cybersecurity

What PowerSchool won’t say about its data breach affecting millions of students

It’s only February, but the recent hack of U.S. edtech giant PowerSchool has the potential to be one of the biggest breaches of the year.  PowerSchool, which provides K-12 software to more than 18,000 schools to support some 60 million students across North America, confirmed the breach in early January. The California-based company, which Bain […]

What PowerSchool won’t say about its data breach affecting millions of students Read More »

Senator warns of national security risks after Elon Musk’s DOGE granted ‘full access’ to sensitive Treasury systems

A senior U.S. lawmaker says representatives of Elon Musk were granted “full access” to a U.S. Treasury payments system used to disperse trillions of dollars to Americans each year, and warned that Musk’s access to the system poses a “national security risk.” Sen. Ron Wyden, a Democratic senator from Oregon and ranking member of the

Senator warns of national security risks after Elon Musk’s DOGE granted ‘full access’ to sensitive Treasury systems Read More »

WhatsApp says it disrupted a hacking campaign targeting journalists with Paragon spyware

WhatsApp said on Friday that it had disrupted a hacking campaign that targeted around 90 users, including journalists and members of civil society.  A WhatsApp spokesperson told TechCrunch that the campaign was linked to Paragon, an Israeli spyware maker that was acquired in December of last year by American private equity giant AE Industrial Partners.

WhatsApp says it disrupted a hacking campaign targeting journalists with Paragon spyware Read More »

US nonprofit healthcare provider says hackers stole medical and personal data of 1M+ patients

Community Health Center (CHC), a Connecticut-based nonprofit healthcare provider, has confirmed that hackers accessed the sensitive data of more than a million patients. In a filing with Maine’s attorney general on Thursday, CHC said it detected suspicious activity on its network on 2 January and determined that a “skilled criminal hacker” had accessed its network

US nonprofit healthcare provider says hackers stole medical and personal data of 1M+ patients Read More »

AngelSense exposed location data and personal information of tracked users

AngelSense, an assistive technology company that provides location monitoring devices for people with disabilities, was spilling the personally identifiable information and precise location data of its users to the open internet, TechCrunch has learned. The company secured the exposed server on Monday, more than a week after it was alerted to the data leak by

AngelSense exposed location data and personal information of tracked users Read More »

US Justice Department says cybercrime forum allegedly affected 17 million Americans

On Thursday, an international coalition of law enforcement agencies from Australia, France, Germany, Greece, Italy, Romania, Spain and the United States took down and seized two prominent hacking forums and two other related cybercriminal services.  After the takedown operations were revealed by Europol and Germany’s Bundeskriminalamt (BKA) on Thursday, the U.S. Department of Justice published

US Justice Department says cybercrime forum allegedly affected 17 million Americans Read More »

International police coalition takes down two prolific cybercrime and hacking forums

An international coalition of law enforcement agencies took down two hacking forums that had more than 10 million users, according to Europol, one of the agencies involved in the operation.  On Thursday, Europol and Germany’s police the Bundeskriminalamt (BKA) announced the seizures of Cracked and Nulled. The BKA called them “the world’s two largest trading

International police coalition takes down two prolific cybercrime and hacking forums Read More »

DeepSeek exposed internal database containing chat histories and sensitive data

Chinese AI company DeepSeek has fixed an exposed back-end database that was spilling sensitive information, including user chat histories and API keys, to the open internet. The DeepSeek database was not protected with a password, allowing anyone on the internet to access more than a million unencrypted logs inside.  Security researchers at cloud giant Wiz

DeepSeek exposed internal database containing chat histories and sensitive data Read More »