Tens of thousands of taxpayer accounts hacked as CRA repeatedly paid out millions in bogus refunds

Harvey Cashore, Daniel Leblanc report: At the height of this year’s tax season, the Canada Revenue Agency discovered that hackers had obtained confidential data used by one of the country’s largest tax preparation firms, H&R Block Canad… Continue reading Tens of thousands of taxpayer accounts hacked as CRA repeatedly paid out millions in bogus refunds

Postel S.p.A. and the 2023 Data Breach: The Medusa Attack and Sanctions from the Data Protection Authority

Over on SuspectFile, Marco A. De Felice writes: In August 2023, Postel S.p.A., a leading Italian company in the postal services and digital communications sector, became the victim of a serious cyberattack. The Medusa cybercriminal group exploited unre… Continue reading Postel S.p.A. and the 2023 Data Breach: The Medusa Attack and Sanctions from the Data Protection Authority

SEC Charges Four Companies With Misleading Cyber Disclosures

Washington D.C., Oct. 22, 2024 — The Securities and Exchange Commission today charged four current and former public companies – Unisys Corp., Avaya Holdings Corp., Check Point Software Technologies Ltd, and Mimecast Limited – with making materially mi… Continue reading SEC Charges Four Companies With Misleading Cyber Disclosures

Microsoft bigwig says the Feds catching Chinese spies in Exchange Online is the cloud working as intended

Jessica Lyons reports: Lawmakers on Thursday grilled Microsoft president Brad Smith about the Windows giant’s businesses dealing in China — and the super-corp’s repeated security failings — at a time when Beijing-backed spies are accused of… Continue reading Microsoft bigwig says the Feds catching Chinese spies in Exchange Online is the cloud working as intended

Insider threat: Months after being fired, former employee accessed company’s computer test system and deleted servers, causing it to lose S$918,000

CNA reports: Singapore: Upset that he was fired, an employee accessed his former company’s computer test systems and deleted 180 virtual servers, costing them about S$918,000 (US$678,000). Kandula Nagaraju, 39, was sentenced to two years and eight mont… Continue reading Insider threat: Months after being fired, former employee accessed company’s computer test system and deleted servers, causing it to lose S$918,000

You permanently closed your business and then got hit with a ransomware attack. It just doesn’t seem fair, does it?

From a breach notification by civil law firm Santoro Whitmire in Las Vegas: Recently, after the firm permanently closed its business, we were the target of a ransomware attack. Ransomware is a computer virus that encrypts computer systems until and unl… Continue reading You permanently closed your business and then got hit with a ransomware attack. It just doesn’t seem fair, does it?

Snowflake to Close Hacking Probe Into Attack Targeting Clients

Charles Gorrivan and Brody Ford report: Snowflake Inc. plans to close its own investigation this week into a hacking campaign that ensnared as many as 165 of its customers. The cloud data and analytics company hasn’t detected any unauthorized access in… Continue reading Snowflake to Close Hacking Probe Into Attack Targeting Clients

What Snowflake isn’t saying about its customer data breaches

Zack Whittaker reports: Snowflake’s security problems following a recent spate of customer data thefts are, for want of a better word, snowballing. After Ticketmaster was the first company to link its recent data breach to the cloud data company Snowfl… Continue reading What Snowflake isn’t saying about its customer data breaches