Breaches: Page


  • Statue of Alexander Hamilton.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Treasury Department says state-linked hacker gained access to unclassified data in major attack

    The compromise of agency workstations is linked to a previously disclosed compromise of certain BeyondTrust customers.

    By Dec. 31, 2024
  • A view of Ascension St. Vincent's Riverside Hospital sign.
    Image attribution tooltip
    Cliff Hawkins via Getty Images
    Image attribution tooltip

    Ascension cyberattack exposes data from 5.6M people

    The breach is the third largest reported to a portal managed by federal regulators this year.

    By Emily Olsen • Dec. 20, 2024
  • Trendline

    Managing and securing identity sprawl

    Cyber threat actors know the simplest way to hack into an enterprise and remain under the radar is with stolen, legitimate user credentials -- and AI is making managing and securing digital identities more challenging than ever.

    By Cybersecurity Dive staff
  • Aerial view of a government building with Providence in the background
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Rhode Island officials warn residents as ransomware group threatens social services data leak

    The personal data of hundreds of thousands of vulnerable residents is at risk after a threat group attacked a state social services database.

    By Dec. 18, 2024
  • A black and gold United States Environmental Protection Agency sign next to double-glass doors.
    Image attribution tooltip
    Sara Samora/Cybersecurity Dive
    Image attribution tooltip

    US subsidiary of global water treatment firm probes November cyberattack after data encrypted

    Kurita America, a subsidiary of a Tokyo-based company, is the latest in a string of companies tied to the water industry targeted by hackers.

    By Dec. 10, 2024
  • Finance chiefs can achieve supply chain security, risk mitigation, and even happy customers by collaborating with their logistics and procurement teams.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Blue Yonder investigating data leak claim following ransomware attack

    The software supply chain company is widening its investigation after Termite ransomware leaked data it claims is linked to the attack.

    By Dec. 9, 2024
  • A worker scans produce at a Morrisons supermarket in 2017. The supermarket chain was impacted by a cyberattack against Blue Yonder in November 2024.
    Image attribution tooltip
    Christopher Furlong via Getty Images
    Image attribution tooltip

    Morrisons recovers warehouse systems following attack on Blue Yonder

    The U.K. supermarket chain was one of several high-profile customers impacted by a ransomware attack against the supply chain management software provider.

    By Dec. 6, 2024
  • New York Attorney General Letitia James attends a press conference on July 31, 2023, in New York City.
    Image attribution tooltip
    Michael M. Santiago / Staff via Getty Images
    Image attribution tooltip

    New York fines Geico, Travelers $11.3M for pandemic-era breaches

    The auto insurance companies were penalized for a series of attacks that exposed the personal data of 120,000 people in late 2020 and early 2021.

    By Nov. 26, 2024
  • Abstract black and white monochrome art with surreal funnel.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    AI training vendor iLearningEngines discloses cyberattack in wake of SEC probe

    The company said an attacker stole data, misdirected a $250,000 wire payment and deleted emails.

    By Nov. 19, 2024
  • A facade of a Schneider Electric building.
    Image attribution tooltip
    Permission granted by Schneider Electric
    Image attribution tooltip

    Schneider Electric investigating cyber intrusion after threat actor gains access to platform

    The French multinational company has been a previous target of ransomware groups.

    By Nov. 5, 2024
  • UnitedHealth Group office
    Image attribution tooltip
    Courtesy of UnitedHealth Group
    Image attribution tooltip

    Change Healthcare data breach officially affects 100M people

    The breach is the largest ever reported to a portal managed by federal regulators.

    By Emily Olsen • Oct. 25, 2024
  • Empty interior of modern security system control room with workstations with multiple displays and big screens mounted on the wall.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Where organizations invest after a data breach

    Asking customers to foot the bill for data breach remediation will not prevent future data breaches or address the issues that cause costs to increase.

    By Sue Poremba • Oct. 14, 2024
  • Building Exterior with Marriott sign
    Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    FTC settles yearslong investigation into Marriott’s ‘security failures’

    The settlement caps a pattern of major data breaches at Marriott and its subsidiary Starwood Hotels and Resorts Worldwide over the last decade.

    By Oct. 10, 2024
  • T-Mobile storefront in San Francisco.
    Image attribution tooltip
    Justin Sullivan/Getty Images via Getty Images
    Image attribution tooltip

    FCC reaches $31.5M settlement with T-Mobile over rash of data breaches

    The company agreed to a major change in board-level governance and will make a series of upgrades to boost its cyber resilience.

    By Oct. 1, 2024
  • Code on a black and white background that appears warped.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Dark web exposure is ‘highly correlated’ with cyberattack risk

    Organizations that are mentioned in dark web market listings are more than twice as likely to experience an attack, Marsh McLennan found.

    By Alexei Alexis • Sept. 24, 2024
  • The red lock and its structure explode in a digital computer setting.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Suffolk County ransomware attack linked to lack of planning, ignored warnings

    A special report blames county officials for ignoring FBI warnings during the 2022 attack and an overall failure of IT and security leadership.

    By Sept. 18, 2024
  • A man walks with an umbrella in front of AT&T logo.
    Image attribution tooltip
    Ronald Martinez via Getty Images
    Image attribution tooltip

    AT&T settles a 2023 data breach for $13M. Recent incidents are much worse.

    Telecom cybersecurity remains a challenge with widespread impacts. AT&T is not alone in experiencing a pattern of extensive breaches exposing customer data.

    By Sept. 18, 2024
  • Hand grabbing password out of blurred code.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Valid accounts remain top access point for critical infrastructure attacks, officials say

    CISA attributed 2 in 5 successful intrusions to valid account abuse last year, but that is down from 2022.

    By Sept. 17, 2024
  • Interior of Progress Software's office in Rotterdam, Netherlands.
    Image attribution tooltip
    Retrieved from Progress Software on January 18, 2024
    Image attribution tooltip

    MOVEit victims are still coming forward. This time it’s Wisconsin Medicare.

    The delayed notifications underscore the difficulty organizations confront in discovering breaches and attributing compromises to a root cause or source.

    By Sept. 9, 2024
  • CISA, cybersecurity, agency
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    CISA officials credit Microsoft security log expansion for improved threat visibility

    CISA officials say they plan to hold Microsoft accountable to ensure the company lives up to its commitments.

    By Aug. 27, 2024
  • SEC no-action requests on 2024 shareholder proxy vote proposals
    Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    SEC settles cyber case with Equiniti Trust as oversight questions linger

    The firm, formerly known as American Stock Transfer, will pay $850,000 to settle civil fraud charges involving the theft of $6.6 million in client funds.

    By Aug. 26, 2024
  • Guard stands in front of Securities and Exchange Commission building.
    Image attribution tooltip
    Brendan Smialowski via Getty Images
    Image attribution tooltip

    Progress Software says SEC declines to pursue action related to MOVEit exploitation spree

    The decision comes just weeks after a federal court dismissed most of the SEC’s civil fraud case against SolarWinds.

    By Aug. 8, 2024
  • A digital blue fingerprint lifted being lifted off a mirrored surface against a black background. Binary code makes up the fingerprint.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Global data breach costs reach all-time high of $4.9M, IBM says

    U.S. organizations led the world with the highest average data breach cost, a dubious distinction it has earned for the 14th straight year.

    By July 30, 2024
  • UnitedHealth Group office
    Image attribution tooltip
    Courtesy of UnitedHealth Group
    Image attribution tooltip

    UnitedHealth’s cyberattack response costs to surpass $2.3B this year

    The healthcare giant’s new estimate is roughly $1 billion higher than previous forecasts as the cyberattack on subsidiary Change Healthcare continues to hamper its profit outlook.

    By Rebecca Pifer Parduhn • July 17, 2024
  • Hand grabbing password out of blurred code.
    Image attribution tooltip
    Getty Images
    Image attribution tooltip

    Weak credentials behind nearly half of all cloud-based attacks, research finds

    Credential mismanagement was the top initial access vector for cloud environment attacks during the first half of 2024, a Google Cloud report found.

    By July 17, 2024
  • Vehicles for sale at an AutoNation car dealership.
    Image attribution tooltip
    Mario Tama/Staff/Getty Images News via Getty Images
    Image attribution tooltip

    AutoNation warns CDK cyberattack will dent quarterly earnings

    The major North American car dealership estimates the attack will lead to a $1.50 per-share earnings impact.

    By July 15, 2024