Security

Police operation claims takedown of prolific Redline and Meta password stealers

A coalition of international law enforcement agencies say they have disrupted the operations of two prolific infostealers that stole the sensitive data of millions of people.  The Dutch National Police, who led the so-called “Operation Magnus” takedown, reports it gained “full access” to the servers used by the Redline and Meta infostealers.  Infostealers are a

Police operation claims takedown of prolific Redline and Meta password stealers Read More »

How the ransomware attack at Change Healthcare went down: A timeline

A ransomware attack earlier this year on UnitedHealth-owned health tech company Change Healthcare likely stands as one of the largest data breaches of U.S. health and medical data in history. Months after the February data breach, a “substantial proportion of people living in America” are receiving notice by mail that their personal and health information

How the ransomware attack at Change Healthcare went down: A timeline Read More »

UnitedHealth says Change Healthcare data breach affects over 100 million people in America

More than 100 million individuals had their private health information stolen during the ransomware attack on Change Healthcare in February, a cyberattack that caused months of unprecedented outages and widespread disruption across the U.S. healthcare sector. This is the first time that UnitedHealth Group, the U.S. health insurance provider that owns the health tech company,

UnitedHealth says Change Healthcare data breach affects over 100 million people in America Read More »

Apple will pay security researchers up to $1 million to hack its private AI cloud

Ahead of the debut of Apple’s private AI cloud next week, dubbed Private Cloud Compute, the technology giant says it will pay security researchers up to $1 million to find vulnerabilities that can compromise the security of its private AI cloud. In a post on Apple’s security blog, the company said it would pay up

Apple will pay security researchers up to $1 million to hack its private AI cloud Read More »

SEC fines four companies $7 million for ‘misleading cyber disclosures’ regarding SolarWinds hack

The Securities and Exchange Commission (SEC) announced on Tuesday that it charged and imposed penalties on four companies for making misleading disclosures linked to the 2019 SolarWinds data breach.  The four companies charged are cybersecurity firms Check Point, which will pay a civil penalty of $995,000; Mimecast, which will pay $990,000; and the tech companies

SEC fines four companies $7 million for ‘misleading cyber disclosures’ regarding SolarWinds hack Read More »

Researchers link Polyfill supply chain attack to huge network of copycat gambling sites

One of the biggest digital supply chain attacks of the year was launched by a little-known company that redirected large numbers of internet users to a network of copycat gambling sites, according to security researchers.  Earlier this year, a company called FUNNULL purchased Polyfill.io, a domain hosting an open source JavaScript library that — if

Researchers link Polyfill supply chain attack to huge network of copycat gambling sites Read More »

23andMe faces an uncertain future — so does your genetic data 

DNA and genetic testing firm 23andMe is in turmoil following a data breach last year and its ongoing financial decline. The once-pioneering giant now faces an uncertain future amid efforts to take the company private, intensifying concerns about what might happen to the genetic data of 23andMe’s some 15 million customers. Best known for its

23andMe faces an uncertain future — so does your genetic data  Read More »

Microsoft said it lost weeks of security logs for its customers’ cloud products

Microsoft has notified customers that it’s missing more than two weeks of security logs for some of its cloud products, leaving network defenders without critical data for detecting possible intrusions. According to a notification sent to affected customers, Microsoft said that “a bug in one of Microsoft’s internal monitoring agents resulted in a malfunction in

Microsoft said it lost weeks of security logs for its customers’ cloud products Read More »

Feds arrest man who allegedly participated in hack of the SEC’s X account, boosting Bitcoin’s price

Federal authorities announced Thursday the arrest of a man in Alabama, accusing him of participating in the hack of the U.S. Securities and Exchange Commission X account earlier this year. Eric Council Jr. was indicted in connection with the SEC X account hack, which happened on January 9, when the account published a post falsely

Feds arrest man who allegedly participated in hack of the SEC’s X account, boosting Bitcoin’s price Read More »