Tag: data
-
Xsolis breach exposes personal and health data of 1.4 million people
First seen on scworld.com Jump to article: www.scworld.com/brief/xsolis-breach-exposes-personal-and-health-data-of-1-4-million-people
-
Tata Electronics confirms data breach after sensitive files appear online
First seen on scworld.com Jump to article: www.scworld.com/brief/tata-electronics-confirms-data-breach-after-sensitive-files-appear-online
-
Why Security Firm Varonis Is Eyeing a Sale to Private Equity
Tags: dataStock Struggles, Unfavorable Comps to Cyera Could Make Private Deal Appealing. Private equity firms Blackstone, Thoma Bravo and Vista Equity Partners have expressed preliminary interest in Miami-based data security vendor Varonis, according to Bloomberg. The company is working with advisors and exploring options including a potential sale after receiving takeover interest. First seen on govinfosecurity.com…
-
Most Companies Overestimate Their AI Maturity
EXL Study Finds Data, Business Processes Separate Leaders from Laggards. Most companies believe they are ahead on AI, but EXL’s latest enterprise AI study suggests few have truly scaled it. The leaders are pulling away by integrating AI across functions, improving data access and redesigning workflows around measurable business value. First seen on govinfosecurity.com Jump…
-
Coupang’s $409M Fine Shows the Real Cost of Weak AI Governance
Recent AI and data security actions show why AI governance now belongs with boards, not just IT teams managing tools and access. The post Coupang’s $409M Fine Shows the Real Cost of Weak AI Governance appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-coupang-fine-ai-governance-board-risk/
-
Tata Electronics confirms cyberattack as hackers leak data
Tata Electronics has confirmed in a statement to BleepingComputer that it was the target of a cyberattack that impacted parts of its IT infrastructure. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/tata-electronics-confirms-cyberattack-as-hackers-leak-data/
-
Scope of Salesforce Attacks Expands as Icarus Leaks Data
More victims have emerged after attackers breached application vendor Klue and used its OAuth tokens to steal customers’ Salesforce data. First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/scope-salesforce-attacks-expands-icarus-leaks-data
-
Klue says hackers stole credential from 2022 that led to customer data breaches
It’s unclear why Klue had not revoked the credential after the limited pilot, which hackers then used to breach a system holding keys for accessing customers’ data. First seen on techcrunch.com Jump to article: techcrunch.com/2026/06/23/klue-says-hackers-stole-credential-from-2022-that-led-to-customer-data-breaches/
-
Healthtech firm Xolis suffers data breach impacting 1.4 million people
Healthcare technology company Xsolis says that sensitive data belonging to nearly 1.4 million individuals was compromised in a phishing attack that gave attackers access to its network. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/healthtech-firm-xolis-suffers-data-breach-impacting-14-million-people/
-
LastPass Confirms Customer Data Breach After Klue OAuth Token Theft
LastPass has confirmed it was affected by the Klue supply chain incident, saying an unauthorised actor used stolen… First seen on hackread.com Jump to article: hackread.com/lastpass-customer-data-breach-klue-oauth-token/
-
DifyTap: Four Bugs Put over 1 million AI Apps at Risk
Four flaws in Dify exposed cross-tenant data, documents and AI conversations. Two critical bugs enabled unauthenticated access and data theft. Zafran Labs researchers disclosed four vulnerabilities in Dify, the open-source AI platform used by major companies like Volvo and Maersk to run over a million applications across over 60 industries. Two vulnerabilities are of critical…
-
Trump directs federal agencies to protect US data from quantum threats
An executive order signed Monday aims to accelerate the government’s transition to post-quantum cryptography (PQC), a new generation of encryption designed to protect data from the powerful quantum computers expected in the future. First seen on therecord.media Jump to article: therecord.media/trump-directs-federal-agencies-quantum-cryptography
-
OTC Glucose Monitors Make Wellness Tracking More Personal, and More Complicated
Over-the-counter CGMs are making glucose data easier to access, but not every user benefits equally. Here’s where the evidence is strongest, and what to know about app privacy. The post OTC Glucose Monitors Make Wellness Tracking More Personal, and More Complicated appeared first on TechRepublic. First seen on techrepublic.com Jump to article: www.techrepublic.com/article/news-otc-glucose-monitors-wearable-tech/
-
nLighten CEO Dawn Childs on edge datacentres and sovereignty
We talk to the CEO of nLighten about the limits of the UK power grid, why that makes ‘edge’ datacentres a good idea, and navigating contemporary data sovereignty requirements First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366645014/nLighten-CEO-Dawn-Childs-on-edge-datacentres-and-sovereignty
-
Klue investigating supply chain attack that targeted Salesforce integrations
Customer data from several prominent cybersecurity firms were among hundreds of potential enterprise victims. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/klue-investigating-supply-chain-attack-salesforce-integrations/823532/
-
Password manager maker LastPass says hackers stole customer support case data during Klue breach
This is the second data breach to affect LastPass customers in recent years, after one of the password manager’s tech partners was recently breached. First seen on techcrunch.com Jump to article: techcrunch.com/2026/06/23/password-manager-maker-lastpass-says-hackers-stole-customer-support-case-data-during-klue-breach/
-
10 Major Cyberattacks And Data Breaches In 2026 (So Far)
Major cyberattacks and data breaches in 2026 so far include attacks against Cisco and Fortinet devices as well as Microsoft environments, while AI-driven vulnerability discovery showed signs of increasing. First seen on crn.com Jump to article: www.crn.com/news/security/2026/10-major-cyberattacks-and-data-breaches-in-2026-so-far
-
KI-Entwicklung schreitet schneller voran als Compliance und Datenkontrolle folgen können
Eine neue Studie von Veeam Software, dem Unternehmen für Data- und AI-Trust, zeigt eine zunehmende Compliance-Kluft in Unternehmen der EMEA-Region. 99 % der befragten Entscheidungsträger sind zwar der Meinung, dass Datenhoheit von entscheidender Bedeutung ist. Allerdings rückt die Mehrheit (72,5 %) das Thema zugunsten beschleunigter KI-Einführung in den Hintergrund. Das Ergebnis: KI-Workflows sind zur größten…
-
LastPass confirms data breach in Klue supply chain attack
LastPass announced that hackers accessed customer data from its Salesforce environment after stealing the company’s OAuth tokens in the Klue supply chain attack earlier this month. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/lastpass-confirms-data-breach-in-klue-supply-chain-attack/
-
DifyTap Flaws Expose AI Data Across Tenants on Platform Powering 1M+ Apps
A series of critical vulnerabilities in the widely used open-source LLMOps platform Dify, which powers over one million AI applications. These vulnerabilities, collectively referred to as “DifyTap,” include four flaws, two rated as critical and two that require no authentication. They expose cross-tenant data leakage risks, allowing attackers to access private AI conversations, preview sensitive…
-
ANY.RUN Adds In-Browser Data Inspection to Reveal Phishing Redirects and DOM Changes
ANY.RUN today launched in-browser data inspection for its Interactive Sandbox, a capability that brings real browser-level visibility directly into URL analysis workflows and addresses longstanding blind spots in phishing investigations. Modern URL phishing increasingly leverages dynamic pages, layered redirect chains, client-side scripts, iframes and credential-harvesting flows that static scanners and screenshot-based sandboxes routinely miss. By…
-
Xsolis Data Breach Impacts 1.4 Million People
Xsolis disclosed a breach affecting 1.4M people after a phishing attack exposed personal and health data from its hospital clients’ systems. Healthcare tech company Xsolis, Inc. has disclosed a data breach impacting nearly 1.4 million individuals. The Tennessee-based firm provides utilization management and revenue cycle solutions for healthcare providers. The company became aware of an…
-
Tata Electronics Data Breach Exposes 200,000+ Files Linked to Apple and Tesla, Hackers Claim
Tags: apple, breach, cyber, cybersecurity, dark-web, data, data-breach, group, hacker, ransomware, threatTata Electronics has reported a cybersecurity incident following claims from a ransomware-linked threat group that it has exfiltrated and published over 200,000 files related to Apple and Tesla’s manufacturing operations. The leaked data, which is said to amount to more than 630 GB, has appeared on a dark web portal operated by the >>World Leaks<<…
-
Tata Electronics Data Breach Exposes 200,000+ Files Linked to Apple and Tesla, Hackers Claim
Tags: apple, breach, cyber, cybersecurity, dark-web, data, data-breach, group, hacker, ransomware, threatTata Electronics has reported a cybersecurity incident following claims from a ransomware-linked threat group that it has exfiltrated and published over 200,000 files related to Apple and Tesla’s manufacturing operations. The leaked data, which is said to amount to more than 630 GB, has appeared on a dark web portal operated by the >>World Leaks<<…
-
Squidbleed: 29-Year-Old Squid Bug Leaks User Credentials
Squidbleed is a 29-year-old Squid Proxy flaw that can leak credentials, tokens, and other users’ HTTP data through a memory overread. Researchers at Calif.io have disclosed CVE-2026-47729, a memory leak vulnerability in Squid Proxy that was introduced in 1997 and has remained undetected through nearly three decades of releases, audits, and rewrites. They named it…
-
FortiBleed Campaign Uses FortigateSniffer to Harvest 110 Million Credentials From Fortinet Firewalls
A large-scale credential harvesting campaign called “FortiBleed” has been uncovered, revealing how threat actors are exploiting Fortinet FortiGate firewalls to capture authentication data on an unprecedented scale. Research from the SOCRadar Threat Research Unit (STRU) indicates that this operation has already compromised over 110 million credentials by targeting misconfigured or weakly secured devices, turning them…
-
29-Year-Old Squid Proxy Vulnerability Exposes Authorization Headers and API Keys
A recently disclosed vulnerability in Squid Proxy, tracked as CVE-2026-47729 and referred to as “Squidbleed,” is exposing sensitive user data, including HTTP authorization headers and API keys. This issue arises from a decades-old memory-handling flaw in Squid’s codebase, dating back to at least 1997. It affects default configurations and illustrates how support for legacy protocols…
-
Only 7% of companies are ready for the AI agents they deployed
Most organizations now run or pilot AI agents that operate on company data with limited human direction at each step, a share that reaches 88% in Veeam Software’s Data … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/23/ai-trust-gap-research/
-
Lawsuits Already Getting Filed in Drug Maker’s Data Thefts
Proposed Class Action Litigation Allege Negligence by Novo Nordisk, Other Claims. Attorneys have filed the first of undoubtedly many proposed class action lawsuits against drug maker Novo Nordisk by a patient and a former employee who say the company was negligent in failing to protect their sensitive information from cybercriminals. First seen on govinfosecurity.com Jump…

