Officials at the Los Angeles Unified School District, which is the U.S.'s second-largest public school district, have announced an ongoing investigation into a breach claimed by a threat actor to have resulted in the compromise of more than 11 GB of data being sold for $1,000 on a hacking forum, according to BleepingComputer.
Colorado-based optometric and ophthalmic management services provider Panorama Eyecare had information from 377,911 current and former patients and employees compromised following a cyberattack last year claimed by the LockBit ransomware operation, which purported the theft of nearly 800 GB of data, reports The Record, a news site by cybersecurity firm Recorded Future.
Hackread reports that widely known Asian technology news outlet Tech in Asia was claimed by threat actor Sanggiero to have had information from more than 221,470 individuals compromised following a cyberattack this month.
Major U.S. automotive aftermarket parts vendor Advance Auto Parts had 3 TB of data containing sensitive customer and employee details claimed to be stolen by the threat actor dubbed "Sp1d3r" following the compromise of its Snowflake cloud storage environment, reports BleepingComputer.
Numerous major health providers across London have issued an emergency declaration to postpone non-emergency patient care following a ransomware attack that disrupted all IT systems of third-party medical testing and diagnostics provider Synnovis, the recovery timeline of which remains to be uncertain, Ars Technica reports.
Fifty-four leading banking organizations in Austria, Belgium, Finland, France, Germany, Greece, Ireland, Italy, Luxembourg, and the Netherlands had their customers subjected to attacks with the novel V3B phishing-as-a-service platform, which is being increasingly accessed by threat actors via Telegram, according to BleepingComputer.
Data breach notification service Have I Been Pwned has been updated to include 361 million email addresses from credentials exfiltrated in credential-stuffing attacks and password-stealing malware intrusions that have been leaked on Telegram channels used by cybercriminals, BleepingComputer reports.
BleepingComputer reports that more than 3.2 million individuals were noted to have had their data exfiltrated in the breach of U.S. nationally licensed debt collection agency Financial Business and Consumer Solutions in February, which is over a million higher than the figure initially reported by the firm to the Office of the Maine Attorney General in April.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.