Another hack in Finland. A message on the home page of travel site Napsu.fi confirms that they were hacked on December 3 and that a list of registered users, usernames, email addresses and plain-text passwords were leaked. The firm is asking all registered users to change their passwords. From what I’ve seen so far, 11,976 usernames…
CMS Issues Final Rule Allowing Entities To Access Claims Data
On Monday, CMS announced a final rule allowing qualified organizations to access its claims database to develop public ratings reports on physicians, hospitals and other health care providers, the AP/Washington Post reports Background According to the AP/Post, the database is considered the “mother lode” of health care data, with information on 47 million beneficiaries and nearly every participating physician and…
GstarCAD hacked and accounts leaked
D35M0ND142 has been fairly busy the past few days, one of the latest victims is GstarCAD, a leading 2d/3d automated cad software technology developer, the website which was hacked and also was offline at time of publish is en.gstarcad.com. The leak contains basic database information and a dump of user accounts with encrypted passwords. https://pastebin.com/tbcyBX1r
ENPI Information and Communication hacked
A hacker going by the name of Tringle2011 has hacked and dump an amount of information from the ENPI website. The ENPI website is supported by the European Commission and was started to try bring all the European countries together. The leak rasies questions to their security level, seems they are no more secure then UN. The leak…
UK: ICO requires barrister to sign undertaking after theft of unencrypted laptop
The ICO has quietly announced that a London barrister, Richard Dominic Preston, signed an undertaking following the theft of a laptop computer from Mr Preston’s home. The laptop contained documents relating to cases on which Mr Preston had been instructed, together with email correspondence. According to the undertaking, much of the data in the documents on the…
UK: Burglars steal equipment with 8,000 dental patients' information
Here’s another UK breach that we didn’t hear about at the time and only learned about because the entity had to sign an undertaking with the ICO: An undertaking to comply with the seventh principle of the DPA has been signed by Alan M Casson & Associates, after two unencrypted laptops and back up media had…