Zack Whittaker reports: Magecart hackers have struck again, this time targeting the NutriBullet website. According to new research by security firm RiskIQ, hackers broke into the blender maker’s website several times over the past two months, injected malicious credit card-skimming malware on its payment pages and siphoned off the credit card numbers and other personal data —…
Koodo Mobile’s Data Breach Notification: Customer Accounts and Data Sold on Dark Web
Security Magazine reports: Koodo Mobile, a Canadian mobile flanker brand started by Telus in 2008, has announced customer data has been breached and is now being sold on various Dark Web websites. Koodo is mostly oriented toward younger customers and differs from its parent Telus by not requiring a fixed term contract. Koodo currently provides postpaid,…
Health Quest still first notifying people of July, 2018 breach in January, 2020
Having to go through numerous email accounts to determine which consumers, employees, or patients, have information in them that will necessitate notification can be a time-consuming task. In June, 2019, this site reported on what appeared to be a very long gap between discovery of a breach and notification to those affected. As reported then,…
Why ransomware continues to knock on healthcare’s door, enter, and create havoc
“Adam” writes: My name is Adam, and I’ve worked in the healthcare industry for over 15 years. In my current line of work, I assist healthcare facilities across the U.S. with their overall cybersecurity posture, ranging from physical and technical security controls to security incident response in conjunction with disaster recovery and business continuity planning. My…
IL: College of DuPage data security breach could affect 1,700 current, former employees
Robert Sanchez reports: Personal and tax information for more than 1,700 current and former employees of the College of DuPage may have been impacted by a recent data security breach, officials at the Glen Ellyn school said Monday. President Brian Caputo said officials believe it’s unlikely the information contained in the 2018 W-2 forms of…
Wichita State University notifying 1,762 Iowans whose personal info was accessed by hacker
2019 was a difficult year for Wichita State University in terms of cybersecurity. They started the year with a phishing incident that stole some employees’ paychecks, and it seems that they ended the year with another incident. As their external counsel wrote on March 10: In December 2019, WSU learned of a security incident involving…