How often have you seen DataBreaches heap praise on an entity for its incident response or transparency? Not too often, right? But DataBreaches is super-impressed by how Boar’s Head has responded to a food safety incident. No, this wasn’t any data security breach or privacy data breach, but it was an incident that had harmed…
Category: Commentaries and Analyses
The Dark Nexus Between Harm Groups and ‘The Com’
Brian Krebs reports: A cyberattack that shut down two of the top casinos in Las Vegas last year quickly became one of the most riveting security stories of 2023: It was the first known case of native English-speaking hackers in the United States and Britain teaming up with ransomware gangs based in Russia. But that…
Deal made with whistleblower after Columbus’ data leak drew global attention, deal still muzzles whistleblower
There’s an update to a disturbing story that involved a Franklin County judge granting the City of Columbus a temporary restraining order against Connor Goodwolf. Goodwolf has been providing information to the media and the public about a ransomware attack on the city and was refuting the city’s claims about the impact of the attack…
Locked In, Locked Out: How Data Breaches Shatter Refugees’ Safety
Noura Aljizawi of the Citizen Lab at the University of Toronto’s Munk School of Global Affairs and Public Policy writes: Rawia* is a Syrian activist in Turkey and a mother of three beautiful children. She kept her children at home, locked the doors, closed the windows, and told them not to speak loudly so people…
Proposed $65 million Lehigh Valley Health Network data breach settlement may compensate some victims $80,000
In 2023, a ransomware attack against Lehigh Valley Health Network by AlphV (BlackCat) involved the threat actors leaking nude photos of some cancer patients. In reporting on one of the first class action lawsuits launched against LVHN, DataBreaches pointed out how significant this situation and litigation might be, in part, because of the nude photos…
Russian Military Cyber Actors Target U.S. and Global Critical Infrastructure
From a Joint Cybersecurity Advisory summary: The Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and National Security Agency (NSA) assess that cyber actors affiliated with the Russian General Staff Main Intelligence Directorate (GRU) 161st Specialist Training Center (Unit 29155) are responsible for computer network operations against global targets for the purposes…