Peter Hayes reports: Orrick, Herrington & Sutcliffe LLP will pay $8 million to settle consolidated class action claims over a data breach that impacted approximately 461,100 people. Class counsel asked the US District Court for the Northern District of California to approve the settlement in an unopposed motion filed Thursday. The agreement also calls for an award of…
Why CISA is Warning CISOs About a Breach at Sisense
Brian Krebs reports: The U.S. Cybersecurity and Infrastructure Security Agency (CISA) said today it is investigating a breach at business intelligence company Sisense, whose products are designed to allow companies to view the status of multiple third-party online services in a single dashboard. CISA urged all Sisense customers to reset any credentials and secrets that may have been…
Judge: Clark County schools may have immunity in lawsuit over 2023 cybersecurity breach
There’s an update to litigation against Clark County schools stemming from an attack by SingularityMD last year. Rocio Hernandez reports: A Clark County judge said she’s leaning toward granting the Clark County School District’s (CCSD) motion to dismiss a class action lawsuit filed on behalf of parents whose children’s data was leaked in a 2023 cyberattack, but…
Maintenance Note
The site will be down for approximately 12 hours tonight for some routine maintenance and security updates.
Group Health Cooperative of South Central Wisconsin notifies 533,809 members of ransomware attack
Group Health Cooperative of South Central Wisconsin (GHC-SCW) is a non-profit, member-owned health plan providing services to more than 80,000 members in Wisconsin. This week, they provided reports to HHS and the Maine Attorney General’s Office about a breach they previously disclosed in February. On January 25, GHC-SCW posted an announcement on its website that…
One year after breach, CCM Health notifies almost 29,000 patients
CCM Health in Minnesota provides health services through public hospitals and healthcare facilities. In a notification letter dated March 12, 2024, they informed patients that protected health information (PHI) may have been accessed and exfiltrated during an attack that occurred between April 3 – April 10, 2023. They do not reveal when or how they…