Security

Tracker firm Hapn spilling names of thousands of GPS tracking customers

GPS tracking firm Hapn is exposing the names of thousands of its customers due to a website bug, TechCrunch has learned. A security researcher alerted TechCrunch in late November to customer names and affiliations — such as the name of their workplace — spilling from one of Hapn’s servers, which TechCrunch has seen.  Hapn, formerly […]

Tracker firm Hapn spilling names of thousands of GPS tracking customers Read More »

How the ransomware attack at Change Healthcare went down: A timeline

A ransomware attack earlier this year on UnitedHealth-owned health tech company Change Healthcare likely stands as one of the largest data breaches of U.S. health and medical data in history. Months after the February data breach, a “substantial proportion of people living in America” are receiving notice by mail that their personal and health information

How the ransomware attack at Change Healthcare went down: A timeline Read More »

Nebraska sues Change Healthcare over security failings that led to medical data breach of over 100 million Americans

The U.S. state of Nebraska has sued the healthtech giant Change Healthcare over a series of alleged security failings that resulted in a historical data breach exposing the sensitive health information of at least 100 million Americans.  In a complaint filed this week, Nebraska’s attorney general Mike Hilgers claims UnitedHealth-owned Change Healthcare failed to implement

Nebraska sues Change Healthcare over security failings that led to medical data breach of over 100 million Americans Read More »

Texas medical school says hackers stole sensitive health data of 1.4 million individuals

The Texas Tech University Health Sciences Center confirmed hackers accessed the personal and sensitive health data of over 1.4 million individuals during a September cyberattack. The cyberattack, which also affected TTUHSC’s El Paso campus, saw attackers steal information including Social Security numbers, financial account information, government-issued ID details, and health information — including medical records

Texas medical school says hackers stole sensitive health data of 1.4 million individuals Read More »

Called your doctor after-hours? ConnectOnCall hackers may have stolen your medical data

ConnectOnCall is alerting almost a million individuals whose personal and health information was stolen in a May data breach. ConnectOnCall, owned by healthcare tech company Phreesia, provides a digital answering service to healthcare providers for handling calls from patients outside of working hours. The May breach involves information shared between patients and doctor’s offices that

Called your doctor after-hours? ConnectOnCall hackers may have stolen your medical data Read More »

Israeli spyware maker Paragon bought by U.S. private equity giant

Paragon, an Israeli spyware maker that has largely kept a low profile in recent years, was acquired last week by American private equity giant AE Industrial Partners, according to Israeli news reports.  Tech news website Calcalist reported that the investment firm bought Paragon for $500 million, and depending on how the company grows, the deal

Israeli spyware maker Paragon bought by U.S. private equity giant Read More »

Serbian police used Cellebrite to unlock, then plant spyware, on a journalist’s phone

This year, a Serbian journalist and an activist had their phones hacked by local authorities using a cellphone-unlocking device made by forensic tool maker Cellebrite. The authorities’ goal was not only to unlock the phones to access their personal data, as Cellebrite allows, but also to install spyware to enable further surveillance, according to a

Serbian police used Cellebrite to unlock, then plant spyware, on a journalist’s phone Read More »

Rhode Island says personal data likely breached in social services cyberattack

State officials said hundreds of thousands of Rhode Island residents could be affected by a cyberattack on the state’s online portal for social services, with a “high probability” that  personally identifiable information was breached. According to an update from Governor Dan McKee’s office, the attack targeted RIBridges, which Rhode Island residents use to apply for

Rhode Island says personal data likely breached in social services cyberattack Read More »

UnitedHealthcare’s Optum left an AI chatbot, used by employees to ask questions about claims, exposed to the internet

Healthcare giant Optum has restricted access to an internal AI chatbot used by employees after a security researcher found it was publicly accessible online, and anyone could access it using only a web browser.  The chatbot, which TechCrunch has seen, allowed employees to ask the company questions about how to handle patient health insurance claims

UnitedHealthcare’s Optum left an AI chatbot, used by employees to ask questions about claims, exposed to the internet Read More »

Yahoo cybersecurity team sees layoffs, outsourcing of ‘red team,’ under new CTO

Yahoo laid off around 25% of its cybersecurity team — known as The Paranoids — over the last year, TechCrunch has learned. Overall, the company has laid off or lost through attrition 40 to 50 people from a total of 200 employees in the cybersecurity team since the start of 2024, according to multiple current

Yahoo cybersecurity team sees layoffs, outsourcing of ‘red team,’ under new CTO Read More »