NBC News reports that sensitive personal data from U.S. military personnel is not only prevalently advertised online but also cheap to obtain, with Duke University Sanford School of Public Policy researchers being able to purchase information belonging to nearly 50,000 U.S. service members from data brokers for only a little over $10,000.
The Register reports that U.S. insurance and advisory services provider Hilb Group had 81,539 individuals' personal data compromised following a breach of employee email accounts earlier this year.
Major U.S. biotechnology and genetic testing firm 23andMe has been demanded by Connecticut Attorney General William Tong to provide details regarding a data breach that resulted in the exposure of data from millions of users, including those of Ashkenazi and Chinese heritage, last month, according to The Record, a news site by cybersecurity firm Recorded Future.
Okta had 4,961 current and former employees' data, including names, health insurance plan numbers, and Social Security numbers, compromised following a breach at its third-party vendor Rightway Healthcare, reports The Register.
U.S. medical trial solutions firm Advarra was claimed by threat actors affiliated with the ALPHV/BlackCat ransomware operation to have had more than 120GB of customer, patient, and employee data stolen following a successful SIM swapping attack against one of its executives, The Register reports.
Investigation by the Denver Gazette revealed that the Colorado Department of Higher Education failed to report a widespread ransomware-related data breach to the state attorney general's office within a month of discovering the incident, which is in violation of the state's breach notification law, according to StateScoop.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.