Ca: New online breach reporting forms for federal institutions and businesses

From the Office of the Privacy Commissioner of Canada, May 24: The Office of the Privacy Commissioner of Canada (OPC) has launched a new online breach reporting form for federal institutions subject to the Privacy Act as well as updated its online brea… Continue reading Ca: New online breach reporting forms for federal institutions and businesses

Sg: Software firm fined $74k for data breach caused by weak password; half a million users affected

Ang Qing reports from Singapore: A company running online language lessons for children around the world used a password based on its website name, LingoAce, making it vulnerable to the data breach that resulted. More than half a million users were aff… Continue reading Sg: Software firm fined $74k for data breach caused by weak password; half a million users affected

Almost all citizens of city of Eindhoven have their personal data exposed

Graham Cluley reports: A data breach involving the Dutch city of Eindhoven left the personal information related to almost all of its citizens exposed. As Eindhovens Dagblad reports, two files containing the personal data of 221,511 inhabitants of Eind… Continue reading Almost all citizens of city of Eindhoven have their personal data exposed

LifeLabs to appeal court’s decision to release Ontario IPC and BC OIPC breach investigation report

The Office of the Information & Privacy Commissioner for British Columbia issued the following statement on May 23 about a case that raises issues of transparency and claims of privileged information:  LifeLabs has announced that it is seeking leav… Continue reading LifeLabs to appeal court’s decision to release Ontario IPC and BC OIPC breach investigation report

First Nations Health Authority detected and interrupted attack by INC ransomware group

On May 22, INC ransomware added First Nations Health Authority to its leak site with screenshots as proof of claims. On the same day, First Nations Health Authority (FNHA) disclosed it is currently investigating a cybersecurity incident that it first d… Continue reading First Nations Health Authority detected and interrupted attack by INC ransomware group

Police Service of Northern Ireland facing £750k fine following data breach that exposed personal information of more than 9,000 staff

Suzanne McGonagle reports: The PSNI is facing a £750,000 fine following the spreadsheet error that exposed the personal information of its entire workforce. The Information Commissioner’s Office (ICO) said the fine comes after information relating to m… Continue reading Police Service of Northern Ireland facing £750k fine following data breach that exposed personal information of more than 9,000 staff

An Israeli City Hid a Crippling Cyberattack From the Public. It Was Just the Beginning

Omer Benjakob, Aaron Rabinowitz, and Ran Shimoni report: One Friday morning in January, office telephones in the city hall of Modi’in Ilit fell silent. Employees who were in the building quickly realized that something unusual was happening. They… Continue reading An Israeli City Hid a Crippling Cyberattack From the Public. It Was Just the Beginning

Ransomware group says it will release stolen London Drugs data if it doesn’t get $25M in 48 hours

Michael John Lo reports: A ransomware gang is threatening to release confidential data it claims to have stolen from London Drugs if it isn’t paid $25 million by Thursday. The retailer and pharmacy chain closed all of its 79 stores in Western Canada af… Continue reading Ransomware group says it will release stolen London Drugs data if it doesn’t get $25M in 48 hours

UK to propose mandatory reporting for ransomware attacks and licensing regime for all payments

“Mother, May I?” UK entities may need permission to make ransom payments. Alexander Martin reports: Officials in Britain are set to propose a major overhaul of how the country responds to ransomware attacks by requiring all victims to repor… Continue reading UK to propose mandatory reporting for ransomware attacks and licensing regime for all payments