Major U.S. adult nightclub and sports bar operator RCI Hospitality Holdings had the personal information of "numerous" independent contractors exposed following the exploitation of an insecure direct object reference flaw impacting one of its IIS servers, according to SecurityWeek.
Hacking group ShinyHunters has listed the National Railroad Passenger Corporation on its data leak site, claiming to have stolen 9.4 million records containing personally identifiable information and corporate data, Cybernews reports.
BleepingComputer reports that McGraw-Hill has disclosed that the limited set of data exposed during a breach caused by a Salesforce misconfiguration was non-sensitive and assured that its customer databases, internal systems, courseware, and Salesforce accounts were not impacted.
Learn how CISOs can build privacy-first strategies for regulatory compliance. Experts break down data mapping, privacy-by-design, AI risks, and practical tools to protect sensitive data while enabling business growth. Watching isn’t enough. The people who stay ahead in cybersecurity are the ones in the room. Register for an upcoming webcast now at ...
The threat actor published these malicious extensions under five different publisher identities, spanning various categories such as Telegram clients, games, YouTube and TikTok enhancers, translation tools, and utilities.
AI staffing company Mercor is facing at least four class-action lawsuits, alleging that the recent exploit of the open-source AI platform interface LiteLLM that affected its systems resulted in damages, according to HR Dive.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.