In December, 2020, the FTC announced a proposed settlement with Texas-based Ascension Data & Analytics after a security breach involving one of its vendors resulted in the exposure of, and unauthorized access to, consumers’ mortgage applications. One year later, the settlement received final approval, as the FTC announced on December 22: The Federal Trade Commission…
Category: Business Sector
NZ: Vodafone accidentally sent a customer personal details of 18 other accounts
Some incidents that would seem “smallish” here make headlines elsewhere. But that’s actually helpful, as it reminds us all that avoidable human errors continue to occur and that even big corporations who should have lots of money to dedicate to data security and protection still fail to avoid all breaches. Melanie Carroll reports: A customer…
Have I Been Pwned warns of DatPiff data breach impacting millions
Bill Toulas reports: The cracked passwords for almost 7.5 million DatPiff members are being sold online, and users can check if they are part of the data breach through the Have I Been Pwned notification service. DatPiff is a popular mixtape hosting service used by over 15 million users, allowing unregistered users to download or upload…
New York Attorney General James Alerts 17 Companies to “Credential Stuffing” Cyberattacks Impacting More Than 1.1 Million Consumers
NEW YORK – New York Attorney General Letitia James today announced the results of a sweeping investigation into “credential stuffing” that discovered more than 1.1 million online accounts compromised in cyberattacks at 17 well-known companies. Attorney General James released a “Business Guide for Credential Stuffing Attacks” that details the attacks — which involve repeated, automated attempts to access online…
UScellular discloses data breach after billing system hack
Segiu Gatlan reports: UScellular, self-described as the fourth-largest wireless carrier in the US, has disclosed a data breach after the company’s billing system was hacked in December 2021. The mobile carrier said in data breach notification letters sent to 405 impacted individuals that the attackers also ported some of the affected customers’ numbers using personal information stolen…
Portuguese newspaper is hacked by group that attacked Ministry of Health
Abhishek Pratap reports: The Portuguese newspaper Expresso was attacked by hackers at dawn this Sunday, 2. Those responsible for the invasion are the Lapsus Group, the same team that shut down the Ministry of Health’s systems last December. The newspaper’s website displays a page similar to the one shown in the attack on the Brazilian government agency….