Depending on how long you have been following this blog, some of you may not remember the Interpark data breach in South Korea in 2016. I had covered it several times, including when it was fined $3.8 million (the largest fine up until that date) for its failure to protect consumer data from from what…
Eatigo reports data breach, personal data from customer accounts listed for sale online
CNA reports: Personal data from potentially 2.8 million eatigo accounts were illegally assessed in a data breach. In an email to customers on Saturday (Oct 31), the restaurant reservation platform said that along with other e-commerce sites, it was the subject of “a data security incident involving unauthorised access to our customer database”. Read more on CNA.
REvil ransomware threat actors reveal their gaming company victim
In a recent interview with Yelisey Boguslavskiy, “UNKN” of the threat actors known as REvil (Sodinokibi) indicated that they were planning a major attack on a gaming network. Today, the threat actors added GPI (Gaming Partners International) to their dedicated leak site. GPI describes itself as a leading provider of casino currency and table game…
“We take your privacy seriously,” Saturday edition
As part of my research collaboration with Protenus for their Breach Barometer reports, I spend time every week reaching out to entities to ask them for details about incidents if I cannot find any notice on their site or a state attorney general’s site. Most entities respond with the requested information or a copy of…
New Haven Health Department failed to terminate former employee’s access to protected health information
The City of New Haven, Connecticut (New Haven) has agreed to pay $202,400 to the Office for Civil Rights (OCR) at the U.S. Department of Health and Human Services (HHS) and to implement a corrective action plan to settle potential violations of the Health Insurance Portability and Accountability Act (HIPAA) Privacy and Security Rules. The…
Personal data of 1.1 million RedMart user accounts stolen in Lazada breach and put up for sale
Lester Wong reports: The personal information of 1.1 million RedMart user accounts was stolen from a customer database and put up for sale on an online forum. A spokesman from e-commerce giant Lazada, which owns e-grocer Redmart, confirmed the data breach yesterday and said that the personal information stolen included names, phone numbers, e-mail, mailing…