Tag: data
-
Unified vision: An executive playbook for data risk management
First seen on scworld.com Jump to article: www.scworld.com/resource/unified-vision-an-executive-playbook-for-data-risk-management
-
LACMA data breach exposes customer and employee information
First seen on scworld.com Jump to article: www.scworld.com/brief/lacma-data-breach-exposes-customer-and-employee-information
-
Dark Caracal Adds New Malware to Cyber Espionage Arsenal
GoCaracal is a new modular malware framework that broadens Dark Caracal’s capabilities to steal data and maintain access to victims. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/dark-caracal-adds-new-malware-cyber-espionage-arsenal
-
Medical device maker Boston Scientific says a cyberattack is causing a ‘global disruption’ to its operations
The company won’t say if medical devices are affected or if any customer data was exfiltrated. First seen on techcrunch.com Jump to article: techcrunch.com/2026/08/26/medical-device-maker-boston-scientific-says-a-cyberattack-is-causing-a-global-disruption-to-its-operations/
-
ASOS Account Takeover Attack Exposes Data of 138,828 Customers
ASOS says attackers used credentials stolen elsewhere to access customer accounts, exposing personal data belonging to an estimated 138,828 people. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-asos-account-takeover-138828-customers/
-
FBI Disrupts China-Linked QTFY Infrastructure Used to Steal Data From U.S. Organizations
The U.S. Department of Justice (DoJ) on Wednesday announced the disruption of two hacking platforms named QScan and QTRouter operated by Chinese threat actors to target critical infrastructure and other sensitive networks in the country.The activity has been attributed to a Chinese state-sponsored group known as QTFY, employed by Nanjing Xinjiuwei Network Technology Company (å—京鑫玖维网络科技有é™å…¬å¸).&…
-
Randall Munroe’s XKCD ‘Toasting Marshmallows’
via the comic artistry and dry wit of Randall Munroe, creator of XKCD Permalink First seen on securityboulevard.com Jump to article: https://securityboulevard.com/2026/08/randall-munroes-xkcd-toasting-marshmallows/
-
Stop Building a 2003 SOC with AI: Local Context, Failure Modes and Your Path (Part 3)
In Part 1 of this series, we dumped a pile of uncomfortable questions on you and promised answers. In Part 2 of the series, we talked about why 1990s-2000s alert triage must die. The core thesis, if you recall: if you add AI agents into a legacy, swivel-chair SOC structure, you are essentially building a robotic…
-
TikTok Agrees to $400M Settlement Over Children’s Privacy
TikTok and ByteDance agree to pay up to $400 million to settle US allegations involving children’s data, parental consent and account deletion. The post TikTok Agrees to $400M Settlement Over Children’s Privacy appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-tiktok-400m-childrens-privacy-settlement-us/
-
How to Fix Enterprise Cyber Risk Platform Adoption
<div cla You’ve invested in an enterprise cyber risk management platform. Your security team completed training, your compliance officers signed off, and your board approved the budget. Six months later, adoption has stalled. Assessments still live in spreadsheets. Risk data remains fragmented across departments. Executive reports take days to compile manually. First seen on securityboulevard.com…
-
Being Right Is the Easy Part
Tags: ai, banking, business, cloud, compliance, container, control, country, crypto, cryptography, data, email, encryption, endpoint, fraud, ibm, intelligence, jobs, strategy, technologyHome Blog <!– PKWARE Blog, "Being Right Is the Easy Part" – STYLES Design tokens + .pk-article class rules. Paste into a Code Block (or move the token layer to the child theme and keep only the .pk-article rules here). tags included. –> Guest Perspective Being Right Is the Easy Part The question I asked…
-
88 ID Verification Breaches Show the Cost of Collecting Identity Data
88 ID-verification breaches exposed billions of records, highlighting the growing risks of collecting sensitive identity and biometric data. A new report from Mysterium VPN compiles 88 documented incidents since 2011 where data collected specifically to verify someone’s identity or age got breached, exposed, or sold. The confirmed and researcher-verified total sits at 2.15 billion records,…
-
AI-Powered Balonx Sistema PhaaS Harvests Credentials From Over 1,100 Banking Users
Mexico’s financial sector is facing an industrialized phishing Balonx Sistema, a Mexico-focused Phishing-as-a-Service (PhaaS) platform that has harvested credentials and financial data from more than 1,100 banking users since at least October 2025. The service targets over 20 Mexican financial institutions and combines live phishing, Android malware, and AI-driven voice fraud in one subscription-based operation.…
-
Production data in testing is still common, and Tricentis’ CISO wants it gone
In this Help Net Security interview, Erika Dean, CISO at Tricentis, talks about keeping production data out of test environments and why she thinks the alternatives are good … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/08/26/erika-dean-tricentis-production-data-in-testing/
-
How Much Does a Data Breach Cost? IBM’s 2026 Report Puts the US Average at $11.5 Million
IBM’s 2026 Cost of a Data Breach Report puts the global average at a record $4.99M, and $11.5M in the US. Here’s what actually drives the bill. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/how-much-does-a-data-breach-cost-ibms-2026-report-puts-the-us-average-at-11-5-million/
-
Zimbra Exploitation Spreads as Thousands Stay Unpatched
More Than 8,000 Unpatched Instances Remain Exposed to CVE-2026-73570. Attackers have compromised at least 267 Zimbra installations through a likely CVE-2026-73570 campaign, while more than 8,000 unpatched servers remain exposed to unauthenticated remote code execution that can give attackers access to mail data and system resources. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/zimbra-exploitation-spreads-as-thousands-stay-unpatched-a-32654
-
LACMA data breach last year exposed social security and medical data
The Los Angeles County Museum of Art (LACMA) has announced that a breach last year exposed customer and employee information. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/lacma-data-breach-last-year-exposed-social-security-and-medical-data/
-
Network Compliance Is Failing 50% of Enterprises. Here’s Why and How to Fix It
According to Hyperproof’s 2026 IT Risk and Compliance Benchmark Report, 50% of organizations managing compliance ad hoc suffered a data breach in 2025. Organizations using an integrated, automated approach cut that number nearly in half. That gap does not happen by accident. The breached organizations were not ignoring compliance. Most had policies, scheduled checks, and..…
-
Employee benefits platform Paylogix says hackers stole financial and health data
The benefits management firm Paylogix told regulators that hackers stole sensitive information on tens of thousands of people from its systems. First seen on therecord.media Jump to article: therecord.media/paylogix-cyberattack-akira-ransomware
-
Norway ‘s Digital Government Infrastructure Hit by a new DDoS Attack
Norway ‘s shared government infrastructure suffered a third DDoS attack, disrupting digital services but showing no signs of data compromise. Norway ‘s shared digital government infrastructure has been hit by another distributed denial-of-service (DDoS) attack that disrupted services used by citizens, businesses and public agencies. The incident began at 03:38 CEST on Monday, August 24,…
-
When the Algorithm Fires You: Uber Faces Euro825M Fine
Uber faces an Euro825M GDPR fine for automatically suspending drivers without human review, highlighting the risks of AI decisions affecting workers. The Dutch Data Protection Authority handed Uber its largest privacy fine yet, and this one isn’t about data transfers or cookie consent. The regulator imposed an 825 million euro penalty, roughly $964 million, over…
-
Can AI Replace Penetration Testing? What 2026 Data Shows
Can AI replace penetration testing is a question with real 2026 benchmark data behind it now, and the honest answer is more specific than either side of the debate usually presents. The post Can AI Replace Penetration Testing? What 2026 Data Shows appeared first on Packet33. First seen on securityboulevard.com Jump to article: https://securityboulevard.com/2026/08/can-ai-replace-penetration-testing-what-2026-data-shows/
-
Lawful basis for processing personal data in practice
Key takeaways Start with the business purpose, then choose the lawful basis that genuinely fits that purpose. Do not use consent by default, because it is only suitable when people can freely agree and later withdraw. Document each lawful basis decision in a simple register and review it when the activity changes. Special category data……
-
BSidesCharm 2026 Modernize, Vectorize, And Visualize CyberOps Data, Threat Intel With Qdrant
Presenters: Kevin Figueroa & Dickson Kwong Our thanks to BSidesCharm for publishing their Creators, Authors and Presenter’s outstanding BSidesCharm 2026 content on the Organizations’ YouTube Channel. Permalink First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/bsidescharm-2026-modernize-vectorize-and-visualize-cyberops-data-threat-intel-with-qdrant/

