Section 702 allows agencies like the NSA and CIA to monitor foreign communications, but this process can sweep up data from U.S. citizens who communicate with targets abroad.
Almost 5 million individuals who stayed at more than 170 hotels around the world had their data exposed following the compromise of Spanish automated check-in service Chekin and Austrian hotel management software Gastrodat, according to Cybernews.
Cybernews reports that leading global luxury apparel retail firms Lacoste, Ralph Lauren, Canada Goose, and Carter's were claimed to have had their "supply chain data" stolen by a threat actor, who exposed limited samples for each impacted brand.
Major U.S. adult nightclub and sports bar operator RCI Hospitality Holdings had the personal information of "numerous" independent contractors exposed following the exploitation of an insecure direct object reference flaw impacting one of its IIS servers, according to SecurityWeek.
Hacking group ShinyHunters has listed the National Railroad Passenger Corporation on its data leak site, claiming to have stolen 9.4 million records containing personally identifiable information and corporate data, Cybernews reports.
BleepingComputer reports that McGraw-Hill has disclosed that the limited set of data exposed during a breach caused by a Salesforce misconfiguration was non-sensitive and assured that its customer databases, internal systems, courseware, and Salesforce accounts were not impacted.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.