Data Breaches

  • Beverly Hills Plastic Surgeon Jaime Schwartz M.D. Sued for Not Timely Notifying Patients of Two Hacks
    by Dissent on February 22, 2025 at 1:24 pm

    Thereā€™s a follow-up on one of the plastic surgery ransomware attacks this site first reported in October 2023 after the Hunters International threat actors added Jaime S. Schwartz, MD, to their leak site with proof of claims. At the time, Dr. Schwartzā€™s practice was one of a number of attacks on plastic surgery practices where…

  • BlackBasta Ransomware Chatlogs Leaked Online
    by Dissent on February 21, 2025 at 12:17 pm

    Kevin Poireault reports: Netherlands-based threat intelligence firm Prodaft revealed on February 20 that internal chatlogs from the BlackBasta ransomware gang have been leaked online. BlackBasta is a ransomware strain that wasĀ first detected in April 2022. Early on, cyber threat intelligence experts assessed that the members of the group behind the ransomware were associated with other…

  • Niva Bupa investigates alleged data leak after cyber threat
    by Dissent on February 21, 2025 at 12:17 pm

    Aman Shukla reports: Niva Bupa Health Insurance Company Ltd has recently informed exchanges that the company received an email from an anonymous sender claiming a potential customer data breach. The company is actively investigating the matter and implementing preventive measures to mitigate risks. ā€¦Ā  In the exchange filing, the company shared, ā€œWe have received communication(s)…

  • CPPA Brings Enforcement Action Against National Public Data
    by Dissent on February 21, 2025 at 12:06 pm

    Thereā€™s been a state enforcement action against National Public Data, but itā€™s not for the data breach that resulted in the leak of 2.9 billion records. Itā€™s for failure to register with California as a data broker. Ā  News:Ā February 20, 2025 SACRAMENTO ā€” The Enforcement Division of the California Privacy Protection Agency (CPPA) has brought…

  • HHS Office for Civil Rights Imposes a $1,500,000 Civil Money Penalty Against Warby Parker in HIPAA Cybersecurity Hacking Investigation
    by Dissent on February 20, 2025 at 8:06 pm

    There is a follow-up to a breach previously reported on DataBreaches.net in December 2018. February 20 ā€” Today, the U.S. Department of Health and Human Services (HHS), Office for Civil Rights (OCR) announced a $1,500,000 civil money penalty against Warby Parker, Inc., a manufacturer and online retailer of prescription and non-prescription eyewear, concerning violations of…

  • Hackers Claim Data Breach at Bulgariaā€™s Supreme Administrative Court
    by Dissent on February 20, 2025 at 7:15 pm

    Novinite reports: The Ransomhouse hacker group has claimed responsibility for stealingĀ dataĀ from the Supreme AdministrativeĀ Courtā€™s information systems. The group published documents, including lists of employee names, personalĀ data, and leave applications, as evidence of the breach, according to cybersecurity website Questona. Along with the leaked documents, theĀ hackersĀ addressed theĀ courtā€™s management with a message urging them to make contact….

  • No need to hack when itā€™s leaking, Thursday edition: DM Clinical Research
    by Dissent on February 20, 2025 at 7:14 pm

    Another day, another massive leak. Researcher Jeremiah Fowler reports that he found unsecured data with 1,674,218 records belonging to DM Clinical Research. DM Clinical Research is a Texas-based network of more than 24 multi-therapeutic clinical trial sites involved in research on vaccines, internal medicine, pediatrics, gastroenterology, psychiatry, neurology, womenā€™s health, and more. DM Clinical Researchā€™s…

  • Meet NailaoLocker: a ransomware distributed in Europe by ShadowPad and PlugX backdoors
    by Dissent on February 20, 2025 at 2:18 pm

    Marine Pichon and Alexis Bonnefoi of Orange Cyberdefense report: Last year, Orange Cyberdefenseā€™s CERT investigated a series of incidents from an unknown threat actor leveraging both ShadowPad and PlugX. Tracked asĀ Green NailaoĀ (ā€œNailaoā€ meaning ā€œcheeseā€ in Chinese ā€“ a topic our World Watch CTI teamĀ holdsĀ in high regard), the campaign impacted severalĀ European organizations, including in theĀ healthcareĀ vertical, during…

  • Signals of Trouble: Multiple Russia-Aligned Threat Actors Actively Targeting Signal Messenger
    by Dissent on February 20, 2025 at 2:10 pm

    Dan Black of Googleā€™s Threat Intelligence Group writes: Google Threat Intelligence Group (GTIG) has observed increasing efforts from several Russia state-aligned threat actors to compromise Signal Messenger accounts used by individuals of interest to Russiaā€™s intelligence services. While this emerging operational interest has likely been sparked by wartime demands to gain access to sensitive government…

  • FBI and CISA Warn of Ghost Ransomware
    by Dissent on February 20, 2025 at 2:09 pm

    Waqas reports: A joint advisory from the Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and the Multi-State Information Sharing and Analysis Center (MS-ISAC) reveals the ongoing threat of Ghost ransomware, also known as Cring. Active since early 2021, this group, operating out ofĀ China, has targeted organizations in over 70 countries, impacting…

Share Websitecyber