Tag: data
-
KI-Agenten im SOC: Alle haben Amnesie
Warum die nächste Stufe der Sicherheitsautomatisierung am Gedächtnis scheitert. Adaptiert von einem Artikel von Nash Borges, Vice President of Engineering and Data Science, Sophos. Die nächste Stufe der Sicherheitsautomatisierung scheitert aktuell an einem überraschend simplen Hindernis: Erinnerung. Wie sich das anfühlt, zeigt ein Film. In Christopher Nolans Memento aus dem Jahr 2000 leidet… First seen…
-
KDDI discloses data breach affecting up to 14.2 million customers
First seen on scworld.com Jump to article: www.scworld.com/brief/kddi-discloses-data-breach-affecting-up-to-14-2-million-customers
-
Attackers create deceptive OpenAI tenants to steal company data
First seen on scworld.com Jump to article: www.scworld.com/brief/attackers-create-fake-openai-tenants-to-steal-company-data
-
Indian bank domain registrar allegedly leaks sensitive data
First seen on scworld.com Jump to article: www.scworld.com/brief/indian-bank-domain-registrar-allegedly-leaks-sensitive-data
-
Nissan confirms employee data exposed in Oracle PeopleSoft cyberattack
First seen on scworld.com Jump to article: www.scworld.com/brief/nissan-confirms-employee-data-exposed-in-oracle-peoplesoft-cyberattack
-
Arcova launches integrated data center development service
First seen on scworld.com Jump to article: www.scworld.com/brief/arcova-launches-integrated-data-center-development-service
-
Proton’s pitch for Lumo 2.0: Frontier AI without the data grab
Proton has unveiled Lumo 2.0, a major upgrade to its zero-access encrypted AI assistant. Built on a new architecture, the release brings the assistant closer to frontier AI … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/01/proton-lumo-2-0-ai/
-
Medtronic Notifying Patients Affected by Data Theft Hack
Ransomware Gang ShinyHunters Gang Claimed It Stole 9M Records From Device Maker. Medical device maker Medtronic has begun notifying a yet undisclosed number of patients that their information, including health records and Social Security numbers – was compromised in an April cyber incident. ShinyHunters had earlier claimed to steal more than 9 million of the…
-
New BioShocking attack manipulates AI browser into data theft
A new prompt injection attack dubbed “BioShocking” could trick AI-powered browsers into treating real-world risky actions as part of a fictional scenario, causing them to ignore any safety guardrails. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/new-bioshocking-attack-manipulates-ai-browser-into-data-theft/
-
Nissan Traces Data Breach to PeopleSoft Zero-Day Exploit
Extortionists Add National Association of Insurance Commissioners to Breach List. Japanese automotive giant Nissan and the U.S. National Association of Insurance Commissioners are the latest organizations to confirm they fell victim to cyber extortionists who recently wielded a zero-day exploit against Oracle PeopleSoft, leading to the theft of data. First seen on govinfosecurity.com Jump to…
-
Microsoft Warns Poisoned MCP Tool Descriptions Can Make AI Agents Leak Data
New Microsoft research shows how attackers can hijack AI agents that act on a user’s behalf, using nothing more than a poisoned tool description to make the agent quietly hand over company data to an outsider.The trick is that the agent never breaks a rule. Every step looks routine, so in a default setup no…
-
Modern Enterprises: How to Evaluate the Security and Compliance of Office Software
Learn how modern businesses can judge office software for ISO 27001 certification, GDPR-aligned data handling, encryption, and safer PDF workflows with clarity. First seen on hackread.com Jump to article: hackread.com/evaluate-security-compliance-of-office-software/
-
Hackers Steal Data of 4.38 Million Aflac Japan Customers
Hackers stole data from 4.38 million Aflac Japan customers after accessing its systems for 10 days before the breach was detected. Aflac Japan disclosed that hackers stole the personal information of 4.38 million customers and agents after gaining access to its systems between June 15 and June 25. Attackers stole data from the company policyholder…
-
Nissan Discloses Employee Data Breach Linked to Oracle Zero-Day
Nissan says employees’ data was stolen via the Oracle PeopleSoft zero-day campaign First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/nissan-oracle-peoplesoft-zero-day/
-
Aflac Japan Data Breach Exposes Sensitive Customer Information
Aflac disclosed a data breach at its Japan subsidiary that exposed sensitive customer and bank account information. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/aflac-japan-data-breach-exposes-sensitive-customer-information/
-
DOJ Seizes 400 Illegal FIFA World Cup Streaming Domains
Officials from the US Department of Justice seized nearly 400 domains linked to illegal World Cup streams and warned viewers about the risks of malware, phishing, and data theft. The post DOJ Seizes 400 Illegal FIFA World Cup Streaming Domains appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-doj-illegal-world-cup-streaming-domains/
-
Insurance giant Aflac discloses data breach after subsidiary hack
American insurance giant Aflac has disclosed a new data breach after attackers breached its Japan subsidiary’s systems and stole personal and bank account information. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/insurance-giant-aflac-discloses-data-breach-after-subsidiary-hack/
-
Over 300 UK Firms Hit by Ransomware in a Year
Report Fraud data reveals that more than half of 323 UK ransomware victims last year were SMEs First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/over-300-uk-firms-hit-ransomware/
-
Product showcase: Scam calls, phishing, and data breaches? Meet AVG Mobile Security
AVG Mobile Security for iOS helps protect users against online threats with features including Web Guard, VPN, Scam Guardian Pro, Hack Alerts, and Photo Vault. It also … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/30/product-showcase-avg-mobile-security-ios/
-
Vulnerabilities Expose Private Data in Indian Government Systems
One critical vulnerability, among many discovered by a researcher, could have allowed anyone to walk in and take over a national government portal. First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/vulnerabilities-private-data-indian-government-systems
-
KDDI Data Breach May Expose 14.2 Million Email Accounts
KDDI disclosed a breach that may have exposed up to 14.2 million email accounts after attackers exploited a third-party software vulnerability. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/kddi-data-breach-may-expose-14-2-million-email-accounts/
-
North Korea-Linked macOS Malware Uses Prompt Injection to Evade AI Analysis
SentinelOne says macOS.Gaslight uses prompt injection to mislead AI-based malware analysis, steal data, and use Telegram for C2. The post North Korea-Linked macOS Malware Uses Prompt Injection to Evade AI Analysis appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-macos-gaslight-malware-ai-prompt-injection/
-
Nissan discloses employee data breach linked to Oracle zero-day attacks
Nissan is warning that it suffered a data breach affecting current and former employees after threat actors exploited an Oracle PeopleSoft vulnerability in data theft attacks previously linked to the ShinyHunters extortion group. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/nissan-discloses-employee-data-breach-linked-to-oracle-zero-day-attacks/
-
NAIC says public data stolen in ShinyHunters’ PeopleSoft breach
The National Association of Insurance Commissioners (NAIC) says the ShinyHunters extortion group stole only publicly available data, outdated logs, and configuration files after breaching its systems by exploiting a zero-day vulnerability in an Oracle PeopleSoft server. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/naic-says-public-data-stolen-in-shinyhunters-peoplesoft-breach/
-
Justices rule that cellphone location histories are protected by the Fourth Amendment
Police must get a warrant to request geofence data involving individual cellphones, the U.S. Supreme Court ruled in what represents a victory for privacy advocates. First seen on therecord.media Jump to article: therecord.media/supreme-court-geofencing-ruling-fourth-amendment
-
New MCP Specifications Fix Security Issue But Open Many More
Model Context Protocol Rewrite Leaves More Security Decisions to Developers. The new MCP specifications fix a long-standing weakness in how AI agents authenticate to external tools, but security experts say it shifts key safeguards to developers. The result is a more flexible standard that can also increase the risk of authorization flaws, data exposure and…
-
Insurance body confirms hackers posted Oracle PeopleSoft breach data
NAIC warned that some ratings agencies have suspended data feeds as a precaution.; First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/insurance-body-hackers-oracle-peoplesoft-breach-data/823978/
-
Healthcare Data Collaboration Gets a Boost From AI
Emids’ CAIO on Why Healthcare Leaders Are Treating AI as an Enterprise Investment. Healthcare organizations are moving beyond debating AI’s value and focusing on how to scale it. According to Emids’ State of Healthcare AI in 2026 survey, 65% of healthcare leaders rank AI and automation as their top investment priority, reflecting a shift toward…
-
Agentic AI Has an Identity Problem and Attackers Know It
AI agents can access data, trigger workflows, and take action across enterprise systems. Token Security explains why governing these privileged identities is becoming essential for enterprise security. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/agentic-ai-has-an-identity-problem-and-attackers-know-it/
-
Splunk Secure Gateway RCE Vulnerability Lets Low-Privileged Attackers Execute Arbitrary Code
A newly disclosed high-severity vulnerability in Splunk Secure Gateway (SSG) allows low-privileged authenticated users to achieve remote code execution (RCE) on affected systems, significantly increasing the attack surface for enterprise Splunk deployments. This vulnerability, tracked as CVE-2026-20251, has been assigned a CVSS score of 8.8. It arises from the unsafe deserialization of user-controlled data using…

