The Breach News

Two Major Vulnerabilities Discovered in Alibaba Cloud’s PostgreSQL Databases

Recent discoveries have unveiled a series of critical vulnerabilities affecting Alibaba Cloud’s ApsaraDB RDS for PostgreSQL and AnalyticDB for PostgreSQL. These flaws pose significant risks by potentially enabling unauthorized access to sensitive data across tenant environments. According to a report by cloud security firm Wiz, these vulnerabilities could have allowed…

Read MoreTwo Major Vulnerabilities Discovered in Alibaba Cloud’s PostgreSQL Databases

Major Security Vulnerability in All Blizzard Games Could Allow Hackers to Take Over Millions of PCs

Severe Vulnerability Discovered in Blizzard Games: Immediate Attention Required A critical vulnerability has been identified in Blizzard Entertainment’s suite of games, potentially exposing millions of players to exploitation via remote code execution. This flaw was uncovered by Tavis Ormandy, a researcher from Google’s Project Zero team, and can be exploited…

Read MoreMajor Security Vulnerability in All Blizzard Games Could Allow Hackers to Take Over Millions of PCs

Iran’s Digital Surveillance System Is Nearly Operational

Recent analysis has unveiled an extensive surveillance apparatus employed by the Iranian regime, comprising CCTV networks, facial-recognition technologies, and various applications designed to capture and monitor private communications. These tools empower security agencies to perform pervasive and precise monitoring of the populace, a sentiment echoed by Mahdi Saremifar, an analyst…

Read MoreIran’s Digital Surveillance System Is Nearly Operational

Navigating the Complexity of Aligning Substance Use Privacy Regulations with HIPAA

Legal expert David Holtzman, founder of HITprivacy LLC, highlighted the complexities surrounding the impending realignment of federal regulations that govern the confidentiality of substance use disorder patient records under 42 CFR Part 2, particularly in relation to HIPAA’s privacy requirements. As the updates unfold, Holtzman emphasizes that the changes are…

Read MoreNavigating the Complexity of Aligning Substance Use Privacy Regulations with HIPAA

Munson and Hagerty: Latest Traverse City Organizations Affected by Significant Data Breaches

Data Breach at Munson Healthcare Affects 120,000 Patients In a significant cybersecurity incident, Munson Healthcare recently disclosed that approximately 120,000 patients may have had their personal information compromised due to a breach involving a third-party vendor. This situation attracted the attention of Michigan’s Attorney General, Dana Nessel, who issued a…

Read MoreMunson and Hagerty: Latest Traverse City Organizations Affected by Significant Data Breaches

Cisco and VMware Issue Security Updates to Address Critical Vulnerabilities in Their Products

Recently, Cisco and VMware disclosed critical security vulnerabilities in their software that could potentially be exploited by adversaries, leading to unauthorized code execution on targeted systems. At the forefront of these vulnerabilities is a critical command injection flaw identified in Cisco Industrial Network Director, tracked as CVE-2023-20036, which has an…

Read MoreCisco and VMware Issue Security Updates to Address Critical Vulnerabilities in Their Products

France Telecom Orange Breached Again: Personal Data of 1.3 Million Customers Compromised

Data Breach at Orange: 1.3 Million Customers Affected In a significant cybersecurity incident, French telecommunications giant Orange has reported a second major data breach within a span of just three months. This latest attack has resulted in the theft of personal information belonging to 1.3 million customers from its online…

Read MoreFrance Telecom Orange Breached Again: Personal Data of 1.3 Million Customers Compromised