Fla. Courts Require Actual Injury to Demonstrate Standing in Data Breach Cases

Nicole Rekant and Stevan Pardo write: The proliferation of data breach cases in Florida courts has focused on Article III standing. To meet the pleading standard under Article III, a plaintiff must allege sufficient facts to show the injury-in-fact is … Continue reading Fla. Courts Require Actual Injury to Demonstrate Standing in Data Breach Cases

Two incidents involving Texas tax preparers may have put customers at risk of ID theft

Remember when it seemed like every day we were reading about ID theft and tax refund fraud schemes involving rogue employees of tax preparation firms? Yeah, well it’s still a thing.  Here’s a story about a former rogue employee at Jackson H… Continue reading Two incidents involving Texas tax preparers may have put customers at risk of ID theft

Exclusive: National Life Group denies claim by thedarkoverlord that they were hacked; independent insurance agency appears to be the actual victim

Hackers claimed to have hacked hundreds of thousands of records from National Life Group, but investigation points to Sterling National Financial Group as the likely hacked entity The blackhat hacker/extortionist(s) known as thedarkoverlord (TDO) ended… Continue reading Exclusive: National Life Group denies claim by thedarkoverlord that they were hacked; independent insurance agency appears to be the actual victim

thedarkoverlord releases files related to 9/11 investigations and litigation; threatens to release more if companies don’t pay up

While most people in the U.K. and U.S. might have been preparing for New Year’s Eve celebrations, the hackers known as thedarkoverlord had their own plans for the evening, and their plans seemed to involve spoiling the plans of a number of corpor… Continue reading thedarkoverlord releases files related to 9/11 investigations and litigation; threatens to release more if companies don’t pay up

Channel Ship Services hacked by TheDarkOverlord; has maritime security been compromised?

When TheDarkOverlord hacked Channel Ship Services, they not only acquired personal data that could be misused for fraud, but they claim they also acquired information that can jeopardize maritime security.  According to Jersey-based Channel Ship Servic… Continue reading Channel Ship Services hacked by TheDarkOverlord; has maritime security been compromised?

When Security Researchers Pose as Cybercrooks, Who Can Tell the Difference?

A ridiculous number of companies are exposing some or all of their proprietary and customer data by putting it in the cloud without any kind of authentication needed to read, alter or destroy it. When cybercriminals are the first to discover these missteps, usually the outcome is a demand for money in return for the stolen data. But when these screw-ups are unearthed by security professionals seeking to make a name for themselves, the resulting publicity often can leave the breached organization wishing they’d instead been quietly extorted by anonymous crooks. Continue reading When Security Researchers Pose as Cybercrooks, Who Can Tell the Difference?

Commentary: What Constitutes Negligence in Company Data Breaches?

Amy L. Hanna Keeney of Adams and Reese writes about an opinion in a court case that stemmed from one of TheDarkOverlord’s hacks: their attack on Athens Orthopedic Clinic (AOC). I had covered that breach extensively, including commenting on the fa… Continue reading Commentary: What Constitutes Negligence in Company Data Breaches?

MI: Holland Eye Surgery & Laser Center notifies 42,200 patients about 2016 hack

After his victim allegedly didn’t respond to his repeated demands for a “security fee,”  a hacker accuses the victim of covering up a hack for almost two years.  One of the breaches added to HHS’s public breach tool this past we… Continue reading MI: Holland Eye Surgery & Laser Center notifies 42,200 patients about 2016 hack