Today, the Office for Civil Rights (OCR) at the U.S. Department of Health and Human Services (HHS) released its 2016-2017 HIPAA Audits Industry Report that reviewed selected health care entities and business associates for compliance with certain provisions of the HIPAA Privacy, Security, and Breach Notification Rules. The Health Information Technology for Economic and Clinical…
Category: Of Note
Suspected Russian hacking spree extended beyond SolarWinds users
Joseph Menn reports: The massive hacking campaign disclosed by U.S. officials this week and tentatively attributed to the Russian government extended beyond users of pervasive network software that had been compromised. “The SolarWinds Orion supply chain compromise is not the only initial infection vector this APT actor leveraged,” said DHS’s Cybersecurity and Infrastructure Security Agency,…
In 2020, COVID-19 also impacted the carding market
It’s always nice when trends make sense. And it’s even nicer when professionals watch and analyze those trends for us. In a report released this morning, Gemini Advisory looked at the carding market in 2020 and how the pandemic does correlate with a significantly decreased demand for Card Present (CP) data on the dark web…
Company that Provides Travel Emergency Services Settles FTC Allegations it Failed to Secure Sensitive Consumer Data
It feels like it’s been a while since we’ve seen an FTC data security case (well, apart from Zoom’s issues). Today, FTC issued a press release about a settlement stemming from SkyMed International’s misconfigured elastic search instance that exposed more than 130,000 people’s information. The exposed data were discovered by Jeremiah Fowler and reported in…
Ethical Hacker Who Claimed To Access Trump’s Twitter Account Won’t Be Criminally Charged by Dutch Prosecutor
Robert Hart reports: A hacker who claimed to have logged into President Donald Trump’s Twitter account in October will not be punished because he tried to contact American authorities and report the security breach, a Dutch prosecutor announced Wednesday following a police investigation into the incident by the country’s High Tech Crime Team. Read more on Forbes. My…
Hackers at center of sprawling spy campaign turned SolarWinds’ dominance against it
Raphael Satter and Christopher Bing have a somewhat mind-boggling update to the SolarWinds hack – a hack that will be remembered as one of the biggest and most concerning hacks of 2020. And it’s only likely to get worse for SolarWinds, whose stock already dropped significantly. We know that companies can recover from breaches and…