Infiltration of Malama's systems between May 4 and May 7 has enabled the exfiltration of individuals' medical treatment data, Social Security numbers, financial account numbers with CVV numbers and expiry dates, bank names, passport numbers, routing numbers, and certain biometric details, according to the clinic.
Included in the records stored in the unsecured WordPress folder named "Facial Recognition Uploads" were names, biometric images, phone numbers, racial or ethnic identities, email addresses, and reasons for facial DNA analysis.
Infiltration of Patelco's systems on May 23 enabled the exfiltration of individuals' names, birthdates, Social Security numbers, driver's license numbers, and/or email addresses although the stolen information varied among impacted individuals, according to a breach notice from Patelco.
A team of security researchers discovered a vulnerability that allows for Kia cars to be remotely compromised with nothing more than a license plate number.
Passwords should never be kept in plaintext due to potential exploitation, according to Irish DPC Deputy Commissioner Graham Doyle. Meanwhile, Meta noted the prompt remediation of the security issue.
Aside from IP addresses and social media details, more than 1,800 plaintext passwords belonging to staffers have also proliferated across the dark web, findings from a joint Proton and Constella Intelligence report showed.
Infiltration of a Michigan Medicine employee account through a malicious multi-factor authentication prompt has enabled attackers to access and exfiltrate emails containing patients' names and medical record numbers, as well as diagnostic or treatment details.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.