The Breach News

Severe Flaws in JetBrains TeamCity On-Premises Could Result in Server Takeovers

Recently, JetBrains disclosed critical security vulnerabilities in its TeamCity On-Premises software that pose serious risks to users. These vulnerabilities, identified as CVE-2024-27198 with a CVSS score of 9.8, and CVE-2024-27199 with a score of 7.3, were resolved in version 2023.11.4, which affects all TeamCity versions up to 2023.11.3. The vulnerabilities…

Read MoreSevere Flaws in JetBrains TeamCity On-Premises Could Result in Server Takeovers

Exclusive: SonicWall Breached Through 0-Day Vulnerabilities in Its VPN Software

SonicWall, a leading provider in internet security solutions such as firewalls and VPNs, recently acknowledged that it has been targeted in a sophisticated cyberattack affecting its internal infrastructure. The San Jose-based firm reported that the intrusion exploited zero-day vulnerabilities associated with its secure remote access offerings, specifically the NetExtender VPN…

Read MoreExclusive: SonicWall Breached Through 0-Day Vulnerabilities in Its VPN Software

Equifax to Pay Up to $700 Million to Settle 2017 Data Breach Lawsuit

Equifax, a leading credit-reporting agency in the United States, is facing significant financial repercussions totaling up to $700 million in penalties due to extensive state and federal inquiries into a catastrophic data breach in 2017. This breach exposed sensitive personal and financial information of approximately 150 million Americans, representing nearly…

Read MoreEquifax to Pay Up to $700 Million to Settle 2017 Data Breach Lawsuit

Key Areas of Focus for HHS

Federal Enforcement of Information Blocking Regulations Begins Nearly a decade after the enactment of information blocking regulations under the 21st Century Cures Act, federal enforcement efforts are finally gaining momentum. The U.S. Department of Health and Human Services (HHS) is intensifying its focus on practices that impede access to, exchange…

Read MoreKey Areas of Focus for HHS

Regulators Shift Focus to Companies’ System Security Following Coupang Data Breaches

Lee Chan-jin, Governor of the Financial Supervisory Service, speaks at a press conference in Yeouido, Seoul, on December 1. [FSS] In the wake of significant data breaches affecting major companies like Upbit and Coupang, South Korean financial authorities are advocating for legal reforms aimed at bolstering the security frameworks of…

Read MoreRegulators Shift Focus to Companies’ System Security Following Coupang Data Breaches

Urgent: Apple Releases Critical Updates to Address Actively Exploited Zero-Day Vulnerabilities

Apple Releases Critical Security Updates to Address Exploited Vulnerabilities Apple has issued new security updates aimed at mitigating significant flaws in its operating systems, including vulnerabilities that have reportedly been exploited in the wild. The updates come in response to the discovery of two critical memory corruption issues affecting the…

Read MoreUrgent: Apple Releases Critical Updates to Address Actively Exploited Zero-Day Vulnerabilities

Why Cybersecurity Measures Remain Weak in Rural Hospitals

In an increasingly complex cyber landscape, rural and small community hospitals are grappling with mounting cybersecurity threats, according to Jackie Mattingly, senior director at Clearwater, a consulting firm specializing in privacy and security. Faced with shrinking resources and staffing deficits, these hospitals are particularly vulnerable to sophisticated cyberattacks. Mattingly highlights…

Read MoreWhy Cybersecurity Measures Remain Weak in Rural Hospitals

Authorities Warn that Hacked User Data from Coupang Could Facilitate Scams and Identity Theft

Coupang informs customers about data breach on Nov. 30. [KIM HYUN-DONG] Coupang, a prominent South Korean e-commerce platform, has disclosed a significant data breach affecting approximately 33.7 million user accounts. The incident raises alarms over potential secondary threats, such as phishing scams and identity theft. The compromised data set includes…

Read MoreAuthorities Warn that Hacked User Data from Coupang Could Facilitate Scams and Identity Theft