This week’s breach roundup includes multiple notices sent far outside the 60-day timeframe required by HIPAA and is led by a third-party administrator hack that led to the theft of patient data.
CircleCI revealed in a late Friday update that a breach of their IT systems last December was done through the compromise of an employee's laptop and credentials, both of which were used to steal valuable internal and customer data. The company is now working with multiple third-party providers to rotate secrets, tokens and is aware of "less than five" customers who have reported unauthorized access to their third-party applications following the hack.
Texas-based employee benefit plan administrator Bay Bridge Administrators had more than 251,000 individuals' personal data compromised following a data breach in September, reports SecurityWeek.
Over 460K individuals impacted by MFHS ransomware attack More than 460,000 patients, employees, and vendors had their data compromised following a ransomware attack against Pennsylvania-based nonprofit health provider Maternal & Family Health Services, according to TechCrunch.
BleepingComputer reports that Twitter has claimed that the recent leak of data belonging to 200 million of its users, including their email addresses, was not associated with the exploitation of an already patched vulnerability in the social media platform, which has been linked to an earlier data leak affecting 5.4 million users.
CircleCI said the company's goal in partnering with AWS is to help customers easily identify and revoke or rotate any potentially affected keys. They also stressed that “[a]t this time, there is no indication that your AWS account was accessed, only that there is a possibility the token stored in CircleCI was leaked, and therefore should be deleted from AWS and rotated.”
BleepingComputer reports that Kubernetes clusters are being compromised by the Kinsing malware through container image vulnerabilities and misconfigured PostgreSQL containers.
Des Moines Public Schools, the largest school district in Iowa with 33,000 students, had its classes on Jan. 10 canceled following a cyberattack on its IT network, reports The Associated Press.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.