More than 33 million individuals across France, or almost half of the country's population, were confirmed by the country's data protection authority CNIL to have had their data compromised following data breaches at French healthcare and insurance services providers Viamedis and Almerys last month, according to BleepingComputer.
Major California-based union Service Employees International Union Local 1000 has disclosed having its network disrupted by a cyberattack last month, which the LockBit ransomware operation claimed to have resulted in the theft of 308GB of data, including employees' salary details, financial documents, and Social Security numbers, reports The Record, a news site by cybersecurity firm Recorded Future.
Major U.S. insurance firms Bankers Life and Casualty Company and Washington National Insurance Company disclosed having data from more than 66,000 customers stolen following a SIM swapping attack in November, according to Hackread.
Mobile peer-to-peer class notes sharing platform LectureNotes Learning App had more than 2.1 million users' records exposed as a result of a misconfigured MongoDB database, which has since been addressed, reports Cybernews.
Google has agreed to pay $350 million to resolve a shareholders lawsuit from 2018 concerning a vulnerability in its discontinued Google Plus platform, which resulted in third-party exposure of data belonging to millions of users, reports The Record, a news site by cybersecurity firm Recorded Future.
Legacy systems are riddled with outdated and unreliable cryptographic standards. So much so that recent proprietary research found 61 percent of the traffic was unencrypted, and up to 80% of encrypted network traffic has some defeatable flaw in its encryption. No longer can enterprises take their cryptography for granted, rarely evaluated or checke...
Mozilla has unveiled its new Monitor Plus subscription service that facilitates the automated scanning and removal of personal information from data broker sites, reports TechCrunch.
Attacks leveraging fraudulent Facebook job ads have been launched to facilitate the distribution of the new Ov3r_Stealer information-stealing malware that targets credentials, Microsoft Office documents, browser extensions, cryptocurrency wallets, and credit card information, according to The Hacker News.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.