Many Public Salesforce Sites are Leaking Private Data

A shocking number of organizations — including banks and healthcare providers — are leaking private and sensitive information from their public Salesforce Community websites, KrebsOnSecurity has learned. The data exposures all stem from a misconfiguration in Salesforce Community that allows an unauthenticated user to access records that should only be available after logging in. Continue reading Many Public Salesforce Sites are Leaking Private Data

Hacker tied to D.C. Health Link breach says attack ‘born out of Russian patriotism’

The hacker who took responsibility for the D.C. Health Link breach claims to have targeted U.S. politicians out of allegiance for Russia.

The post Hacker tied to D.C. Health Link breach says attack ‘born out of Russian patriotism’ appeared first on CyberScoop.

Continue reading Hacker tied to D.C. Health Link breach says attack ‘born out of Russian patriotism’

Feds Charge NY Man as BreachForums Boss “Pompompurin”

The U.S. Federal Bureau of Investigation (FBI) this week arrested a New York man on suspicion of running BreachForums, a popular English-language cybercrime forum where some of the world biggest hacked databases routinely first show up for sale. The forum’s administrator “Pompompurin” has been a thorn in the side of the FBI for years, and BreachForums is widely considered a reincarnation of RaidForums, a remarkably similar crime forum that the FBI infiltrated and dismantled in 2022. Continue reading Feds Charge NY Man as BreachForums Boss “Pompompurin”

DC health exchange breach affects former national security officials, Congress

Leaked data from the capital’s health insurance broker exposes sensitive data belonging to the city’s powerbrokers.

The post DC health exchange breach affects former national security officials, Congress appeared first on CyberScoop.

Continue reading DC health exchange breach affects former national security officials, Congress