custom Semgrep rules, bringing our total number of public rules to 115. This blog post will briefly cover the new rules, then explore two Semgrep features in depth: regex mode (especially how it compares against generic mode), and HCL language support for technologie...
A Hack The Box Freedom of Information request has shown a significant drop in cyber-attacks reported to the Financial Conduct Authority (FCA) in 2024
Appeals court upheld law forcing TikTok divestiture, citing national security risks over China ties
Le conseil municipal de Muswellbrook Shire a été victime d'une cyberattaque, entraînant un accès non autorisé à ses systèmes informatiques. Une enquête est en cours pour déterminer comment l'attaque a eu lieu. Les systèmes du conseil ont été rétablis, mais les paiements en ligne restent indisponible...
The compromised ultralytics AI library delivered XMRig miner via GitHub Actions exploit
The UK's ICO has published its findings following a two-year trial of its Public Sector Approach, which aimed to improve data protection compliance and deter data breaches
Le comté de Wood a été victime d'une attaque de ransomware qui a bloqué l'accès aux serveurs du comté, affectant les fonctions du sheriff, de la cour de common pleas et d'autres bureaux du comté. Les employés ont dû recourir à des méthodes manuelles pour continuer à travailler, mais les services d'u...
This new ransomware group is likely a new variant of Babuk, said Cyble threat intelligence analysts
CERT-UA has issued a warning about phishing emails targeting Ukrainian defense companies and security forces