The Breach News

Senate Finance Committee Chair Requests Additional Details on Change Healthcare Cyberattack – HIPAA Journal

The Senate Finance Committee Chair is requesting additional details regarding the recent cyberattack on Change Healthcare, highlighting ongoing concerns about the security of sensitive healthcare information. This incident comes amidst a growing number of cyber incidents targeting the healthcare sector, underscoring its vulnerability in the face of advancing cyber threats.…

Read MoreSenate Finance Committee Chair Requests Additional Details on Change Healthcare Cyberattack – HIPAA Journal

Critical OpenSSH Vulnerability Could Enable Root RCE on Linux Systems

OpenSSH Vulnerability Exposes Critical Risk to Linux Systems In a significant development for cybersecurity, the maintainers of OpenSSH have issued urgent security updates addressing a severe vulnerability that may allow unauthenticated remote code execution with root-level access on glibc-based Linux systems. This vulnerability, designated CVE-2024-6387 and dubbed "regreSSHion," resides within…

Read MoreCritical OpenSSH Vulnerability Could Enable Root RCE on Linux Systems

Researchers Introduce AI Tool for Identifying Zero-Day Vulnerabilities

Artificial Intelligence & Machine Learning, Governance & Risk Management, Next-Generation Technologies & Secure Development New Vulnerability Tool Uncovers Flaws in OpenAI and Nvidia APIs Used in GitHub Projects Akshaya Asokan (@asokan_akshaya) • October 21, 2024 Protect AI utilizes Anthropic’s Claude LLM to operate the vulnerability detection tool. (Image: Shutterstock) In…

Read MoreResearchers Introduce AI Tool for Identifying Zero-Day Vulnerabilities

CPS Loses DVDs Containing Interviews of Child Sex Abuse Victims

The Crown Prosecution Service (CPS) of the UK has come under scrutiny after it lost DVDs containing sensitive interviews with child sex abuse victims during a postal transfer. This incident highlights ongoing vulnerabilities in data handling practices among organizations entrusted with sensitive information. The organization has been fined £325,000 for…

Read MoreCPS Loses DVDs Containing Interviews of Child Sex Abuse Victims

Securing Collaboration: 6 Essential Slack Hacks for Protecting Sensitive Data

In a recent incident highlighting the fragility of sensitive data security in major corporations, Disney has become the latest victim of a significant data breach. The attack was executed by a hacktivist group named NullBulge, which managed to infiltrate Disney’s internal communications within its Slack messaging platform, extracting over 1.2…

Read MoreSecuring Collaboration: 6 Essential Slack Hacks for Protecting Sensitive Data

Dental Center Chain Reaches $2.7 Million Settlement in Data Breach Lawsuit

Legislation & Litigation , Standards, Regulations & Compliance 2023 Cybersecurity Breach Impacted 1.9 Million Patients and Employees Marianne Kolbasuk McGee (HealthInfoSec) • October 21, 2024 Great Expressions Dental Centers (Image: Shutterstock) In a significant data breach, Great Expressions Dental Centers, a Michigan-based dental organization operating 250 offices across nine states,…

Read MoreDental Center Chain Reaches $2.7 Million Settlement in Data Breach Lawsuit

U.S. Imposes Sanctions on 6 Iranian Officials Over Cyberattacks on Critical Infrastructure

The U.S. Treasury Department’s Office of Foreign Assets Control (OFAC) has imposed sanctions on six individuals affiliated with the Iranian intelligence agency, attributed to cyberattacks targeting critical infrastructure in the United States and globally. This action underscores rising concerns related to cyber threats posed by state-sponsored actors. The individuals sanctioned…

Read MoreU.S. Imposes Sanctions on 6 Iranian Officials Over Cyberattacks on Critical Infrastructure

Internet Archive (Archive.org) Breached Again Within a Month

Internet Archive Faces Repeated Cybersecurity Challenges Amid Major Breaches In October 2024, the Internet Archive, a non-profit organization founded by Brewster Kahle to safeguard the digital history of the internet, encountered significant security setbacks resulting in multiple data breaches. The first incident, occurring on October 9, involved both a data…

Read MoreInternet Archive (Archive.org) Breached Again Within a Month