DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

Category: Breach Incidents

TX: Personal info still being discarded and dumped improperly

Posted on April 2, 2018 by Dissent

Courtney Schoenemann reports that a security analyst who goes dumpster diving in his spare time, came across a filing cabinet of account receivables from an Austin home remodeling company that had been dumped by an as-yet unnamed company: “Their routing numbers, bank account numbers, some had their driver’s license numbers on their checks. Everything you…

Read more

Oklahoma man pleads guilty to using stolen medical records for identity theft

Posted on March 28, 2018 by Dissent

KXII reports: One of two men suspected of of using stolen medical records to commit identity theft has pleaded guilty in federal court. 34-year-old Robert Bond of Thackerville pleaded guilty to conspiracy to commit wire fraud, and aggravated identity theft. Read more on KXII. The report doesn’t indicate from where the medical records were stolen,…

Read more

More details emerge on The MENTOR Network breach

Posted on March 27, 2018 by Dissent

On March 21, National Mentor Healthcare, doing business as Georgia MENTOR, announced that they were notifying patients of a data breach. A disk with protected health information mailed to them by a software provider was lost in the mail, they explained. They had reportedly discovered the loss on December 21. They did not disclose when…

Read more

“First do no harm” should be “First, secure your patient data, Doctor!”

Posted on March 26, 2018 by Dissent

When they discovered more than 42,000 patient records and millions of patient clinical notes exposed on a misconfigured rsync backup, researchers at UpGuard responsibly set out to notify the entity to secure their data. It turned out to be a Herculean task that would take almost two months and multiple entities to get the job…

Read more

How long does it take for a MongoDB to be compromised? Hint: not very long.

Posted on March 22, 2018 by Dissent

Kromtech Security has done a follow-up on reports from last year about misconfigured MongoDB installations having their data deleted and replaced by “ransom” messages.  The attackers were having a field day back then, but what is happening now? So Kromtech decided to employ a honeypot. It went live on March 1, 2018. And here’s what happened…

Read more

San Diego City Attorney announces lawsuit against Experian over massive data breach

Posted on March 22, 2018 by Dissent

At first I thought the headline had  a typo and that they meant to name Equifax, but they do, indeed, mean Experian. This suit goes back to an incident previously covered on this site that involved Experian acquiring a company, Court Ventures, that had access to another company’s, InfoSearch’s database…. and a bad actor named…

Read more
  • Previous
  • 1
  • …
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • …
  • 1,571
  • Next

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • Resource: State Data Breach Notification Laws – June 2025
  • WestJet investigates cyberattack disrupting internal systems
  • Plastic surgeons often store nude photos of patients with their identity information. When would we call that “negligent?”
  • India: Servers of two city hospitals hacked; police register FIR
  • Ph: Coop Hospital confirms probe into reported cyberattack
  • Slapped wrists for Financial Conduct Authority staff who emailed work data home
  • School Districts Unaware BoardDocs Software Published Their Private Files
  • A guilty plea in the PowerSchool case still leaves unanswered questions
  • Brussels Parliament hit by cyber-attack
  • Sweden under cyberattack: Prime minister sounds the alarm

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • Vermont signs Kids Code into law, faces legal challenges
  • Data Categories and Surveillance Pricing: Ferguson’s Nuanced Approach to Privacy Innovation
  • Anne Wojcicki Wins Bidding for 23andMe
  • Would you — or wouldn’t you?
  • New York passes a bill to prevent AI-fueled disasters
  • Synthetic Data and the Illusion of Privacy: Legal Risks of Using De-Identified AI Training Sets
  • States sue to block the sale of genetic data collected by DNA testing company 23andMe

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.