Alleged Home Depot Data Breach: IntelBroker Leaks 22,000 Employee Data

By Waqas
Another day, another data breach by IntelBroker hacker targeting a US-based giant!
This is a post from HackRead.com Read the original post: Alleged Home Depot Data Breach: IntelBroker Leaks 22,000 Employee Data
Continue reading Alleged Home Depot Data Breach: IntelBroker Leaks 22,000 Employee Data

SolarWinds hack spotlights a thorny legal problem: Who to blame for espionage?

Every massive breach comes with a trail of lawsuits and regulatory ramifications that can last for years. Home Depot, for instance, only last month settled with a group of state attorneys general over its 2014 breach. The SolarWinds security incident that U.S. officials have pinned on state-sponsored Russian hackers is unlike anything that came before, legal experts say, meaning the legal liability could take even longer to resolve in court. As Congress, federal government departments and corporations reckon with the vast sweep of the SolarWinds breach, there are still many more questions than answers. Fewer pieces of it are less certain than how it might play out in court, where companies and individuals alike stand to gain or lose. Many millions of dollars, corporate blame and years of finger-pointing are on the line. That’s because the targets — government agencies, and some major companies — aren’t the usual kind of […]

The post SolarWinds hack spotlights a thorny legal problem: Who to blame for espionage? appeared first on CyberScoop.

Continue reading SolarWinds hack spotlights a thorny legal problem: Who to blame for espionage?

Home Depot to pay states $17.5 million over massive 2014 data breach

U.S. states have reached a settlement over the mammoth 2014 Home Depot breach that will net them $17.5 million, plus an agreement from the home improvement retailer to strengthen its data security practices. The breach, which compromised 56 million payment card across the U.S., still ranks among the biggest data breaches ever. It’s been an expensive cleanup. Years after the attack, Home Depot estimated the cost at about $179 million and said it was likely to continue growing. The settlement with 46 states and the District of Columbia adds to the tally. It also comes one month after Home Depot suffered a data breach of its Canadian customers that was much smaller than the 2014 breach that was the subject of the U.S. settlement. “Instead of building a secure system, The Home Depot failed to protect consumers and put their data at risk,” New York Attorney General Letitia James said about the 2014 incident. […]

The post Home Depot to pay states $17.5 million over massive 2014 data breach appeared first on CyberScoop.

Continue reading Home Depot to pay states $17.5 million over massive 2014 data breach

Teardown: AppLights Personalized Projection

Listen, it hurts to hear, but somebody needs to say it. It’s over, OK? You’ve got to admit it and move on. Sure, you could get away with it for a week or two in January, but now it’s just getting weird. No matter how hard you fight it, the …read more

Continue reading Teardown: AppLights Personalized Projection

Equifax CISO Jamil Farshchi’s three-act, ‘shared fate’ security plan

Even in normal times, credit reporting agencies are never among the world’s most admired companies. So it’s easy to see why Equifax’s brand reputation has suffered immensely thanks to the massive breach that saw information on 148 million people taken from the company and two former executives charged with insider trading. New Equifax CISO Jamil Farshchi is working to overcome the “visceral” reaction he’s witnessed post-breach. A veteran of massive rehabilitation efforts via his time spent as CISO at Home Depot, Farshchi is embarking on a plan to move Atlanta-based Equifax beyond its security lapses to a position where the company is actually seen as security leader. In an exclusive interview with CyberScoop, Farshchi describes his “three-act plan” to secure Equifax, which includes having the entire company understand that cybersecurity doesn’t fall to the IT division. “Security isn’t just security’s job,” he said. “Everyone needs to feel it through and […]

The post Equifax CISO Jamil Farshchi’s three-act, ‘shared fate’ security plan appeared first on Cyberscoop.

Continue reading Equifax CISO Jamil Farshchi’s three-act, ‘shared fate’ security plan

Equifax names Home Depot infosec lead as new CISO

Home Depot Chief Information Security Officer Jamil Farshchi has been hired for the same position at Equifax, the credit monitoring company announced in a press release on Monday. Farschi was hired in 2015 as Home Depot’s CISO, a new position at the time, months after the home improvement retailer suffered its own data breach of 56 million credit cards. He also previously served as CISO for Time Warner and global vice president for information security at Visa. Equifax suffered a massive data breach in 2017 that exposed the personal data of 145.5 million people. The company’s chief information officer and chief security officer retired a few days after Equifax publicly disclosed the breach in September 2017. The CEO followed suit shortly after. At Equifax, Farschi “will assume company-wide leadership of work already underway to transform the company’s information security program, and collaborate with the industry to share best practices on information security,” the […]

The post Equifax names Home Depot infosec lead as new CISO appeared first on Cyberscoop.

Continue reading Equifax names Home Depot infosec lead as new CISO

Home Depot settles suit on card-data breach for $20 million, security pledges

Home Depot, the DIY retail giant that was robbed of the payment card details of 40 million customers in 2014, has settled a class action consumer lawsuit, agreeing to pay $13 million in cash compensation, spend $6.5 million on ID theft protection and adopt a series of measures to tighten its security. According to settlement papers filed this week and approved by a federal judge Wednesday, customers who had their personal or financial information compromised and registered last year to be part of the class can get reimbursed for losses from the massive data breach of up to $10,000 each. The restitution covers: any still-unreimbursed fraudulent charges on cards with stolen data; the costs and expense of identity theft or fraud; any losses losses caused by restricted access to funds like the costs of taking out a loan, or ATM withdrawal fees; and preventative costs against ID fraud like buying credit monitoring. Home Depot also agreed […]

The post Home Depot settles suit on card-data breach for $20 million, security pledges appeared first on Cyberscoop.

Continue reading Home Depot settles suit on card-data breach for $20 million, security pledges

Finding ESP8266 Inside Big-Box Store IoT Plugs

When we buy new shiny toys, we usually open them up to at least have a look. [Scott Gibson] does the same, apparently. He found an ESP8266 module inside the EcoPlug brand WiFi-controlled wall switches.

The original device was intended to be controlled by a (crappy) app. He sniffed the UDP packets enough to send the on-off signals to an unmodified device, but where’s the fun in that? [Scott] gave it an upgrade by replacing the ESP8266’s firmware with his own and now he’s got a much more capable remote switch, one that speaks MQTT like the rest of his …read more

Continue reading Finding ESP8266 Inside Big-Box Store IoT Plugs