Global Cyber News Digest

Daily News Digest

Stay current on the global cyber threat landscape and industry developments with CCOE’s daily digest and library of cybersecurity news and articles.

  • GEDmatch confirms data breach after users’ DNA profile data made available to police

    • GEDmatch,  the DNA analysis site that police used to catch the so-called Golden State Killer, was pulled briefly offline on Sunday while its parent company investigated how its users’ DNA profile data apparently became available to law enforcement searches.
    • GEDmatch issued a privacy warning to its users and put in new controls to allow users to opt-in for their DNA to be included in police searches.
    • But users reported Sunday that those settings had changed without their permission, and that their DNA profiles were made available to law enforcement searches.
    - Zack Whittaker | July 22, 2020
    hak-iq.us20.list-manage.comJuly 22, 2020
  • University of York Confirms Recent Data Breach Was Caused by Ransomware

    • According to an announcement via the University’s website, Blackbaud, one of the world’s largest customer relationship management systems for sectors such as the education, confirmed that the cybercriminals managed to extract copies of staff, alumni, and student records.
    • The university clarified that no sensitive information, such as banking details or login credentials, were stolen by the gang. Overall, the hackers captured basic info like names, date birth dates, addresses, contact details, reports of donations, and survey results.
    • Recently, the University of California at San Francisco School of Medicine reportedly paid a $1.14 million ransom in Bitcoin (BTC) to the NetWalker gang following a ransomware attack on June 1.
    - Felipe Erazo | July 22, 2020
    hak-iq.us20.list-manage.comJuly 22, 2020
  • The Value of Cybersecurity Ratings for CFOs

    • Organizations with a higher security rating have a lower risk profile, and with that comes significant business value and opportunity in terms of investor confidence and trust from consumers and partners.
    • As CFOs begin to take an increasingly active role in managing cybersecurity, they must keep in mind the value of security ratings and their financial impact.
    - Todd Graber | July 21, 2020
    hak-iq.us20.list-manage.comJuly 21, 2020
  • COVID-19 fuels cyber attacks, exposes gaps in business recovery

    • The majority of businesses worldwide have seen a jump in cyber attacks as a result of employees working from home, with most reporting an increase in COVID-19 related malware.
    • In Singapore, the global pandemic also revealed gaps in organisations' disaster recovery plans and IT operations.
    • Island-hopping was the main cause of breaches in markets such as Italy and the Nordics and web application attacks were most common in Canada.
    • In such tactics, attackers target a larger group to indirectly breach a network, such as an organisation's weaker and less secured community of business partners.
    - Eileen Yu | July 21, 2020
    hak-iq.us20.list-manage.comJuly 21, 2020
  • Minor allegedly involved in Western Australia's medical record data breach

    • Western Australia's Premier Mark McGowan says a 15-year-old was allegedly involved in a data breach which saw thousands of sensitive medical records leaked online.
    • The teenager from Mandurah is believed to be behind one of the biggest leaks of medical records in the state's history.
    • The alleged hacker, who has not been identified, describes himself online as 'script kiddie'.
    - Rebeka Powel | July 21, 2020
    hak-iq.us20.list-manage.comJuly 21, 2020
  • 7 Hong Kong VPN Providers Accused of Massive User Private Data Breach

    • A total of seven Hong Kong VPN providers are being accused of violating privacy policies when they allegedly released private data from their users. These include UFO VPN, FAST VPN, Free VPN, Super VPN, Secure VPN, Rabbit VPN, and Flash VPN.
    • The data include PII, email addresses, IP addresses, clear text passwords, phone models, home addresses, device IDs, and more. 
    • The leak also allegedly included connection logs, payment info, addresses, plain text passwords, and website activity.
    TECH TIMES - Jon Lindley | July 20, 2020
    hak-iq.us20.list-manage.comJuly 20, 2020
  • Solving preventable data breaches with the right vendor management tool

    • Nearly two out of every three recent data breaches were attributable to a third-party vendor, and just about every single one was entirely preventable. And yet, the Ponemon Institute reports that only 16% of companies are effectively managing the risks associated with external vendors accessing internal resources.
    • If the American public was instead responsible for cleaning up the mess made by laissez-faire third-party security practices, each adult in the US, all 210 million of us, would have to pay $12.43 in restitution for a breach of privacy that we had nothing to do with.
    - Nate Morison | July 20, 2020
    hak-iq.us20.list-manage.comJuly 20, 2020
  • More than 20 million VPN users warned of massive data breach

    • It's estimated around one billion online records have been exposed in a massive data breach, potentially affecting more than 20 million users of free Virtual Private Network (VPN) apps.
    • In a report provided to 9News, researchers say the server was "completely open and accessible, exposing private user data for everyone to see".
    - Fi Wilan | July 20, 2020
    hak-iq.us20.list-manage.comJuly 20, 2020
  • The 10 biggest hacks in history

    • This week the news of a massive hack on the social network Twitter was reported, which would have compromised the accounts of important personalities such as Bill Gates, Elon Musk, Jeff Bezos, or Barack Obama.
    • The amount of stolen data, as well as the number of cases of breaches and hacks, constantly increases in a hellish escalation. A dynamic in which it seems that cyber criminals always go one step beyond the cybersecurity standards of these large corporations.
    - Arjun Sethi | July 19, 2020
    hak-iq.us20.list-manage.comJuly 19, 2020
  • 10 ways businesses can minimize the risk of identity theft

    • In the unprecedented midst of a pandemic, we are seeing a sharp increase in all types of fraud. Experienced fraudsters are exploiting the current chaos and sadly we are seeing more people turn to fraud in an attempt to boost their income.
    • As well as personal identity theft there has been an increase in businesses falling victim to identity theft. This can be as simple as your website being spoofed or emails being intercepted and payment details amended.
    techradar.pro - Francesca Dowling | July 19, 2020
    hak-iq.us20.list-manage.comJuly 19, 2020