PrivacyDigest, to privacy
@PrivacyDigest@mas.to avatar

US government contractor says accessed health data of ‘at least’ 8 million individuals | TechCrunch

Virginia-based contracts with federal, state, and local governments to manage and administer government-sponsored programs, such as , , healthcare reform, and welfare-to-work.

https://techcrunch.com/2023/07/27/us-government-contractor-says-moveit-hackers-accessed-health-data-of-at-least-8-million-individuals/

jrt, to random
@jrt@chaos.social avatar

Has someone already compiled a file list?
https://pwcclinetsanddocuments.com/

falconfeedsio, to infosec

CL0P group added 9 new victims to their portal.

  • TJX Companies Inc 🇺🇸
  • Vitesco Technologies 🇩🇪
  • Valmet 🇫🇮
  • Fortescue 🇦🇺
  • DESMI 🇩🇰
  • Crum & Forster 🇺🇸
  • Compucom 🇺🇸
  • Sierra Wireless 🇨🇦
  • RCI 🇺🇸

heiseonline, to hacking German

Datenleck bei Banken: Hackerangriff betrifft auch ING und Comdirect

Der Hackangriff bei einer Arvato-Tochter betrifft nicht nur Kunden der Deutschen Bank. Auch die ING und Comdirect haben einen unbefugten Zugriff eingeräumt.

https://www.heise.de/news/Datenleck-bei-Banken-Hackerangriff-betrifft-auch-ING-und-Comdirect-9213465.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege

kubikpixel, to random German
@kubikpixel@chaos.social avatar

deleted_by_author

  • Loading...
  • zappi,
    @zappi@chaos.social avatar
    PrivacyDigest, to security
    @PrivacyDigest@mas.to avatar

    app mass-exploited last month patches new critical

    MOVEit, the file-transfer software in recent weeks in one of the biggest ever, has received yet another update that fixes a critical vulnerability that could be exploited to give access to vast amounts of sensitive data

    https://arstechnica.com/?p=1952233

    wikinaut, to random German
    @wikinaut@berlin.social avatar
    jrt, (edited )
    @jrt@chaos.social avatar

    @wikinaut
    https://www.zeit.de/news/2023-07/03/it-umzug-von-postbank-kunden-erfolgreich-abgeschlossen

    Gerade erst hat die eine größere Menge Daten zur migriert. Vielleicht ist der nicht genannte Dienstleister ja ? 🤔

    jrt,
    @jrt@chaos.social avatar
    itnewsbot, to security
    @itnewsbot@schleuss.online avatar

    MOVEit app mass-exploited last month patches new critical vulnerability - Enlarge (credit: Lino Mirgeler/picture alliance via Getty Images)

    ... - https://arstechnica.com/?p=1952233

    avoidthehack, to Cybersecurity

    Shell Confirms MOVEit-Related Breach After Group Leaks Data

    Affected organizations from MOVEit continue to pile up...

    https://www.securityweek.com/shell-confirms-moveit-related-breach-after-ransomware-group-leaks-data/

    brett, to random

    Cambridgeshire County Council was impacted by

    The state of play -

    Known victims: 204
    Individuals impacted: 17,561,373 from 33 disclosures

    https://www.cambridge-news.co.uk/news/cambridge-news/cambridgeshire-county-council-issues-statement-27267207#

    shibashecurity, to progress

    Right, what's this, and why isn't it anywhere at all on any of our asset tracking?

    Given the whole MoveIT schermoggle, this is rather frustrating.

    That's my next half an hour sorted.

    brett, to random

    With so many organizations in the education sector impacted by - , , , etc - it's possible that pretty much every school in the US will also have been impacted, either directly or indirectly.

    https://www.stmarytx.edu/updates/

    brett, to random

    More US universities have disclosed -related breaches via and/or : Chapman, Xavier, Southern Utah, Utah Tech, St Mary’s and Lake-Sumter State College.

    Current victim count: 187
    Individuals impacted: 17.552.619
    US schools impacted: 17

    securityaffairs, to hacking Italian
    gcluley, to Cybersecurity
    @gcluley@mastodon.green avatar

    Dublin Airport staff pay details stolen by hackers after MOVEit attack at third-party provider Aon.

    Read more in my article on the Bitdefender blog:

    https://www.bitdefender.com/blog/hotforsecurity/dublin-airport-staff-pay-details-stolen-by-hackers-after-moveit-attack-at-third-party-provider/

    brett, to random
    0x58, to infosec

    🇮🇪 ✈️ Dublin Airport staff affected by cyber attack

    https://amp.rte.ie/amp/1392262/

    0x58, to Cybersecurity

    📨 Latest issue of my curated and list of resources for week /2023 is out! It includes, but not only:

    ➝ 🦠 🇺🇸 Schools say US teachers’ retirement fund was breached by hackers
    ➝ 🇨🇳 🇺🇸 Chinese spy did not collect information over US, says
    ➝ 🇨🇳 🦠 Says Supplier Hacked After Group Claims Attack on Chip Giant
    ➝ 🇷🇺 Russian Cybersecurity Executive Arrested for Alleged Role in 2012 Megahacks
    ➝ 🇷🇺 🛰️ Hackers attack Russian telecom provider, claim affiliation with
    ➝ 🇬🇧 ⚕️ More than a million patients’ details compromised after cyber attack
    ➝ 📊 🐛 releases new list of top 25 most dangerous software
    ➝ 🇷🇺 Pro-Russia DDoSia hacktivist project sees 2,400% membership increase
    ➝ 💻 🛡️ Browser boosts privacy with new local resources restrictions
    ➝ 🦠 🏦 Anatsa Banking Targeting Users in US, UK, Germany, Austria, and Switzerland
    ➝ 🇺🇸 💵 White House releases cybersecurity budget priorities for FY 2025
    ➝ 🇺🇸 🇧🇷 8Base Ransomware Spikes in Activity, Threatens U.S. and Brazilian Businesses
    ➝ 🇬🇧 🔐 speaks out against bill that could mandate scanning in iMessage
    ➝ 🇵🇭 2,700 People Tricked Into Working for Cybercrime Syndicates Rescued in
    ➝ 🇩🇪 ⚡️ Energy confirms data breach after MOVEit data-theft attack
    ➝ 🕵🏻‍♂️ 📱 , a phone tracking app spying on thousands, says it was hacked
    ➝ 🦠 💰 Prominent exchange infected with previously unseen Mac
    ➝ 🤖 📝 and ? It Starts with Summarization
    ➝ 🇺🇸 👨🏻‍🎓Hackers steal data of 45,000 New York City students in MOVEit breach
    ➝ 🇨🇦 ⛽️ Suncor Energy cyberattack impacts Petro-Canada gas stations
    ➝ 🦠 🕹️ Trojanized Super Mario Game Installer Spreads SupremeBot Malware
    ➝ 🇩🇪 💾 SSD missing from datacenter turns up on , sparking security investigation

    📚 This week's recommended reading is: "Alice and Bob Learn Application Security" by @SheHacksPurple

    Subscribe to the to have it piping hot in your inbox every week-end ⬇️

    https://infosec-mashup.santolaria.net/p/infosec-mashup-week-262023

    iagox86,

    @0x58 @SheHacksPurple really is the gift that won't stop hurting

    brett, to random

    CalPER, CalSTRS, TCRS & TIAA were impacted by a breach at PBI. Trinity & Middlebury colleges were impacted via TIAA. Middlebury was also impacted via NSC's MOVEit breach.

    Known victim count = 162
    Individuals impacted = 16,312,552

    https://techcrunch.com/2023/06/30/tiaa-teachers-retirement-fund-moveit/

    brett, to random

    has listed more victims including FIS. According to Wikipedia, "FIS facilitates the movement of roughly $9 trillion through the processing of approximately 75 billion transactions in service to more than 20,000 clients around the globe."

    There are now 158 known victims. Only 11 victims have confirmed the number of individuals impacted, but the total for those 11 incidents currently stands at >16 million.

    PogoWasRight, to random

    So an investigator from contacted me to ask if I still had unredacted data from a breach I reported last year and if I did, could I share it with them?

    And to my shock, they told me they still have no way for folks to upload databases. They could take fax or postal mail or an encrypted email.

    I was told last year that they were getting an upload system. Where is it?

    Luckily, what they requested wasn't too big and could be attached to an encrypted email. But if it was a database.... ?

    I really hope they get the resources they need to investigate data security breaches. They've issued a few settlements involving data security very recently and I hope that's a good sign of more to come.

    Heck, I don't even know who to tag on this one. :(

    PogoWasRight,

    @thomrstrom

    Holy heck! I just found out that yes, HHS was a victim of the MOVEit incident. They've notified Congress that more than 100,000 have been affected.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • slotface
  • ngwrru68w68
  • everett
  • mdbf
  • modclub
  • rosin
  • khanakhh
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • Youngstown
  • GTA5RPClips
  • InstantRegret
  • provamag3
  • kavyap
  • ethstaker
  • osvaldo12
  • normalnudes
  • tacticalgear
  • cisconetworking
  • cubers
  • Durango
  • Leos
  • anitta
  • tester
  • megavids
  • lostlight
  • All magazines