Tag cybersecurity

Fidelity Investments Data Breach Exposes Personal Information of Over 77,000 Customers

Fidelity Investments has reported a significant data breach affecting the personal information of over 77,000 customers. The breach involved unauthorized access to sensitive data, including Social Security numbers and driver’s licenses, although no Fidelity accounts were compromised. The incident is concerning, given that Fidelity is one of the world’s largest…

Read MoreFidelity Investments Data Breach Exposes Personal Information of Over 77,000 Customers

New Zero-Day Vulnerability in Apache OFBiz ERP Enables Remote Code Execution

The cybersecurity landscape is facing significant concern as a recently disclosed zero-day vulnerability in the Apache OFBiz open-source enterprise resource planning (ERP) system poses severe risks to its users. This vulnerability, categorized as CVE-2024-38856, has been assigned a critical CVSS score of 9.8 out of a possible 10. It predominantly…

Read MoreNew Zero-Day Vulnerability in Apache OFBiz ERP Enables Remote Code Execution

Google Addresses Newly Discovered Android Kernel Vulnerability Actively Being Exploited

Google has recently mitigated a significant security vulnerability within the Android kernel, a flaw that is reportedly being actively exploited. The vulnerability, designated as CVE-2024-36971, has serious implications, allowing for remote code execution within the kernel. In its August 2024 Android security bulletin, Google indicated that this vulnerability might be…

Read MoreGoogle Addresses Newly Discovered Android Kernel Vulnerability Actively Being Exploited

Vulnerabilities in Roundcube Webmail Enable Cybercriminals to Access Emails and Passwords

Cybersecurity Flaws Discovered in Roundcube Webmail Could Lead to Data Theft Recent analysis by cybersecurity experts has unveiled critical vulnerabilities within the Roundcube webmail software, which could be manipulated by attackers to run malicious JavaScript in a user’s web browser, potentially exposing sensitive information stored in their email accounts. The…

Read MoreVulnerabilities in Roundcube Webmail Enable Cybercriminals to Access Emails and Passwords

Fidelity Data Breach Exposes Personal Information of 77,000 Customers: Steps to Take if You’re Impacted

Fidelity Investments Experiences Data Breach Affecting 77,000 Customers In a noteworthy cybersecurity incident, Fidelity Investments has reported a substantial data breach that compromises the personal information of approximately 77,000 customers. The breach occurred on August 17, 2024, and was detected just two days later, on August 19. The investment firm…

Read MoreFidelity Data Breach Exposes Personal Information of 77,000 Customers: Steps to Take if You’re Impacted

Marriott Settles Data Breach Lawsuit with $50 Million Payout to Users Across All 50 States

Marriott Agrees to $51 Million Settlement Following Data Breaches Marriott International, in conjunction with Starwood Hotels, has agreed to a significant settlement of $51 million as a consequence of their inadequate protection of user data during a series of substantial data breaches. The financial penalty is set to benefit approximately…

Read MoreMarriott Settles Data Breach Lawsuit with $50 Million Payout to Users Across All 50 States

FTC Resolves Prolonged Investigation into Marriott’s Security Shortcomings

Marriott International has taken significant steps to enhance its information security protocols in light of a series of data breaches that collectively impacted approximately 344 million individuals globally between 2014 and 2020. The Federal Trade Commission (FTC) announced the proposed settlement on Wednesday, which includes commitments from Marriott to improve…

Read MoreFTC Resolves Prolonged Investigation into Marriott’s Security Shortcomings

Snowflake Issues Warning: Credential Theft Campaign Affects Cloud Customers

Cloud computing and analytics company Snowflake has reported that a select group of its clients is under targeted attack. In a recent joint statement, Snowflake, alongside cybersecurity firms CrowdStrike and Mandiant, clarified that there is no evidence linking this activity to a vulnerability, misconfiguration, or breach within their platform. Additionally,…

Read MoreSnowflake Issues Warning: Credential Theft Campaign Affects Cloud Customers