- Beverly Hills Plastic Surgeon Jaime Schwartz M.D. Sued for Not Timely Notifying Patients of Two Hacksby Dissent on February 22, 2025 at 1:24 pm
Thereās a follow-up on one of the plastic surgery ransomware attacks this site first reported in October 2023 after the Hunters International threat actors added Jaime S. Schwartz, MD, to their leak site with proof of claims. At the time, Dr. Schwartzās practice was one of a number of attacks on plastic surgery practices where…
- BlackBasta Ransomware Chatlogs Leaked Onlineby Dissent on February 21, 2025 at 12:17 pm
Kevin Poireault reports: Netherlands-based threat intelligence firm Prodaft revealed on February 20 that internal chatlogs from the BlackBasta ransomware gang have been leaked online. BlackBasta is a ransomware strain that wasĀ first detected in April 2022. Early on, cyber threat intelligence experts assessed that the members of the group behind the ransomware were associated with other…
- Niva Bupa investigates alleged data leak after cyber threatby Dissent on February 21, 2025 at 12:17 pm
Aman Shukla reports: Niva Bupa Health Insurance Company Ltd has recently informed exchanges that the company received an email from an anonymous sender claiming a potential customer data breach. The company is actively investigating the matter and implementing preventive measures to mitigate risks. ā¦Ā In the exchange filing, the company shared, āWe have received communication(s)…
- CPPA Brings Enforcement Action Against National Public Databy Dissent on February 21, 2025 at 12:06 pm
Thereās been a state enforcement action against National Public Data, but itās not for the data breach that resulted in the leak of 2.9 billion records. Itās for failure to register with California as a data broker. Ā News:Ā February 20, 2025 SACRAMENTO ā The Enforcement Division of the California Privacy Protection Agency (CPPA) has brought…
- HHS Office for Civil Rights Imposes a $1,500,000 Civil Money Penalty Against Warby Parker in HIPAA Cybersecurity Hacking Investigationby Dissent on February 20, 2025 at 8:06 pm
There is a follow-up to a breach previously reported on DataBreaches.net in December 2018. February 20 ā Today, the U.S. Department of Health and Human Services (HHS), Office for Civil Rights (OCR) announced a $1,500,000 civil money penalty against Warby Parker, Inc., a manufacturer and online retailer of prescription and non-prescription eyewear, concerning violations of…
- Hackers Claim Data Breach at Bulgariaās Supreme Administrative Courtby Dissent on February 20, 2025 at 7:15 pm
Novinite reports: The Ransomhouse hacker group has claimed responsibility for stealingĀ dataĀ from the Supreme AdministrativeĀ Courtās information systems. The group published documents, including lists of employee names, personalĀ data, and leave applications, as evidence of the breach, according to cybersecurity website Questona. Along with the leaked documents, theĀ hackersĀ addressed theĀ courtās management with a message urging them to make contact….
- No need to hack when itās leaking, Thursday edition: DM Clinical Researchby Dissent on February 20, 2025 at 7:14 pm
Another day, another massive leak. Researcher Jeremiah Fowler reports that he found unsecured data with 1,674,218 records belonging to DM Clinical Research. DM Clinical Research is a Texas-based network of more than 24 multi-therapeutic clinical trial sites involved in research on vaccines, internal medicine, pediatrics, gastroenterology, psychiatry, neurology, womenās health, and more. DM Clinical Researchās…
- Meet NailaoLocker: a ransomware distributed in Europe by ShadowPad and PlugX backdoorsby Dissent on February 20, 2025 at 2:18 pm
Marine Pichon and Alexis Bonnefoi of Orange Cyberdefense report: Last year, Orange Cyberdefenseās CERT investigated a series of incidents from an unknown threat actor leveraging both ShadowPad and PlugX. Tracked asĀ Green NailaoĀ (āNailaoā meaning ācheeseā in Chinese ā a topic our World Watch CTI teamĀ holdsĀ in high regard), the campaign impacted severalĀ European organizations, including in theĀ healthcareĀ vertical, during…
- Signals of Trouble: Multiple Russia-Aligned Threat Actors Actively Targeting Signal Messengerby Dissent on February 20, 2025 at 2:10 pm
Dan Black of Googleās Threat Intelligence Group writes: Google Threat Intelligence Group (GTIG) has observed increasing efforts from several Russia state-aligned threat actors to compromise Signal Messenger accounts used by individuals of interest to Russiaās intelligence services. While this emerging operational interest has likely been sparked by wartime demands to gain access to sensitive government…
- FBI and CISA Warn of Ghost Ransomwareby Dissent on February 20, 2025 at 2:09 pm
Waqas reports: A joint advisory from the Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and the Multi-State Information Sharing and Analysis Center (MS-ISAC) reveals the ongoing threat of Ghost ransomware, also known as Cring. Active since early 2021, this group, operating out ofĀ China, has targeted organizations in over 70 countries, impacting…
