As seen on their web site: Information on Dallas ISD data security incident The Dallas Independent School District recently received notice of a data security incident involving the district’s electronic records that may affect former and current students, alumni, parents, and district employees. The confidentiality, privacy, and security of information in our care is one…
US farm loses $9 million in the aftermath of a ransomware attack
Catalin Cimpanu reports: A US farm lost a whopping $9 million due to a temporary shutdown of its farming operations following a ransomware attack earlier this year; the FBI said this week. The incident, which took place in January 2021 after hackers gained access to the farm’s internal network through compromised admin credentials, is part…
Audit of the Department of Defense’s Controls on Health Information of Well-Known Department of Defense Personnel (DODIG-2021-106)
Summary from the OIG: Objective The objective of this audit was to determine whether the DoD effectively controlled access to health information of well-known DoD personnel. Background The DoD maintains millions of electronic health records on its DoD beneficiaries, [REDACTED] DoD personnel who are granted access to health information to perform their official duties…
Nigerian hacker and a repeat offender sentenced to federal prison for unemployment fraud and tax fraud scheme
Bamidele Muraina, a Nigerian national who hacked into tax preparation firms and filed fraudulent unemployment benefit claims and tax returns using stolen personally identifiable information, and Gabriel Kalembo, a previously convicted fraudster who laundered the fraudulent assets, have both been sentenced to federal prison. The sentencing was announced today by the U.S. Attorney’s Office for…
SEC fines three companies over hacked employee email accounts
Catalin Cimpanu reports: The US Securities and Exchange Commission has fined three brokerage firms on Monday for neglecting to secure employee accounts, incidents that led to the exposure of their customers’ data. Cetera Advisor Networks LLC, Cetera Investment Services LLC, Cetera Financial Specialists LLC, Cetera Advisors LLC, and Cetera Investment Advisers LLC (collectively, the Cetera entities); Cambridge…
15-Year-Old Malware Proxy Network VIP72 Goes Dark
Brian Krebs reports: Over the past 15 years, a cybercrime anonymity service known as VIP72 has enabled countless fraudsters to mask their true location online by routing their traffic through millions of malware-infected systems. But roughly two weeks ago, VIP72’s online storefront — which ironically enough has remained at the same U.S.-based Internet address for more than…