Charlie Osborne reports: A St. Louis resident has been sentenced to four years behind bars for stealing the identities of US citizens to file fraudulent tax return claims, made possible through data leaked in security incidents. Babatunde Olusegun Taiwo, alongside co-conspirators including Kevin Williams, used the personal identifying information (PII) of individuals leaked due to…
Category: U.S.
College Athlete Recruiting Software Exposed Students’ Medical Info, Grades
Joseph Cox reports: Front Rush, a technology company that provides services to college athletics programs, exposed a server containing more than 700,000 files to the open internet, including college athletes’ medical records, performance reports, driver licenses, and other personal information. Front Rush works with over 30,000 coaches and 9,500 teams according to its website. The company…
btyDental notifies patients after ransomware attack
bty Dental in Anchorage, Alaska suffered a ransomware attack that they discovered on November 17. The ransomware impacted some of their servers, including the possibility that patients’ names and x-ray images might have been accessed. But the good news is what couldn’t have been accessed. As the practice explains in their notice: After examining the…
Ring Fired Employees for Watching Customer Videos
Joseph Cox reports: Amazon-owned home security camera company Ring has fired employees for improperly accessing Ring users’ video data, according to a letter the company wrote to Senators and obtained by Motherboard. The news highlights a risk across many different tech companies: employees may abuse access granted as part of their jobs to look at customer data or information….
CA: Enloe targeted by ransomware attack and elective procedures delayed
I missed this one when it was first published. Ashley Gardner reported on January 3: Enloe Medical Center was targeted by a ransomware attack on Tuesday that caused the hospital to reschedule some elective procedures. According to hospital officials, data stored on the hospital’s network was encrypted, preventing staff from accessing the information. Read more…
Native American Rehabilitation Association of the Northwest reports Emotet attack
On January 3, the Native American Rehabilitation Association of the Northwest, Inc. (NARA NW) in Portland, Oregon announced that it experienced a cybersecurity incident November 4-5, 2019. The attack was described as a malware incident with Emotet malware injected when some employees fell for a phishing attack on November 4. The incident was recognized quickly…