Source: www.databreachtoday.com – Author:
Latest
Rhysida Leaks Nursing Home Data, Demands $1.5M From Axis
Marianne Kolbasuk McGee • October 11, 2024
Ransomware gang Rhysida is threatening to dump data on the darkweb that belongs to a Colorado provider of mental health, substance abuse and other healthcare services unless it pays nearly $1.5 million. The group is leaking records it claims to have stolen from a Mississippi nursing home.
Cyberwarfare / Nation-State Attacks
ISMG Editors: Chinese Hackers Raise Stakes in Cyberespionage
Anna Delaney • October 11, 2024
In the latest weekly update, ISMG editors discussed the implications of the U.S. investigation into Chinese hackers targeting telecom wiretap systems, the catastrophic risks of AI and the recent veto of an AI safety bill in the U.S., and the latest global ransomware response guidance.
Hackers Prowling for Unencrypted BIG-IP Cookies, Warns CISA
David Perera • October 11, 2024
Unencrypted cookies tied to a suite of secure gateway technology from F5 are gateways for hackers to reach internal devices on corporate networks, warns the Cybersecurity and Infrastructure Security Agency. BIG-IP uses persistent cookies as a traffic load-balancing convenience.
Artificial Intelligence & Machine Learning
Regulating AI Catastophic Risk Isn’t Easy
Rashmi Ramesh • October 11, 2024
An attempt by the California statehouse to tame the potential of artificial intelligence catastrophic risks hit a roadblock when Governor Gavin Newsom vetoed the measure late last month. One obstacle is lack of a widely-accepted definition for “catastrophic” AI risks.
Leadership & Executive Communication
CyberEdBoard Profiles in Leadership: Norman Kromberg
Anna Delaney • October 11, 2024
When Norman Kromberg looks back over his career as a security leader and IT audit specialist, understanding threats and vulnerabilities was just part of the reason for his success. A major factor was – and still is – understanding the business side of the organization.
DOD Unveils Final CMMC Rule for Defense Contractors
Chris Riotta • October 11, 2024
The Department of Defense is set to implement significant changes to the Cybersecurity Maturity Model Certification program, effective October 15, streamlining compliance for contractors by introducing a tiered system while enhancing security standards.
European Council Adopts Cyber Resilience Act
Akshaya Asokan • October 10, 2024
The European Council on Thursday adopted security-by-design regulation that makes patching and vulnerability updates mandatory for connected devices. The regulation will ensure that “products with digital components are made secure throughout the supply chain and throughout their life cycle.”
Operation Cronos Is Disrupting LockBit, Says UK Official
Akshaya Asokan • October 10, 2024
A British cybersecurity official touted Operation Cronos, an international operation against LockBit, saying multiple strikes aimed at the ransomware-as-a-service have disrupted its ability to recruit hackers. The operation has resulted in indictments, sanctions, and server takedowns.
New York State Enacts New Cyber Requirements for Hospitals
Marianne Kolbasuk McGee • October 10, 2024
General hospitals in New York State must now report cyber incidents to state regulators within 72 hours under new cybersecurity requirements that went into effect on Oct. 2. The hospitals have until next fall to comply with a long list of other security mandates, including appointing a CISO.
Artificial Intelligence & Machine Learning
GenAI Impact on Election Disinformation Limited, Says OpenAI
Rashmi Ramesh • October 10, 2024
Foreign threat actors are using generative artificial intelligence to influence U.S. elections, but their impact is limited, said OpenAI. Threat actors from China, Russia, Iran, Rwanda and Vietnam maliciously used AI tools to support influence operations.
Artificial Intelligence & Machine Learning
Relyance AI Raises $32M to Take on AI Governance Challenges
Michael Novinson • October 10, 2024
Relyance AI raised $32 million in Series B funding to grow its data governance platform. The funds will be used to scale operations, enhance real-time data visibility, and support enterprises in complying with complex global privacy regulations, ensuring responsible AI adoption across industries.
SSA Struggling to Modernize Fraud Prevention Tech, GAO Warns
Chris Riotta • October 10, 2024
The Social Security Administration is facing criticism for failing to update its fraud prevention technology, leaving financial institutions and federal authorities at risk of missing synthetic identity scams, according to a new Government Accountability Office report.
Get Daily Email Updates
Covering topics in risk management, compliance, fraud, and information security.
Resources
Featured Events
Virtual Government Cybersecurity Summit – Hosted by GovInfoSecurity
October 29, 2024 @ 12:10 am EDT
Benelux Cyber Summit
November 5, 2024 @ 12:11 am EST
Financial Services Cybersecurity Summit: New York Hosted by BankInfoSecurity
November 7, 2024 @ 12:11 am EST
Original Post url: https://www.databreachtoday.com/agency-releases/annual-report-to-congress-on-breaches-unsecured-protected-r-2539
Category & Tags: –
Views: 0