Three years ago today, I filed a complaint with the Federal Trade Commission about Experian’s data breaches. Back then, I knew about 60 breaches of their credit reporting database due to client login credentials being misused. There were also other breaches of their database involving people being able to authenticate as others to obtain credit reports,…
Category: U.S.
NC: Wake County Public Schools take servers offline after DDoS attack
WRAL reports: Officials with the Wake County Public School System said Wednesday that they took dozens of school websites offline after a server was hit by hackers. The attack happened several weeks ago on a server that hosts 54 of the 178 websites operated by the school system. WCPSS spokeswoman Lisa Luten said the hack…
Hyatt Gold Passport notifies a small number of loyalty program members of possible breach (update2)
Hyatt is sending some customers enrolled in their loyalty points program, Gold Passport, notification of a possible breach of their information. As with some other loyalty card breach reports we’ve seen recently, Hyatt’s notification indicates that there is no evidence that their system was breached and that the miscreants may have obtained customers’ login credentials from other sources…
Intuit lawsuit alleges firm facilitated fraud by lax security
Marisa Kendall reports: In a suit filed Monday against Intuit Inc., plaintiffs lawyers claim lax security protections in the company’s TurboTax software are to blame for a recent spike in fraudulent tax returns. Intuit didn’t take adequate steps to stop criminals from using TurboTax to steal customers’ personal information, file false returns on their behalf…
IN: St. Vincent Medical Group notifies patients after successful phishing attempt compromises PHI
St. Vincent Medical Group in Indiana, a member of Ascension Health, has provided a substitute notice following an e-mail phishing incident. According to their notice, a copy of which is posted on their web site, on December 3, 2014, they learned that an employee’s user name and password had been compromised as a result of e-mail phishing….
Dem: USIS data breach affected more than 27K
Elise Viebeck reports: The number of individuals victimized in a cyberattack on a major background investigation service is higher than previously reported, the House Oversight Committee’s top Democrat said Wednesday. Rep. Elijah Cummings (D-Md.) reported that the initial estimate of 27,000 federal employees compromised in the breach of government contractor USIS is now believed to…