5am, to privacy
@5am@fosstodon.org avatar

How do people find this service (Monitor / Monitor Plus)? I've had a #Mozilla account and used the free Monitor tier for years but (luckily) not yet been alerted to being in any breaches. Is the data removal service any good? #privacy #security #databreach #databrokers
https://monitor.mozilla.org/

cybernews, to Facebook
cybernews, to Cybersecurity
AmenZwa, to random
0x58, to Cybersecurity

📨 Latest issue of my curated and list of resources for week /2024 is out! It includes the following and much more:

➝ 🔓 Support Portal Exposed Customer Device Info
➝ 🔓 🇹🇭 Major in Exposes Personal Data of 20 Million Elderly Citizens
➝ 🔓 🇫🇷 Millions at risk of fraud after massive health data hack in
➝ 🔓 🇺🇸 employee inadvertently leaks data of 63 thousand colleagues
➝ 🔓 🖥️ Hacked: Revokes Passwords, Certificates in Response
➝ 🔓 🇺🇸 says caused $49 million in expenses
➝ 💸 📈 Payments Exceed $1 Billion in 2023, Hitting Record High After 2022 Decline
➝ 🇺🇸 💰 US offers $10 million for tips on ransomware leadership
➝ 🇨🇳 🇺🇸 -backed Volt Typhoon hackers have lurked inside US for ‘at least five years’
➝ 🇨🇳 🇳🇱 Chinese Hackers Exploited Flaw to Breach Dutch Network
➝ 🇮🇷 🇮🇱 accelerates cyber ops against from chaotic start
➝ 🇧🇾 🇺🇸 Belarusian National Linked to BTC-e Faces 25 Years for $4 Billion Money Laundering
➝ 🇭🇰 💸 worker pays out $25 million after video call with ‘chief financial officer’
➝ 🇺🇦 is Creating a ‘Cyber Diplomat’ Post
➝ 🇩🇰 orders schools to stop sending student data to
➝ 🇪🇺 ⚖️ proposes criminalizing AI-generated child sexual abuse and deepfakes
➝ 🇳🇱 💰 Fined 10 Million Euros by Dutch Data Regulator
➝ 🇺🇸 🛂 US to Roll Out Visa Restrictions on People Who Misuse to Target Journalists, Activists
➝ 🦠 💬 Raspberry Robin Upgrades with Spread and New Exploits
➝ 🦠 🍎 New Backdoor Linked to Prominent Ransomware Groups
🦠 🪥 Surprising 3 Million Hacked Story Goes Viral—Is It True?
➝ 🇨🇦 🐬 declares public enemy No. 1 in car-theft crackdown
➝ 🩹 : Patch new Connect Secure auth bypass bug immediately
➝ 🐛 📍 Security flaw in a popular smart helmet allowed silent location tracking
➝ 🩹 Critical Patches Released for New Flaws in , , Products
➝ 🐛 🐧 Critical Boot Loader in Shim Impacts Nearly All Distros
➝ 🐛 ✈️ App Vulnerability Introduced Aircraft Safety Risk
➝ 🩹 Patches High-Severity Bugs in QTS, Qsync Central

--

📚 This week's recommended reading is: "x86 Software Reverse-Engineering, Cracking, and Counter-Measure" by Stephanie Domas & Christopher Domas

--

Subscribe to the newsletter to have it piping hot in your inbox every week-end ⬇️

https://infosec-mashup.santolaria.net/p/infosec-mashup-week-062024

cybernews, to Cybersecurity
gcluley, to Cybersecurity
@gcluley@mastodon.green avatar

US insurance firms sound alarm after 66,000 individuals impacted by SIM swap attack.

Read more in my article on the Bitdefender blog: https://www.bitdefender.com/blog/hotforsecurity/us-insurance-firms-sound-alarm-after-66-000-individuals-impacted-by-sim-swap-attack/

#cybersecurity #databreach #insurance #simswap

RonaldTooTall, to Cybersecurity

Verizon Communications is warning that an insider data breach impacts almost half its workforce, exposing sensitive employee information.

https://www.bleepingcomputer.com/news/security/verizon-insider-data-breach-hits-over-63-000-employees/

cybernews, to Cybersecurity
debugpoint, to linux
@debugpoint@floss.social avatar

Mozilla has introduced Mozilla Monitor Plus, a paid privacy service, to automatically remove user data from data broker sites, expanding its initial breach alert functions. The service offers a free one-time scan for exposed data and a subscription for ongoing protection, covering over 190 data broker sites.

https://debugpointnews.com/mozilla-monitor/

#linux #opensource #mozilla #privacy #databreach #security

Mozilla monitor

PogoWasRight, to random

HHS’ Office for Civil Rights Settles Malicious Insider Cybersecurity Investigation for $4.75 Million:

https://www.hhs.gov/about/news/2024/02/06/hhs-office-civil-rights-settles-malicious-insider-cybersecurity-investigation.html

Another #HIPAA #SecurityRule #enforcement action but this was from an #insider wrongdoing #databreach that police notified the center about in 2015. The theft occurred in 2013. Why is #HHSOCR first settling this NOW?

#IDtheft #fraud

0x58, to France

Millions of people are at risk of fraud after a data breach at a company that manages the third-party payments for #France 84 top-up insurance providers.

#infosec #cybersecurity #databreach

https://www.connexionfrance.com/article/French-news/Millions-at-risk-of-fraud-after-massive-health-data-hack-in-France

0x58, to Cybersecurity

Breach - Round 2️⃣

"We are aware of the claims and are investigating their veracity," HPE's Sr. Director for Global Communications Adam R. Bauer told BleepingComputer on Thursday.

"At this time we have not found evidence of an intrusion, nor any impact to HPE products or services. There has not been an extortion attempt."

agent0x0, to Cybersecurity

🔒 People matter more than computers in cybersecurity!

In cybersecurity our focus is on protecting people, not just computers. Let's shift the narrative and prioritize the human element.

Find out more in the latest episode of the @sharedsecurity podcast with special guest @andrazaharia

Watch on YouTube:
https://youtu.be/oRHBGq1ks5I?si=XH8n-bUTjxYXT-aa

Listen now!
https://sharedsecurity.net/2024/02/05/the-problem-of-victim-blaming-in-cybersecurity-empathy-responsibility-ethical-practices/

Subscribe on your favorite podcast app:
https://sharedsecurity.net/subscribe

#changingthenarrative #cybersecurity #victimblaming #databreach #cyberthreats #23andme

cybernews, to privacy
DevaOnBreaches, to random

AnyDesk confirmed that it suffered a recent cyberattack that allowed hackers to gain access to the company's production systems. #databreach @BleepingComputer

https://www.bleepingcomputer.com/news/security/anydesk-says-hackers-breached-its-production-servers-reset-passwords

emmalbriant, to random
@emmalbriant@mastodon.online avatar

Ex-CIA software engineer sentenced to 40 years for giving secrets to #WikiLeaks - Joshua #Schulte, who prosecutors said was responsible for agency’s largest #databreach, also guilty of possessing child abuse images https://www.theguardian.com/us-news/2024/feb/01/joshua-schulte-cia-wikileaks-secrets-trial-sentenced

itsecbot, to random

FTC slams Blackbaud for “shoddy security” after hacker stole data belonging to thousands of non-profits and millions of people - Data and software services firm Blackbaud's cybersecurity was criticised as "lax" and "sh... https://www.bitdefender.com/blog/hotforsecurity/ftc-slams-blackbaud-for-shoddy-security-after-hacker-stole-data-belonging-to-thousands-of-non-profits-and-millions-of-people/

PogoWasRight, to Cybersecurity

Was BrightStar Care attacked by two different groups — or was there only one breach?

It would help if BrightStar Care responded to inquiries. They didn't, but I'm confident they would like us all to know that they take privacy and security very seriously, right?

https://www.databreaches.net/was-brightstar-care-attacked-by-two-different-groups-or-was-there-only-one-breach/

#databreach #HealthSec #HIPAA #cybersecurity #transparency

@brett @euroinfosec @BleepingComputer

gcluley, to Cybersecurity
@gcluley@mastodon.green avatar
simplelogin, to random
@simplelogin@fosstodon.org avatar

We asked our community at @Reddit when they find hide-my-email aliases most useful.

Below are some of their tips:
🧵⬇️ (1/11)

simplelogin,
@simplelogin@fosstodon.org avatar

Replacing your actual email address with an alias also protects you in the case of a #databreach.

Also, don’t use #LastPass: https://proton.me/blog/is-lastpass-safe

(3/11)

cybernews, to Cybersecurity
PogoWasRight, (edited ) to random

The went after for its poor security, in 2020, and incident response. A ton of provisions in the proposed order, but no monetary penalty.

Press release: https://www.ftc.gov/news-events/news/press-releases/2024/02/ftc-order-will-require-blackbaud-delete-unnecessary-data-boost-safeguards-settle-charges-its-lax

Direct link to proposed order: https://www.ftc.gov/news-events/news/press-releases/2024/02/ftc-order-will-require-blackbaud-delete-unnecessary-data-boost-safeguards-settle-charges-its-lax

I like how they included that after paying $250k to the threat actors to get them to delete the data, "The company never verified, however, that the hacker actually deleted the stolen data, according to the complaint."

@douglevin @funnymonkey

PogoWasRight, (edited ) to Cybersecurity

Proving once again what lying bastards they are, hit St. Anthony Hospital (Chicago) on December 18 and exfiltrated some patient data. The hospital hasn't confirmed how much yet, and they make no mention of any of files. LockBit seems to be demanding $800k ransom/extortion to delete the files.

LockBit listing: http://lockbitapt6vx57t3eeqjofwgcglmutr3a35nygvokja5uuccip4ykyd.onion/post/BMwAS4fLCVjTEUt865b99757bf96a

Hospital's statement: https://sahchicago.org/images/cybersecurity/Saint-Anthony-HIPAA-Notification_website_English_2024Jan29.pdf

PogoWasRight, (edited ) to random

"The Wall Street Journal recently reported that #23andMe once had a market cap of $6 billion. That has dropped to $350 million. "

Here we go again: how do we figure out how much of 23andMe's woes is due to a #databreach and their pretty deplorable #incidentresponse that blamed their users, and how much is due to other financial issues involving their investments?

23andMe Destroyed by Hackers and Losses: https://247wallst.com/business/2024/02/01/23andme-destroyed-by-hackers-and-losses/

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • ngwrru68w68
  • everett
  • InstantRegret
  • magazineikmin
  • thenastyranch
  • rosin
  • GTA5RPClips
  • Durango
  • Youngstown
  • slotface
  • khanakhh
  • kavyap
  • DreamBathrooms
  • provamag3
  • tacticalgear
  • osvaldo12
  • tester
  • cubers
  • cisconetworking
  • mdbf
  • ethstaker
  • modclub
  • Leos
  • anitta
  • normalnudes
  • megavids
  • lostlight
  • All magazines