Digital Pix & Composites, a professional photography firm specializing in graduation, fraternity, and sorority composites, had personal information from 43,000 students from 222 universities across the U.S., including Stanford University, the University of Maryland, University of Texas, and Washington University, exposed as a result of a misconfigured Microsoft Azure Blob instance, according to Cybernews.
Widely known threat actor USDoD was discovered by VX-Underground researchers was planning to expose 2.9 billion records belonging to U.S., Canadian, and British citizens believed to have been stolen by the SXUL threat operation from Florida-based information broker National Public Data months after the data trove was initially advertised for sale for $3.5 million, reports The Register.
Officials from the Illinois Secretary of State's office disclosed the compromise of residents' driver's license details and Social Security numbers following a phishing attack against its employees in April, StateScoop reports.
Ransomware gang RansomHub took responsibility for attacking major U.S. internet, phone, and TV service provider Frontier Communications in April, which it claimed resulted in the exfiltration of data from over 2 million people, according to The Record, a news site by cybersecurity firm Recorded Future.
UnitedHealth Group's Change Healthcare has been permitted by the Department of Health and Human Services to issue breach notices for the healthcare providers impacted by the widespread ransomware attack following severe opposition to a previous pronouncement requiring all affected organizations to file their own notifications, reports The Record, a news site by cybersecurity firm Recorded Future.
More than 900 of almost 2,300 official government email addresses belonging to politicians of Great Britain, France, and European Parliament have been exposed on the dark web, mostly impacting British senior government and opposition members, whose email addresses appeared over 2,100 times, SecurityWeek reports.
Hackread reports that Clarity.fm, an on-demand business advice marketplace for entrepreneurs, had 155,531 records and 121,000 accounts belonging to entrepreneurs, business leaders, and celebrities exposed as a result of an unsecured database.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.