The Personal Data Protection Commissioner of Singapore (PDPC) announced two decisions this week: A financial penalty of $3,000 was imposed on Autobahn Rent A Car for failing to put in place reasonable security arrangements to protect the personal data in its possession or under its control. Directions were also issued to strengthen access control measures…
BlackCat ransomware hits Azure Storage with Sphynx encryptor
Sergiu Gatlan reports: The BlackCat (ALPHV) ransomware gang now uses stolen Microsoft accounts and the recently spotted Sphynx encryptor to encrypt targets’ Azure cloud storage. While investigating a recent breach, Sophos X-Ops incident responders discovered that the attackers used a new Sphynx variant with added support for using custom credentials. Read more at BleepingComputer.
FTX restores claims portal after security breach incident
Haseeb Shaheen reports: In a recent turn of events, the claims portal for the globally renowned cryptocurrency exchange FTX has resumed its full-fledged operation. The operations were suspended following a security incident that took place with Kroll, the third-party agent responsible for handling the creditor claims amidst the ongoing FTX bankruptcy. The cybersecurity incident is just…
As AI boosts Texas cybercrime, challenges in bringing international criminals to justice remain
Eric Killelea reports: It used to be easier. Christopher Delzotto remembers the days not so long ago when many online financial scams could be spotted just by reading them. They were full of misspellings, poor grammar and awkward phrasing — all signs that they were created in other countries where a hacker’s first language isn’t English. The…
Iranian state-backed hackers target global satellite, defense, and pharma companies
The Shillong Times reports: Microsoft analysts have revealed that Iranian state-backed hackers have been actively targeting satellite, defense, and pharmaceutical companies worldwide. Their primary objective appears to be gathering intelligence and potentially bolstering domestic production in these industries, particularly in the face of heavy US sanctions. As per IANS, these hackers have successfully infiltrated multiple…
Au: Federal government could pay millions in compensation over asylum seeker data breach
Ben Doherty reports: The Australian government may be liable for tens of millions of dollars in compensation to asylum seekers after it posted their personal details online while they were in immigration detention. The mass data breach, discovered by Guardian Australia in 2014, resulted in information being used, in some cases, to allegedly threaten asylum seekers, or…