Goldman Sachs Leads $40 Million Investment in Anti-Phishing Firm Agari

Article Congratulations to Agari!!! They have consistently delivered impact and value for my customers. Goldman Leading the series E raise of 40MM is great validation. E-Mail remains the #1 way bad guys penetrate and exploit Global accounts….Agari is the E-Mail Security leader in protecting customers and stopping the sophisticated use cases getting past E-Mail SPAM[…]

F.B.I.’s Urgent Request: Reboot Your Router to Stop Russia-Linked Malware – The New York Times

Hoping to thwart a sophisticated malware system linked to Russia that has infected hundreds of thousands of internet routers, the F.B.I. has made an urgent request to anybody with one of the devices: Turn it off, and then turn it back on. Source: F.B.I.’s Urgent Request: Reboot Your Router to Stop Russia-Linked Malware – The[…]

The Cybersecurity 202: Why cybersecurity experts are so concerned about the health-care industry – The Washington Post

New research released by two security companies paints an unsettling picture for the health-care industry: Hackers are stepping up their attacks on hospitals and other health organizations that may be ill prepared to defend against the wave of malicious activity. Source: The Cybersecurity 202: Why cybersecurity experts are so concerned about the health-care industry –[…]

Australian Information Commissioner slammed for keeping quiet over lost Commonwealth Bank data – Security – CRN Australia

Australia’s information commissioner has come under fire after it emerged last week that it failed to recover lost customer account data from the Commonwealth Bank and deemed it ‘low risk’. Source: Australian Information Commissioner slammed for keeping quiet over lost Commonwealth Bank data – Security – CRN Australia

Center for Orthopaedic Specialists notifies 85,000 patients of ransomware attack

The Center for Orthopaedic Specialists (COS) recently learned that our computer system was compromised by a security event that affected our three facilities in West Hills, Simi Valley and Westlake Village, Calif. Malicious software was used to gain access to and encrypt patient data in our system in the hopes of getting COS to pay[…]

Email Breach at Oxygen Equipment Maker Affects 30,000

Unauthorized access to an employee’s email account has resulted in a breach affecting 30,000 current and former rental customers of Inogen, a maker and supplier of oxygen equipment, the publicly traded company has disclosed in a filing with the Securities and Exchange Commission. Source: Email Breach at Oxygen Equipment Maker Affects 30,000

A woman runs past an Under Armour store in Chicago in October 2017. Under Armour. (Christopher Dilts/Bloomberg News)

Under Armour discloses MyFitnessPal data breach – MarketWatch

Under Armour Inc. UA, +1.13% said late Thursday it has detected a data breach in MyFitnessPal user accounts. The breach did not include government-issued identifiers, such as Social Security numbers and driver’s license numbers, which the company does not collect from users, or credit-card data, which is processed separately, Under Armour said. About 150 million user accounts were[…]

Pennsylvania Sues Uber Over Late Breach Notification

Pennsylvania on Monday filed a lawsuit against Uber for allegedly violating the state’s mandatory breach notification law. It’s the latest in a long string of legal and regulatory actions Uber is facing from a serious data breach the company waited more than a year to disclose. Source: Pennsylvania Sues Uber Over Late Breach Notification

An ‘Iceberg’ of Unseen Crimes: Many Cyber Offenses Go Unreported – The New York Times

The public is blind to the magnitude of the state cybercrimes. Bank robberies are reported daily with small $$$$ amounts while the same day many companies are paying ransomware $$$ to keep IT systems alive….Brand, reputation and trust are part of the reason the public is blind to current state. GDPR is the start of[…]

Rs 500, 10 minutes, and you have access to billion Aadhaar details

It was only last November that the UIDAI asserted that “Aadhaar data is fully safe and secure and there has been no data leak or breach at UIDAI.” Today, The Tribune “purchased” a service being offered by anonymous sellers over WhatsApp that provided unrestricted access to details for any of the more than 1 billion[…]

Insider Allegedly Steals Mental Health Data of 28,000 Patients

The alleged theft of mental health information on more than 28,000 patients in Texas, which went undetected for well over a year, is yet another reminder of the substantial risks that terminated employees can pose as well as the need to take extra steps to protect the most sensitive patient information. Source: Insider Allegedly Steals[…]

Hilton Was Fined $700K for a Data Breach. Under GDPR It Would Be $420M | Digital Guardian

Consider $2 per lost record versus $1,200 per lost record. That’s the difference between what Hilton will pay to New York State versus what it will pay to EU regulators once the GDPR takes effect in May. Source: Hilton Was Fined $700K for a Data Breach. Under GDPR It Would Be $420M | Digital Guardian

Uber Paid Hackers to Delete Stolen Data on 57 Million People – Bloomberg

PII data at a premium in the dark web… Many more to follow, watch your credit cards. Hackers stole the personal data of 57 million customers and drivers from Uber Technologies Inc., a massive breach that the company concealed for more than a year. Source: Uber Paid Hackers to Delete Stolen Data on 57 Million[…]

Serious flaw in WPA2 protocol lets attackers intercept passwords and much more 

The security protocol used to protect the vast majority of wifi connections has been broken, potentially exposing wireless internet traffic to malicious eavesdroppers and attacks, according to the researcher who discovered the weakness. Source: Serious flaw in WPA2 protocol lets attackers intercept passwords and much more | Ars Technica

NYTimes: A Cyberattack The World Isn’t Ready For’

But in this case, modern-day detection systems created by Cylance, McAfee and Microsoft and patching systems by Tanium did not catch the attack on IDT. Nor did any of the 128 publicly available threat intelligence feeds that IDT subscribes to. Even the 10 threat intelligence feeds that his organization spends a half-million dollars on annually[…]

Global Cyber Alliance Finds U.S. Healthcare Providers’ Email Security in Critical Condition

The Global Cyber Alliance (GCA) found that only 6 of the 50 largest public hospitals in the U.S. are protecting their email domains. Net, deploying DMARC can protect your employees and customers from e-mail phishing attacks. It can also deliver tangible metrics including the number of malicious e-mails stopped per month, as well as reduced[…]

Crooks Steal, Sell Verizon Enterprise Customer Data

Verizon Enterprise Solutions, a B2B unit of the telecommunications giant that gets called in to help Fortune 500’s respond to some of the world’s largest data breaches, is reeling from its own data breach involving the theft and resale of customer data, KrebsOnSecurity has learned. Earlier this week, a prominent member of a closely guarded underground[…]

Ashley Madison Breach – Eight Takeaways for Security Professionals

Source: Bank Info Security Warnings about new data breaches being discovered now appear to arrive daily, if not faster. But this week’s mega-dump of hacked Ashley Madison data shows how this hacking incident differs from run-of-the-mill data breaches in numerous ways (see Ashley Madison Hackers Dump Stolen Data). For starters, the self-described “world’s leading married[…]