From the Information Commissioner’s Office: An online building products supplier has been fined £55,000 by the Information Commissioner’s Office (ICO) after the firm failed to protect its customers’ personal information. Construction Materials Online Ltd (CMO) was unaware its website contained a coding error which left it vulnerable to attack. On 6 May 2014 an attacker…
Category: Of Note
TheDarkOverlord leaks upcoming episode of Orange is the New Black after Netflix doesn’t pay extortion demand (Updated)
After a two-month hiatus, and with pixels to spare, TheDarkOverlord let it be known today that they are still hacking and attempting to extort their victims: And so let it be read that the loathsome giants do too fall. Hello Netflix, we’ve arrived: https://t.co/Fmb1gsZf4a — thedarkoverlord (@tdohack3r) April 28, 2017 “And so let it be read that the…
US ISP Goes Down as Two Malware Families Go to War Over Its Modems
Catalin Cimpanu reports: Two malware families battling for turf are most likely the cause of an outage suffered by Californian ISP Sierra Tel at the beginning of the month. This outage took place on April 10, 2017, when Sierra Tel customers started complaining about losing Internet and telephone connectivity. While initially there were unconfirmed rumors…
Longest sentence ever handed out for hacking: Roman Seleznev Sentenced to 27 Years
There was big news in the world of hacking prosecutions yesterday. The DOJ announced that Roman Seleznev was sentenced to 27 years in prison for computer hacking crimes that reportedly caused more than $169 million in damage to small businesses and financial institutions. Prosecutors had sought a 30-year sentence to send a strong message, and the sentence appears…
No Business Associate Agreement? $31K Mistake
From HHS: The Center for Children’s Digestive Health (CCDH) has paid the U.S. Department of Health and Human Services (HHS) $31,000 to settle potential violations of the Health Insurance Portability and Accountability Act of 1996 (HIPAA) Privacy Rule and agreed to implement a corrective action plan. CCDH is a small, for-profit health care provider with…
BakerHostetler 2017 Data Security Incident Response Report Based on 450 Incidents
I don’t post links to most reports with data breach analyses because some are so flawed that they just perpetuate errors some of us have tried to correct. But BakerHostetler handles a lot of breach incidents for their clients, and they’ve issued a report based on 450 incidents they’ve handled. Some of their findings seem quite…