Tag cybersecurity

Australia Imposes First-Ever Fine Under Privacy Act for Laboratory Breach

Data Breach Notification, Data Privacy, Data Security Australian Clinical Labs Fined $5.8 Million for 2022 Data Theft Incident Marianne Kolbasuk McGee (HealthInfoSec) • October 9, 2025 An Australian court has mandated a $5.8 million penalty against Australian Clinical Labs for deficiencies in data management during a data theft incident in…

Read MoreAustralia Imposes First-Ever Fine Under Privacy Act for Laboratory Breach

Camden Accounting Firm’s Data Breach Leaves Residents Seeking Clarity

COLUMBIA, S.C. (WIS) – Residents of Camden find themselves grappling with uncertainty after receiving alarming notifications from Sheheen, Hancock & Godwin, LLP, a local accounting firm, indicating that their personal data could have been compromised. A detailed statement posted on the firm’s website revealed that an unidentified entity downloaded sensitive…

Read MoreCamden Accounting Firm’s Data Breach Leaves Residents Seeking Clarity

Russian Hackers Maintained Secret Access to Ukraine’s Telecom Giant for Months

Ukrainian cybersecurity officials have reported a significant breach within the telecommunications company Kyivstar, attributed to the Russian state-sponsored hacking group known as Sandworm. The intrusion is reported to have started as early as May 2023, following initial reconnaissance efforts that may have begun even earlier. This breach was first highlighted…

Read MoreRussian Hackers Maintained Secret Access to Ukraine’s Telecom Giant for Months

Fortinet Issues Warning About New Zero-Day Exploit Targeting Firewalls with Exposed Interfaces

Recent reports have highlighted a concerning campaign targeting Fortinet FortiGate firewalls with exposed management interfaces on the public internet. Released by cybersecurity firm Arctic Wolf, this analysis reveals significant unauthorized access to these critical devices. The attackers were able to log in as administrators, create new accounts, authenticate through SSL…

Read MoreFortinet Issues Warning About New Zero-Day Exploit Targeting Firewalls with Exposed Interfaces

Critical Vulnerabilities in SimpleHelp Enable File Theft, Privilege Escalation, and Remote Code Execution Attacks

Critical Flaws Discovered in SimpleHelp Remote Access Software: Urgent Action Required Recent cybersecurity research has unveiled several significant vulnerabilities in the SimpleHelp remote access software, raising concerns for businesses relying on this platform. These flaws, identified by Horizon3.ai researcher Naveen Sunkavally, posed risks including potential information disclosure, privilege escalation, and…

Read MoreCritical Vulnerabilities in SimpleHelp Enable File Theft, Privilege Escalation, and Remote Code Execution Attacks

As Digital Payments Surge, Here’s How Small Retailers Can Tackle Cybersecurity Threats

Cybersecurity Vulnerabilities: SMEs as Prime Targets Many small and medium-sized enterprises (SMEs) operate under the erroneous belief that their size shields them from the attentions of cybercriminals. This misconception could not be further from the truth. In fact, SMEs are increasingly becoming prime targets for a range of cyber threats,…

Read MoreAs Digital Payments Surge, Here’s How Small Retailers Can Tackle Cybersecurity Threats

Researchers Discover Exploit Bypassing Active Directory Restrictions on NTLMv1

Recent findings by cybersecurity experts have unveiled a considerable vulnerability in the Microsoft Active Directory Group Policy designed to disable the authentication method NT LAN Manager (NTLM) version 1. Researchers indicate that a misconfiguration within on-premises applications is capable of easily bypassing this Group Policy measure. According to Dor Segal,…

Read MoreResearchers Discover Exploit Bypassing Active Directory Restrictions on NTLMv1

Serious Vulnerabilities in WGS-804HPT Switches Allow for Remote Code Execution and Network Exploitation

Planet Technology’s WGS-804HPT Switches Vulnerable to Remote Code Execution Cybersecurity experts have unveiled three critical vulnerabilities in Planet Technology’s WGS-804HPT industrial switches, which could be exploited to facilitate pre-authentication remote code execution. These switches are integral to numerous building and home automation systems, serving a variety of networking functions. Tomer…

Read MoreSerious Vulnerabilities in WGS-804HPT Switches Allow for Remote Code Execution and Network Exploitation