cybersecurity

AngelSense exposed location data and personal information of tracked users

AngelSense, an assistive technology company that provides location monitoring devices for people with disabilities, was spilling the personally identifiable information and precise location data of its users to the open internet, TechCrunch has learned. The company secured the exposed server on Monday, more than a week after it was alerted to the data leak by […]

AngelSense exposed location data and personal information of tracked users Read More »

US Justice Department says cybercrime forum allegedly affected 17 million Americans

On Thursday, an international coalition of law enforcement agencies from Australia, France, Germany, Greece, Italy, Romania, Spain and the United States took down and seized two prominent hacking forums and two other related cybercriminal services.  After the takedown operations were revealed by Europol and Germany’s Bundeskriminalamt (BKA) on Thursday, the U.S. Department of Justice published

US Justice Department says cybercrime forum allegedly affected 17 million Americans Read More »

International police coalition takes down two prolific cybercrime and hacking forums

An international coalition of law enforcement agencies took down two hacking forums that had more than 10 million users, according to Europol, one of the agencies involved in the operation.  On Thursday, Europol and Germany’s police the Bundeskriminalamt (BKA) announced the seizures of Cracked and Nulled. The BKA called them “the world’s two largest trading

International police coalition takes down two prolific cybercrime and hacking forums Read More »

DeepSeek exposed internal database containing chat histories and sensitive data

Chinese AI company DeepSeek has fixed an exposed back-end database that was spilling sensitive information, including user chat histories and API keys, to the open internet. The DeepSeek database was not protected with a password, allowing anyone on the internet to access more than a million unencrypted logs inside.  Security researchers at cloud giant Wiz

DeepSeek exposed internal database containing chat histories and sensitive data Read More »

US blood donation giant warns of disruption after ransomware attack

New York Blood Center (NYBC), one of the largest nonprofit blood centers in the United States, says it is experiencing service disruptions after being hit by a ransomware attack.  NYBC said in a statement on Wednesday that the organization detected suspicious activity on its IT systems on January 26, which it has since confirmed was

US blood donation giant warns of disruption after ransomware attack Read More »

Hackers are hijacking WordPress sites to push Windows and Mac malware

Hackers are exploiting outdated versions of WordPress and plug-ins to alter thousands of websites in an attempt to trick visitors to download and install malware, security researchers have found. The hacking campaign is still “very much live,” Simon Wijckmans, the founder and CEO of web security company c/side, which discovered the attacks, told TechCrunch on

Hackers are hijacking WordPress sites to push Windows and Mac malware Read More »

MGM Resorts settles lawsuits after millions of customer records stolen in data breaches

Hotel and casino giant MGM Resorts has agreed to pay $45 million to settle more than a dozen class action lawsuits after hackers stole personal data on millions of customers in two separate cyberattacks. MGM agreed to the settlement on January 21, according to a recent court filing, as first reported by The Record. A

MGM Resorts settles lawsuits after millions of customer records stolen in data breaches Read More »

Engineering giant Smiths Group says hackers accessed its systems during cyberattack

U.K.-based engineering giant Smiths Group has confirmed a cybersecurity incident involving “unauthorized access” to its systems. The London-listed company, which operates across multiple sectors including energy, security, aerospace and defense, said Tuesday that it is currently “managing” the incident. The company said it isolated affected systems and activated its business continuity plans, implying a disruptive

Engineering giant Smiths Group says hackers accessed its systems during cyberattack Read More »

PowerSchool begins notifying students and teachers after massive data breach

U.S. edtech giant PowerSchool has begun notifying individuals affected by a December 2024 data breach that likely affects millions of students and teachers across North America. PowerSchool said in a brief update on Monday that it had started the process of filing legally required regulatory notifications following the breach, which saw attackers use a stolen

PowerSchool begins notifying students and teachers after massive data breach Read More »