This week in the enterprise security weekly news, we discuss. funding and acquisitions, Understanding the Semgrep license drama, Ridiculous vulnerabilities everywhere:, vulns to take down your entire city’s cell service, vulns to mess with your Subarus, vulns in Microsoft 365 authentication, cybersecurity regulations are worthless, Facebook is bann...
Despite the confirmed exfiltration of American Income Life Insurance Company customers' names, addresses, Social Security numbers, and health-related details confirmed as a result of the attack, whether similar information had been obtained from the other 850,000 people remains uncertain, said Globe Life in an updated filing with the Securities and Exchange Commission.
Months-long infiltration of the Community Health Center's network, which was eventually discovered earlier last month, resulted in the compromise of over 1.060 million current and former patients' names, phone numbers, addresses, Social Security numbers, treatment information, and health insurance details.
Operations of the firm's client delivery services have not been interrupted by the incident, which has not yet been claimed by any ransomware gang, noted Tata Technologies in a notification filed with India's national stock exchange.
After leveraging a zero-day within a third-party app to compromise a BeyondTrust AWS account asset, attackers proceeded to exploit the asset to secure an infrastructure API key that was then utilized to control another AWS account for managing Remote Support infrastructure, according to BeyondTrust's investigation.
TechCrunch reports that New Jersey-based assistive technology firm AngelSense was disclosed by cybersecurity firm UpGuard to have had its users' personally identifiable information and precise location details exposed online as a result of an unsecured server.
The breach occurred when attackers exploited a stolen account credential to access PowerSchool’s customer support portal and proceed to steal vast amounts of sensitive data.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.