The Breach News

European Regulators Investigate DeepSeek – DataBreachToday

Artificial Intelligence & Machine Learning, General Data Protection Regulation (GDPR), Next-Generation Technologies & Secure Development Privacy Concerns Arise from Data Storage Practices in China Akshaya Asokan (asokan_akshaya) • January 29, 2025 Residents of a Tuscan village can no longer access DeepSeek from Apple’s or Google’s app stores. (Image: Shutterstock) In…

Read MoreEuropean Regulators Investigate DeepSeek – DataBreachToday

Daytrip Data Breach Exposes Travel Information of Nearly 500,000 Users

Data Breach at Daytrip Exposes Customer Information Travel service Daytrip has confirmed a significant data breach affecting approximately 470,000 customer records and over 762,000 travel orders. This incident raises alarms about the security protocols of third-party vendors, as the leak reportedly occurred through a subcontractor responsible for managing an unsecured…

Read MoreDaytrip Data Breach Exposes Travel Information of Nearly 500,000 Users

Mishing Cyber Attack Triggered by Malicious PDF

Phishing attacks targeting insecure communication channels have become increasingly prevalent, allowing cybercriminals to deceive victims into unwittingly divulging sensitive information. A particularly worrying evolution in this strategy is the emergence of “Mishing,” where attackers specifically exploit mobile devices through phishing links disseminated via SMS or popular messaging platforms like WhatsApp,…

Read MoreMishing Cyber Attack Triggered by Malicious PDF

Adopting a Threat-Responsive Strategy for Vulnerability Management

Cyber threats are evolving rapidly, necessitating a more than just basic system patching approach to vulnerability management. As part of Cyber Rhino Threat Week—scheduled from December 9-13, 2024—that aimed to disseminate threat intelligence insights and best practices among customers, partners, and the broader industry, a panel discussion was held to…

Read MoreAdopting a Threat-Responsive Strategy for Vulnerability Management

What Caused the Breach Total to Soar to 190 Million?

Data Breach Notification, Data Security, Fraud Management & Cybercrime Experts Discuss the Complexity of UnitedHealth Group’s Recent Data Breach Assessment Marianne Kolbasuk McGee (HealthInfoSec) • January 28, 2025 UnitedHealth Group has announced the data breach has affected approximately 190 million individuals due to the ransomware attack on Change Healthcare in…

Read MoreWhat Caused the Breach Total to Soar to 190 Million?

Vulnerabilities in Azure Key Vault May Expose Sensitive Data Following Entra ID Breach

Security Breach Exposes Vulnerabilities in Azure Key Vault Access Policies In a recent analysis, cybersecurity professionals uncovered significant vulnerabilities associated with Azure Key Vault’s access policies following the compromise of Entra ID (formerly Azure Active Directory) credentials. The detailed walkthrough illustrates how attackers can manipulate these access policies to retrieve…

Read MoreVulnerabilities in Azure Key Vault May Expose Sensitive Data Following Entra ID Breach

Hackers Announce Second Breach at HP Enterprise and Aim to Sell Access

IntelBroker, a hacker notorious for previous cyber incidents, has once again targeted Hewlett-Packard Enterprise (HPE), claiming to have infiltrated the company’s internal systems. This latest assertion involves the theft of around 500 MB of data from HPE’s repositories; while this amount is smaller than typical breaches, it raises significant security…

Read MoreHackers Announce Second Breach at HP Enterprise and Aim to Sell Access