In: Former employees booked for stealing company data and sharing with competitor

Your insider threat reminder comes from Mumbai this morning. Vinay Dalvi reports that Mumbai police filed an FIR against two ex-employees of Baccarose Perfume and Beauty Products Private Limited in Worli for allegedly stealing the firm’s confiden… Continue reading In: Former employees booked for stealing company data and sharing with competitor

Deloitte Hacked – Brain Cipher Ransomware Group Allegedly Stolen 1 TB of Data

Balaji N reports: Notorious ransomware group Brain Cipher has claimed to have breached Deloitte UK, allegedly exfiltrating over 1 terabyte of sensitive data from the professional services giant. Brain Cipher is a ransomware group that emerged in June 2… Continue reading Deloitte Hacked – Brain Cipher Ransomware Group Allegedly Stolen 1 TB of Data

Express Services disclosed a data breach. One month later, they learned they had a second data security problem.

Express Employment Professionals (“Express Pros“) describes itself as a leading staffing agency in the U.S., “specializing in matching job seekers with the best jobs for their skills and experience.” Express Pros is the flagship… Continue reading Express Services disclosed a data breach. One month later, they learned they had a second data security problem.

U.S. officials urge Americans to use encrypted apps amid unprecedented cyberattack

Kevin Collier reports: Amid an unprecedented cyberattack on telecommunications companies such as AT&T and Verizon, U.S. officials have recommended that Americans use encrypted messaging apps to ensure their communications stay hidden from foreign h… Continue reading U.S. officials urge Americans to use encrypted apps amid unprecedented cyberattack

Failure to terminate access can be costly. Very costly.

Earlier today, DataBreaches posted an HHS OCR announcement of a settlement with a HIPAA covered entity. A former contractor had accessed its electronic medical record system on three occasions without authorization to retrieve PHI for use in potential … Continue reading Failure to terminate access can be costly. Very costly.

Major energy contractor reports ‘limited’ access to IT after ransomware locks files

Jessica Lyons reports: American energy contractor ENGlobal disclosed that access to its IT systems remains limited following a ransomware infection in late November. In a Monday filing with the US Securities and Exchange Commission (SEC), the company s… Continue reading Major energy contractor reports ‘limited’ access to IT after ransomware locks files

Over 600,000 Records, Including Background Checks, Vehicle, and Property Records Exposed Online: SL Data Services/Propertyrec

Jeremiah Fowler reports finding another exposed database with a lot of personal information. This one may belong to SL Data Services, LLC, though Fowler notes that the folders inside it were named with separate website domains. “It appears that t… Continue reading Over 600,000 Records, Including Background Checks, Vehicle, and Property Records Exposed Online: SL Data Services/Propertyrec

Starbucks Shifts to Manual Processes After Contractor Ransomware Attack

Waqas reports: As the holiday season kicks off, a ransomware attack on Blue Yonder, the world’s leading supply chain management software provider, has disrupted operations for Starbucks and other retailers worldwide. The attack, reportedly, affected th… Continue reading Starbucks Shifts to Manual Processes After Contractor Ransomware Attack