Remember how Suffolk County in New York had decided cyberinsurance was too expensive and how they got hit with a ransomware attack by AlphV in 2022. The county not only had no insurance, but it had no cyberattack recovery plan. Mark Harrington reports another update on that incident: Suffolk County approved more than $25…
Category: U.S.
Hacked in 2022, Dell & Dean law firm first notifying affected clients now
From DataBreaches’ “Now what does THIS mean?” file, a notification letter from Dell & Dean PLLC, a law firm in New York. On July 17, Dell & Dean’s external counsel notified the Maine Attorney General’s Office about a breach in September 2022 that affected 6,803 people. A copy of the firm’s notification letter was appended…
Two Foreign Nationals Plead Guilty to Participation in LockBit Ransomware Group
The following is a press release issued yesterday by the U.S. Attorney’s Office, District of New Jersey: Two foreign nationals pleaded guilty today in Newark federal court to participating in the LockBit ransomware group – at various times the most prolific ransomware variant in the world – and to deploying LockBit attacks against victims in…
Judge Guts SEC Case Against SolarWinds Over Cyber Practices
Cassandre Coyer reports: A US federal judge dismissed much of the Securities and Exchange Commission’s lawsuit against SolarWinds Corp. that alleged the software provider misled investors about its cybersecurity practices and the significance of a major data breach that spilled into the US government. Thursday’s ruling was seen as a blow to the SEC’s aggressive efforts to regulate…
Pueblo County D70 data breach may have compromised information of former students, staff
James Bartolo reports: Pueblo County School District 70 is addressing a data breach and ransomware attack that may have compromised the personal information of former students, as well as current and former staff. The data breach is believed to have impacted a number of student records saved between 1991 and 2006. Past and present staff…
No need to hack when it’s leaking, Wednesday edition: Nearly 150,000 Records Were Exposed Online by On-Site Medical Service Provider
Website Planet reports that Jeremiah Fowler discovered a non-password-protected database that contained 148,000 records belonging to InHouse Physicians — a healthcare provider that offers on-site medical services and wellness programs to organizations, including corporate health and wellness solutions, event medical services, and occupational health programs. The non-password-protected database contained 148,415 PDF documents totalling 12 GB. Each document…