Martin Thomas reports that someone at John Moores University goofed and emailed information on current employees to a former employee. The information was that contained in P60 forms, which from looking at a few samples online, appear to be similar to our W-2 statements in that they contain the employee’s name and address, the wages…
Dark web drug dealer and hacker to pay out £17,000 and carry out 200 hours of unpaid work
Victoria Wheldon reports: A Scots computer hacker who used the ‘dark web’ to sell drugs has been ordered to pay £17,000 in compensation and carry out 200 hours of unpaid work. David Trail set up and administered the Topix2 website, an online black market site which he used to buy and sell drugs including Diazepam…
TalkTalk being sued by hacked customer
TalkTalk hack’s last year received a lot of coverage on this blog already, but here’s an update. Stephen Hayward reports that a customer who lost £257 to a scammer is suing for compensation. Michael Robinson, 32, has filed suit against the firm, claiming that in addition to becoming a victim of a scam as a result of the breach, crooks also got hold…
Anyone know what healthcare facilities these are? 655,000 patient records up for sale on dark net (UPDATED)
Seen up for sale on a forum (I’m redacting the ads and samples): Healthcare Database (48,000 Patients) from Farmington, Missouri, United States This product is a considerably large database in plaintext from a healthcare organization in Farmington, Missouri, United States. It was retrieved from a Microsoft Access database within their internal network using readily available plaintext…
Is LookBook aware?
Well, I wanted to send an inquiry to LookBook to ask them if they were aware of being hacked or a report that their user database was up for sale, but there was no contact method on their web site, and the domain lookup didn’t help, either. So I resorted to tweeting to them, and hope…
Verticalscope sounds serious about password security
I’ve previously posted info on the Verticalscope breach affecting 45 million. But I never posted their breach announcement. As I was just reviewing it, I noticed their response to the breach with respect to new password requirements. I thought it was a bit different, and should be mentioned here. From the What We Are Doing…