TechRadar reports that increased cybersecurity investments have not prevented 67% of companies from experiencing data breaches over the past 24 months.
Cybersecurity firm Guardz reported that between March 18 and April 7, 2025, attackers used the outdated BAV2ROPC protocol, which bypasses MFA and modern protections by enabling non-interactive logins through basic credentials.
SecurityWeek reports that Andy Frain Services, a physical security firm based in Illinois, had information from over 100,000 individuals stolen following a data breach in October, which the Black Basta ransomware alleged resulted in the compromise of 750 GB of files.
U.S. charter airline GlobalX, which has been contracted by the Trump administration for its widespread deportation efforts, has confirmed having its computer networks and some of its business applications infiltrated in a cyberattack last week, The Register reports.
The individual behind the 2023 data breach at Star Health and Allied Insurance Company, identified by the alias "xenZen," has claimed responsibility for sending death threats and ammunition to the companys top executives, Reuters reports.
A massive data breach at HR and benefits firm VeriSource Services compromised the personal information of around 4 million people, but it took over a year for the full scope to be disclosed and victims properly notified, The 420 reports.
TechCrunch reports that Insight Partners a venture capital firm with over $90 billion in regulated assets under management has confirmed the compromise of data belonging to an unspecified number of individuals as a result of a January cyberattack.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.