Fired Disney employee gets 3 years in prison for hacking and changing menus | CNN Business #hacker #hacking #breach #hack https://www.cnn.com/2025/04/28/business/former-disney-employee-menu-sentenced/index.html
Fired Disney employee gets 3 years in prison for hacking and changing menus | CNN Business #hacker #hacking #breach #hack https://www.cnn.com/2025/04/28/business/former-disney-employee-menu-sentenced/index.html
'Read the Manual': Misconfigured #GoogleAnalytics Led to a Data #Breach Affecting 4.7M - Slashdot
#privacy #security
Notice of #DataBreach | #BlueShield of #California | News Center
Blue Shield of California has begun notifying certain members of a potential data #breach that may have included elements of their protected health information. Due to the complexity and scope of the disclosures, Blue Shield is unable to confirm whether any particular member’s specific information was affected.
#privacy #google #security #phi
“Daniel Berulis works for the National Labor Relations Board and he has shared evidence that #DOGE engineers disabled #security protocols, exported reams of sensitive data and used a ‘hacker’s toolkit’ to hide their activities. And he thinks his agency is not alone. Today on The Sunday Story, what this possible #breach could mean for the #private data of millions of Americans.”
https://www.npr.org/2025/04/27/1247657625/doge-whistleblower-nlrb
Oh, look, it's the #healthInsurance company I became a member of three weeks ago being grossly negligent about protecting PII and PHI. Charming.
Accidentally sharing data with Google Analytics is totally, 100% a known problem, and it really is grossly negligent for any company that handles PII and PHI not to account for it in its SSDLC.
#infosec #privacy #HIPAA #breach
h/t @zackwhittaker
https://techcrunch.com/2025/04/23/blue-shield-of-california-shared-the-private-health-data-of-millions-with-google-for-years/
DeepSeek Breach Opens Floodgates to Dark Web #breach #darknet #darkweb https://www.darkreading.com/cyberattacks-data-breaches/deepseek-breach-opens-floodgates-dark-web
We already kinda knew the DeepSeek GenAI was in security hot water, with the Wiz finding and all. Things really seem to be coming to a head.
https://www.darkreading.com/cyberattacks-data-breaches/deepseek-breach-opens-floodgates-dark-web
This one's gonna Hertz!
Hertz belatedly says customer personal data stolen, inc credit cards
4chan Hit by Major Breach: Alleged Hacker Leaks Source Code, Moderator Identities, and Disrupts Site
Notorious image board 4chan hacked and internal data leaked
https://techcrunch.com/2025/04/15/notorious-image-board-4chan-hacked-and-internal-data-leaked/ #4chan #breach #databreach #tech #security
#Hertz says customers' personal data and driver's licenses stolen in data #breach | TechCrunch
Car rental giant Hertz has begun notifying its customers of a data breach that included their personal information and driver’s licenses.
The rental company, which also owns the #Dollar and #Thrifty brands, said in notices on its website that the breach relates to a #cyberattack on one of its vendors between October 2024 and December 2024.
#privacy #security
Hertz data breach: Yet another disaster of a major consumer site
https://www.reuters.com/technology/cybersecurity/hertz-says-hackers-stole-its-customer-data-2025-04-14/
#privacy #badtech #breach #hertz #-
For #cybersecurity experts, that spike in #data leaving the system is a key indicator of a #breach, Berulis explained.
When Berulis asked his IT colleagues whether they knew why the data was exfiltrated or whether anyone else had been using containers to run code on the system in recent weeks, no one knew anything about it or the other unusual activities on the network….
4Chan hacked; Taken down; Emails and IPs leaked
Apparently they were not only running an old, unsecure version of PHP their entire stack was outdated.
https://www.the-sun.com/tech/14029069/4chan-down-updates-controversial-website-hacking/
The employees grew concerned that the #NLRB's confidential #data could be exposed, particularly after they started detecting suspicious log-in attempts from an IP address in #Russia [wtf?], acc/to the disclosure. Eventually, the disclosure continued, the IT department launched a formal review of what it deemed a serious, ongoing #security #breach or potentially #illegal removal of personally identifiable information.
Ouch, that Hertz
"Car rental giant Hertz Corporation warns it suffered a data breach after customer data for its Hertz, Thrifty, and Dollar brands was stolen in the Cleo zero-day data theft attacks."
The number of reported attacks from Oracle's 151.106.160.0/19 (AS31898) has been steadily increasing since the beginning of April. Probably nothing to do with the leak that didn't happen