Latest from Zack Whittaker
U.S. realty trust giant Brandywine Realty Trust has confirmed a cyberattack that resulted in the theft of data from its network. In a filing with regulators on Tuesday, the Philadelphia-based…
UnitedHealth’s CEO said in congressional testimony that the portal used by the hackers to break into Change Healthcare was not protected with a basic security feature.
Health insurance giant Kaiser will notify millions of a data breach after sharing patients’ data with advertisers
Kaiser, one of the largest healthcare organizations in the United States, said it was notifying 13.4 million members of a data breach earlier in April.
Featured Article
Security bugs in popular phone-tracking app iSharing exposed users’ precise locations
The location-sharing app iSharing, which has 35 million users, fixed vulnerabilities that exposed users’ personal information and precise location data.
Featured Article
UnitedHealth says Change hackers stole health data on ‘substantial proportion of people in America’
The health tech giant processes 15 billion health transactions a year, and handles health information for about half of all Americans.
CISA said Chirp Systems ignored the federal agency and the reporting security researcher.
Lawmakers vote to reauthorize US spying law that critics say expands government surveillance
House and Senate lawmakers passed a bill reauthorizing the controversial Section 702 powers under FISA, which allows U.S. spy agencies to conduct warrantless searches of Americans’ communications.
Featured Article
Your Android phone could have stalkerware — here’s how to remove it
This simple guide helps you identify and remove common consumer-grade spyware apps from your Android phone.
Featured Article
Hackers are threatening to leak World-Check, a huge sanctions and financial crimes watchlist
The hackers say they have stolen 5.3 million records from the World-Check database, used by companies and banks for screening potential customers.
Organizations are urged to patch their Palo Alto firewalls after researchers discover evidence of malicious exploitation dating back to late March.
A ransomware gang called Daixin has taken credit for the breach, and claimed to steal millions of customer records dating back to 2017.
This is the second group to demand a ransom payment from Change Healthcare to prevent the release of stolen patient data in as many months.
Spyware makers are reportedly working on targeting individuals with stealthy data-stealing malware using online banner ads.
Roku said it discovered malicious hackers compromised more than half a million user accounts while investigating an earlier spate of account hacks.
Founded in 1973, the Washington DC-based Heritage Foundation and supports and lobbies on conservative issues.
CISA said the latest theft of government email — blamed on Russian government hackers — presents “a grave and unacceptable risk” to U.S. federal agencies.
The U.S. cybersecurity agency said it was responding to a “recent compromise” at the data analytics giant, which provides business intelligence to critical infrastructure companies.
The legally required disclosure came a week after AT&T confirmed a cache containing millions of customers’ data that leaked online was genuine.
The tech giant secured a cloud storage server that was inadvertently spilling Microsoft internal data and credentials to the open internet.
Targus’ parent company, B. Riley Financial, said it discovered “a threat actor gained unauthorized access to certain of Targus’ file systems.”
Featured Article
‘Reverse’ searches: The sneaky ways that police tap tech companies for your private data
Reverse searches cast a digital dragnet over a tech company’s store of user data to catch the information that police are looking for.
Featured Article
AT&T resets account passcodes after millions of customer records leak online
A security researcher told TechCrunch that leaked AT&T customer data contained encrypted account passcodes that can be easily unscrambled.
The government’s reward for information now extends to ALPHV’s affiliates, which claimed responsibility for a massive weekslong healthcare cyberattack.
It’s the first time the United Kingdom has attributed the massive breach of millions of citizens’ voter data since the cyberattack was first disclosed in 2023.
Customers say their leaked AT&T customer data — names, addresses, phone numbers and Social Security numbers — is accurate.
The U.S. Department of Transportation announced its first industry-wide review of data security and privacy policies across the largest U.S. airlines. The DOT said in a press release Thursday that…
Featured Article
Users say Glassdoor added real names to user profiles without their consent
One user said Glassdoor pulled her full name from an email and added it to her profile. Another user said it wasn’t clear how Glassdoor got his data.
Documentation startup Mintlify says dozens of customers had GitHub tokens exposed in a data breach at the start of the month and publicly disclosed last week. Mintlify helps developers create…
Multinational technology giant Fujitsu confirmed a cyberattack in a statement Friday, and warned that hackers may have stolen personal data and customer information. “We confirmed the presence of malware on…
Featured Article
How to verify a data breach
Over the years, TechCrunch has extensively covered data breaches. In fact, some of our most-read stories have come from reporting on huge data breaches, such as revealing shoddy security practices at startups holding sensitive genetic information or disproving privacy claims by a popular messaging app. It’s not just our sensitive…