Cybersecurity

Defunct Ambulance Service Data Breach Impacts Nearly 1 Million People

The ALPHV ransomware gang claimed responsibility for the attack on Transformative Healthcare in late April 2023 and exported a terabyte of data, including medical and paramedic reports. Fallon Ambulance Services, a subsidiary of Transformative Healthcare and now-defunct Ambulance Service, covering the greater Boston area in the United States, was targeted by a ransomware attack, exposing […]

Cybersecurity

European Central Bank to Put Banks Through Cyber Stress Test

Finance & Banking , Governance & Risk Management , Industry Specific 109 Banks to Participate in Simulated Cyberattacks to Assess Cyber Resiliency Akshaya Asokan (asokan_akshaya) • January 2, 2024     Image: Shutterstock The European Central Bank beginning this month will conduct cyber stress tests on banks to determine their resilience against cyberattacks. The agency […]

Cybersecurity

5 Ways to Reduce SaaS Security Risks

As technology adoption has shifted to be employee-led, just in time, and from any location or device, IT and security teams have found themselves contending with an ever-sprawling SaaS attack surface, much of which is often unknown or unmanaged. This greatly increases the risk of identity-based threats, and according to a recent report from CrowdStrike, […]

Cybersecurity

SMTP Smuggling: New Flaw Lets Attackers Bypass Security and Spoof Emails

Jan 03, 2024NewsroomCyber Threat / Email Security A new exploitation technique called Simple Mail Transfer Protocol (SMTP) smuggling can be weaponized by threat actors to send spoofed emails with fake sender addresses while bypassing security measures. “Threat actors could abuse vulnerable SMTP servers worldwide to send malicious emails from arbitrary email addresses, allowing targeted phishing […]

Cybersecurity

DOJ Slams XCast with $10 Million Fine Over Massive Illegal Robocall Operation

Jan 03, 2024NewsroomVoIP Service / Regulatory Compliance The U.S. Department of Justice (DoJ) on Tuesday said it reached a settlement with VoIP service provider XCast over allegations that it facilitated illegal telemarketing campaigns since at least January 2018, in contravention of the Telemarketing Sales Rule (TSR). In addition to prohibiting the company from violating the […]

Cybersecurity

State AG Hits Hospital With $300K Fine for Web Tracker Use

Governance & Risk Management , Healthcare , HIPAA/HITECH NewYork-Presbyterian Disabled Website, Patient Portal Trackers in 2022 Marianne Kolbasuk McGee (HealthInfoSec) • January 2, 2024     Image: Getty State regulators have fined a large New York academic medical center $300,000 to settle privacy violations related to the organization’s prior use of tracking tools in its […]

Cybersecurity

Iranian Food Delivery Giant Snappfood Cyber Attack: 3TB of Data Stolen

A hacker or hacker group, identified as “irleaks” (presumably indicating Iran Leaks), publicly disclosed the Snappfood cyber attack on Breach Forums and Telegram over New Year’s Eve. Snappfood, a prominent online food delivery service in Iran, has fallen victim to a major data breach, during which cybercriminals stole personal information of millions of customers, Hackread.com […]