A road map for improving the update process will help reduce the risks from vulnerabilities.
from Dark Reading: https://ubm.io/2Y2yYeb
via IFTTT
A road map for improving the update process will help reduce the risks from vulnerabilities.
from Dark Reading: https://ubm.io/2Y2yYeb
via IFTTT
Unless you’ve been under a rock, you’ll know that earlier this week Facebook announced plans for a new global cryptocurrency for absolutely everyone called Libra.
from Naked Security http://bit.ly/2IWXUxk
via IFTTT
The Facebook ad agency xSocialMedia exposed 150K medical histories, along with identifying information for the people involved.
from Naked Security http://bit.ly/2IWyVKI
via IFTTT
Heavily outnumbered and outpaced by their targets, small FBI cybersquads have been quietly notching up major wins against online criminals operating out of home and abroad.
from Dark Reading: https://ubm.io/2x5hK3Q
via IFTTT
The story of a Linux miner bundled with pirated copies of VST (Virtual Studio Technology) software for Windows and macOS
The post LoudMiner: Cross-platform mining in cracked VST software appeared first on WeLiveSecurity
from WeLiveSecurity http://bit.ly/2XYwmy5
via IFTTT
A medical billing firm responsible for a recent eight-month data breach that exposed the personal information on nearly 20 million Americans has filed for bankruptcy, citing “enormous expenses” from notifying affected consumers and the loss of its four largest customers.
The filing, first reported by Bloomberg, comes from the Retrieval-Masters Creditors Bureau, the parent company of the American Medical Collection Agency (AMCA). Earlier this month, medical testing firm Quest Diagnostics said a breach at the AMCA between Aug. 1, 2018 and March 30, 2019 led to the theft of personal and medical information on 11.9 million patients.

On June 4, KrebsOnSecurity broke the news that another major AMCA client — LabCorp — was blaming the company for a breach affecting 7.7 million of its patients.
According to a bankruptcy filing, LabCorp and Quest Diagnostics both stopped sending the AMCA business after the breach disclosure, as did the AMCA’s two other biggest customers — Conduent Inc. and CareCentrix Inc.
Bloomberg reports the data breach created a “cascade of events,” which incurred “enormous expenses that were beyond the ability of the debtor to bear.”
“Those expenses included more than $3.8 million spent on mailing more than 7 million individual notices to people whose information had been potentially hacked,” wrote Jeremy Hill. Retrieval Masters CEO Russell H. Fuchs “personally lent the company $2.5 million to help pay for those mailings, he said in the declaration. In addition, IT professionals and consultants hired in connection with the breach had cost Retrieval-Masters about $400,000 by the time of the filing.”
Retrieval Masters said it learned of the breach after a significant number of credit cards people used to pay their outstanding medical bills via the company’s site ended up with fraud charges on them soon after. The company also reportedly slashed its staff from 113 to 25 at the end of 2018.
The bankruptcy filing may also be something of a preemptive strike: Retrieval-Masters is already facing at least three class-action lawsuits from plaintiffs in New York and California.
A copy of the bankruptcy filing is available here (PDF).
from Krebs on Security http://bit.ly/2xeFP8N
via IFTTT
How a security researcher learned organizations willingly hand over sensitive data with little to no identity verification.
from Dark Reading: https://ubm.io/2WPkjqa
via IFTTT
Mozilla has released patches for the bug reported by Coinbase.
from Dark Reading: https://ubm.io/2XqAvxB
via IFTTT
A new report from HackerOne lists the top five companies running bug-hunting programs on the ethical hacking platform.
from Dark Reading: https://ubm.io/2XTK9G1
via IFTTT
The biggest ‘serverless’ risks don’t stem from the technonology itself. They occur when organizations respond to the adoption from the outside in.
from Dark Reading: https://ubm.io/2IWknKR
via IFTTT