One year after it started, LendUs discloses that they had a breach

As you read the following press release, note that they do not tell us when they first discovered that there might have been a security breach or incident.  Nor do they tell us how they first discovered it.  And what’s with this “out of an … Continue reading One year after it started, LendUs discloses that they had a breach

SEC’s breach notification proposal one step closer to a final vote

Tonya Riley reports: The Securities and Exchange Commission voted Wednesday 3-1 to approve a recommendation for tighter mandatory cybersecurity requirements for financial institutions. The proposed rule will now open to public comment before a final vo… Continue reading SEC’s breach notification proposal one step closer to a final vote

The high cost of mishandling data breaches, security reporting for financial services

Karen Hoffman reminds readers of the costs of poor security, reporting, in part: Last month, the U.S. Securities and Exchange Commission (SEC) fined Chase $125 million due to employees’ insecure practices, namely using WhatsApp and personal email… Continue reading The high cost of mishandling data breaches, security reporting for financial services

Br: Acesso Soluções de Pagamento customers had Pix key data leaked

Abhishek Pratap reports: The Central Bank (BC) reported this Friday (21) that about 160,100 customers of Acesso Soluções de Pagamento had Pix key data leaked. It is not the first time that BC has reported data leakage. Since the launch of the instant p… Continue reading Br: Acesso Soluções de Pagamento customers had Pix key data leaked

Data theft at Desjardins: the ex-employee wanted “no media coverage”

Natasha Kumar reports: Documents made public by the court on Monday at the request of the media reveal new details about the intentions of the ex-Desjardins employee unmasked by the financial institution in the spring of 2019. […] During this mee… Continue reading Data theft at Desjardins: the ex-employee wanted “no media coverage”

FTC Finalizes Order with Mortgage Analytics Firm, Requiring it to Strengthen Security Safeguards, Increase Oversight of Vendors

In December, 2020, the FTC announced a proposed settlement with Texas-based Ascension Data & Analytics after a security breach involving one of its vendors resulted in the exposure of, and unauthorized access to, consumers’ mortgage applicati… Continue reading FTC Finalizes Order with Mortgage Analytics Firm, Requiring it to Strengthen Security Safeguards, Increase Oversight of Vendors

Desjardins reaches $200M class action settlement in wake of data breach

The Canadian Press reports that Mouvement Desjardins has reached a $200-million settlement with plaintiffs in a class action suit launched after a massive data breach in June 2019. The settlement has to be approved by the Superior Court of Quebec. Read… Continue reading Desjardins reaches $200M class action settlement in wake of data breach

Za: Standard Bank on delay in telling public about data breach: ‘We complied with the law’

Londiwe Buthelezi reports: Standard Bank says it took several days to disclose the latest data breach on its LookSee platform because its immediate focus was to get to the bottom of the issue first and understand how serious it was. The banking group i… Continue reading Za: Standard Bank on delay in telling public about data breach: ‘We complied with the law’