Security Leftovers
-
Heads up: Highmark Health will be notifying 300,000 patients of a phishing incident. Watch for your mail this month.
Letters have not gone out yet and will not be going out in the mail until February 13, but Highmark Health will be notifying 300,000 patients of a data security breach that occurred on December 13, 2022, after an employee clicked on a link that they should not have clicked on.
-
Bigger than they knew: Diligent Corp. sends more notifications after discovering hacked data on the internet
Diligent Corp is a software as a service company, headquartered in New York.
-
Taiwan car rental platform data leak exposed, government reacts
iRent service provider Hotai Motor accused of not reacting to major cyber security loophole
-
Taiwan car rental platform iRent plans compensation for data leak victims
Matthew Strong reports: Car rental and carshare platform iRent will prepare a compensation package for 400,000 clients deemed at risk from a recent leakage of private data, reports said Saturday (Feb. 4).
-
Massive ESXiArgs ransomware attack targets VMware ESXi servers worldwide
Admins, hosting providers, and the French Computer Emergency Response Team (CERT-FR) warn that attackers actively target VMware ESXi servers unpatched against a two-year-old remote code execution vulnerability to deploy a new ESXiArgs ransomware.
-
Josh Bressers: Episode 361 – GitHub got pwnt, but it wasn’t very exciting
Josh and Kurt talk about the recent GitHub breach. It wasn’t terribly exciting, but there are some interesting conversations to have around securing certificates, source code, and hardware security modules. In general GitHub did most things right on this one.
-
Hackers who breached ION say ransom paid; company declines comment
The ransomware outbreak that erupted at ION on Tuesday has disrupted trading and clearing of exchange-traded financial derivatives, causing problems for scores of brokers, sources familiar with the matter told Reuters this week.
-
Security by diversity: The business of security through diversity
How to work with quality uncertainty and scaling different forms of security.