government
healthcare
social media
service provider
fine
education
law enforcement
finance
dark web
retail
web
phama
telecoms
charity
insurance
travel
manufacturing
app
operating system
legal
tech
gaming
publishing
transport
utilities
story
hacked
malware
unauthorised access
ransomware
vulnerability
accidental disclosure
phishing
unsecured database
poor security
insider threat
unsecured server
hacked email
lost device
identity theft
website hacked
ddos
stolen documents
Trojans
financial
inside job
spear phishing
RDP
breached
skimming
cyber attack
breach notification
privacy
security flaw
legislation
poor operations
user credentials
physical security
customer data
third party
Cryptocurrency
enforcement
email hacked
insecure storage
court action
encryption
fraud
VPN
passwords
zero day
spyware
3rd parties
state hacking
employee data
remote working
Elite Russian Cybercrime Forums Ironically Hacked, Critical User Data Leaked | HotHardware
How To Stop Being Overwhelmed by Security Audits – CloudSavvy IT
Oh SITA: Airline IT provider confirms passenger data leaked after major 'cyber-attack' • The Register
New ransomware only decrypts victims who join their Discord server
Move over, SolarWinds: 30,000 orgs’ email hacked via Microsoft Exchange Server flaws - The Verge
Troy Hunt: Gab Has Been Breached
Maza Russian cybercriminal forum suffers data breach | ZDNet
#COVID19 Vaccine Phishing Scams Surge 26% in Three Months - Infosecurity Magazine
The Long Hack: How China Exploited a U.S. Tech Supplier
Ripe for extortion? Navajo Nation hospital targeted by large-scale ransomware hack
Electricity Authority of Cyprus fined 40,000 Euros for breaching Art. 6 (1) GDPR, Art. 9 (2) GDPR - Insufficient legal basis for data processing
KEPIDES fined 6,000 Euros for breaching Art. 32 (4) - Insufficient technical and organisational measures to ensure information security
Cypriot Real Estate Registration Authority fined 10,000 Euros for breaching Art. 12 GDPR, Art. 15 GDPR, Art. 31 GDPR, Art. 58 (1) e) GDPR - Insufficient fulfilment of information obligations
Hellenic Bank fined 25,000 Euros for breaching Art. 5 (1) e), f) GDPR, Art. 32 (1) b), c) GDPR, Art. 33 (1) GDPR - Insufficient technical and organisational measures to ensure information security
Private Individual fined 200 Euros for breaching Art. 5 GDPR, Art. 32 GDPR - Non-compliance with general data processing principles
Ursnif Trojan has targeted over 100 Italian banks | ZDNet
Microsoft accuses China over email cyber-attacks - BBC News
Brave buys a search engine, promises no tracking, no profiling – and may even offer a paid-for, no-ad version • The Register
Unpatched Bug in WiFi Mouse App Opens PCs to Attack | Threatpost
Researcher finds 5 privilege escalation vulnerabilities in Linux kernel
Bournemouth residents advised to look out for Bluetooth malware | Bournemouth Echo
Hackers share methods to bypass 3D Secure for payment cards
Proof of concept code published for latest Saltstack CVE: Don't be an update laggard • The Register
Microsoft promises end-to-end encrypted Teams calls for some, invites you to go passwordless with Azure AD • The Register
How Gootkit trojan distributes ransomware via Google SERPs
Cybersecurity Trends and Emerging Threats in 2021
Vulnerabilities in Smarty PHP template engine renders popular CMS platforms open to abuse | The Daily Swig
Gootkit malware crew using SEO to get pwned websites in front of unwitting marks • The Register
I-DE Redes Eléctricas Inteligentes, S.A.U fined 200,000 Euros for breaching Art. 5 (1) b), c) GDPR, Art. 6 (1) b) GDPR - Non-compliance with general data processing principles
Registrų Centras fined 15,000 Euros for breaching Art. 32 (1) b), c) GDPR - Insufficient technical and organisational measures to ensure information security
Unknown fined 9,000 Euros for breaching Art. 6 GDPR, Art. 13 GDPR - Insufficient legal basis for data processing
Undisclosed company fined 24,400 Euros for breaching Art. 5 GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
CVE-2020-3992-CVE-2021-21974
Malicious NPM packages target Amazon, Slack with new dependency attacks
New nation-state cyberattacks - Microsoft On the Issues
Israeli spyware firm NSO Group faces renewed US scrutiny | Surveillance | The Guardian
Critical vulnerability found in Snow Software's Inventory Agent
Malware attack that crippled Mumbai's power system came from China, claims infosec intel outfit Recorded Future • The Register
'Incorrect software parameter' sends Formula E's Edoardo Mortara to hospital: Brakes' fail-safe system failed • The Register
IT sprendimai sėkmei fined 3,000 Euros for breaching Art. 5 (1), (2) GDPR, Art. 13 GDPR, Art. 24 GDPR, Art. 32 GDPR, Art. 35 GDPR, Art. 58 (2) f) GDPR - Non-compliance with general data processing principles