Breaches


  • A row of students learning how to code while working at a classroom computer.
    Image attribution tooltip
    izusek via Getty Images
    Image attribution tooltip

    PowerSchool data breach brings claims of negligence, poor cyber hygiene

    The K-12 software company is facing legal pushback and criticism following a cyberattack that impacted a still unknown number of districts.

    By Anna Merod • Jan. 22, 2025
  • Front of Hewlett Packard Enterprise's campus in Houston.
    Image attribution tooltip
    Courtesy of HPE
    Image attribution tooltip

    HPE probes hacker claim involving trove of sensitive company data

    The vendor said it has no immediate evidence of operational impacts or compromised customer data.

    By Jan. 21, 2025
  • An abstract photo copy background in black and white. Explore the Trendline
    Image attribution tooltip
    BNMK0819 via Getty Images
    Image attribution tooltip
    Trendline

    Securing the cloud

    A host of new technologies and a spate of incidents at top providers means businesses have even more cloud security conundrums to consider. 

    By Cybersecurity Dive staff
  • Statue of Alexander Hamilton.
    Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    Treasury Department issues sanctions linked to cyber intrusions, telecom attacks

    The Office of Foreign Assets Control took measures against a state-linked hacker and a Shanghai-based cybersecurity firm in response to the recent attacks against critical infrastructure in the U.S.

    By Jan. 21, 2025
  • A screen displays an announcement on possible travel delays due to a global IT outage Gatwick Airport on July 19, 2024 in Crawley, United Kingdom.
    Image attribution tooltip
    Jack Taylor / Stringer via Getty Images
    Image attribution tooltip

    Cyber disruptions remain top business risk concern in US, globally

    A report from Allianz shows the global disruption caused by CrowdStrike’s IT mishap added to longtime concerns about data breaches and ransomware.

    By Jan. 15, 2025
  • Illustrated man with fishing hook stealing key
    Image attribution tooltip
    stefanovsky via Getty Images
    Image attribution tooltip

    CISA adds second BeyondTrust CVE to known exploited vulnerabilities list

    Federal authorities are still working with the company to investigate a hack of Treasury Department workstations, but have not yet explained the CVEs’ specific roles in the attacks.

    By Jan. 14, 2025
  • A stressed, frustrated woman uses her laptop.
    Image attribution tooltip
    Brothers91 via Getty Images
    Image attribution tooltip

    Consumers are becoming apathetic to cyber incidents, research finds

    Despite an increase in cyber incidents, breaches had less impact on consumer trust in 2024, a Vercara survey found.

    By Kristen Doerer • Jan. 13, 2025
  • Rhode Island Chief Digital Officer Brian Tardiff and Gov. Dan McKee speak at a Dec. 30 press briefing on the cyberattack against the RIBridges social services database. The officials held a Jan. 10 briefing to notify thousands of recipients that breach notification letters were being mailed out.
    Image attribution tooltip
    Courtesy of Rhode Island
    Image attribution tooltip

    Hack of Rhode Island social services platform impacted at least 709K, officials say

    State officials received reports from Deloitte and a third-party forensic firm showing the threat to the database has been mitigated and restoration efforts are underway.

    By Jan. 10, 2025
  • Team of hackers dressed in black work on computers in dark room.
    Image attribution tooltip
    gorodenkoff via Getty Images
    Image attribution tooltip

    Cyberattacks, tech disruption rank as top threats to business growth

    Two in five executives view data breaches and leaks as the most financially burdensome man-made threats, a Chubb study found.

    By Alexei Alexis • Jan. 10, 2025
  • A single opened padlock glows red among rows of closed blue padlocks.
    Image attribution tooltip
    JuSun via Getty Images
    Image attribution tooltip

    PowerSchool data breach possibly exposed student, staff data

    The cloud-based K-12 software provider confirmed a compromised credential was used to access its PowerSource customer support portal.

    By Anna Merod • Jan. 10, 2025
  • U.S. Treasury Secretary Janet Yellen testifies before the House Committee on Financial Services
    Image attribution tooltip
    Win McNamee via Getty Images
    Image attribution tooltip

    Censys researchers warn 8,600 BeyondTrust instances still exposed

    As authorities investigate a December attack spree, the researchers added the caveat that not all instances are considered vulnerable.

    By Jan. 3, 2025
  • Providence is the capital and most populous city in Rhode Island. Downtown Providence has numerous 19th-century mercantile buildings in the Federal and Victorian architectural styles.
    Image attribution tooltip
    Denis Tangney Jr./iStock via Getty Images
    Image attribution tooltip

    Hackers leaked data from Rhode Island ransomware attack, officials warn

    A criminal threat group had previously threatened to leak sensitive data from a Deloitte-managed social services database.

    By Jan. 2, 2025
  • Statue of Alexander Hamilton.
    Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    Treasury Department says state-linked hacker gained access to unclassified data in major attack

    The compromise of agency workstations is linked to a previously disclosed compromise of certain BeyondTrust customers.

    By Dec. 31, 2024
  • A view of Ascension St. Vincent's Riverside Hospital sign.
    Image attribution tooltip
    Cliff Hawkins via Getty Images
    Image attribution tooltip

    Ascension cyberattack exposes data from 5.6M people

    The breach is the third largest reported to a portal managed by federal regulators this year.

    By Emily Olsen • Dec. 20, 2024
  • View of Rhode Island statehouse
    Image attribution tooltip
    sgoodwin4813 via Getty Images
    Image attribution tooltip

    Rhode Island officials warn residents as ransomware group threatens social services data leak

    The personal data of hundreds of thousands of vulnerable residents is at risk after a threat group attacked a state social services database.

    By Dec. 18, 2024
  • A black and gold United States Environmental Protection Agency sign next to double-glass doors.
    Image attribution tooltip
    Sara Samora/Cybersecurity Dive
    Image attribution tooltip

    US subsidiary of global water treatment firm probes November cyberattack after data encrypted

    Kurita America, a subsidiary of a Tokyo-based company, is the latest in a string of companies tied to the water industry targeted by hackers.

    By Dec. 10, 2024
  • Finance chiefs can achieve supply chain security, risk mitigation, and even happy customers by collaborating with their logistics and procurement teams.
    Image attribution tooltip
    Getty Images via Getty Images
    Image attribution tooltip

    Blue Yonder investigating data leak claim following ransomware attack

    The software supply chain company is widening its investigation after Termite ransomware leaked data it claims is linked to the attack.

    By Dec. 9, 2024
  • A worker scans produce at a Morrisons supermarket in 2017. The supermarket chain was impacted by a cyberattack against Blue Yonder in November 2024.
    Image attribution tooltip
    Christopher Furlong via Getty Images
    Image attribution tooltip

    Morrisons recovers warehouse systems following attack on Blue Yonder

    The U.K. supermarket chain was one of several high-profile customers impacted by a ransomware attack against the supply chain management software provider.

    By Dec. 6, 2024
  • New York Attorney General Letitia James attends a press conference on July 31, 2023, in New York City.
    Image attribution tooltip
    Michael M. Santiago / Staff via Getty Images
    Image attribution tooltip

    New York fines Geico, Travelers $11.3M for pandemic-era breaches

    The auto insurance companies were penalized for a series of attacks that exposed the personal data of 120,000 people in late 2020 and early 2021.

    By Nov. 26, 2024
  • Abstract black and white monochrome art with surreal funnel.
    Image attribution tooltip
    Philipp Tur/Getty Images Plus via Getty Images
    Image attribution tooltip

    AI training vendor iLearningEngines discloses cyberattack in wake of SEC probe

    The company said an attacker stole data, misdirected a $250,000 wire payment and deleted emails.

    By Nov. 19, 2024
  • A facade of a Schneider Electric building.
    Image attribution tooltip
    Permission granted by Schneider Electric
    Image attribution tooltip

    Schneider Electric investigating cyber intrusion after threat actor gains access to platform

    The French multinational company has been a previous target of ransomware groups.

    By Nov. 5, 2024
  • UnitedHealth Group office
    Image attribution tooltip
    Courtesy of UnitedHealth Group
    Image attribution tooltip

    Change Healthcare data breach officially affects 100M people

    The breach is the largest ever reported to a portal managed by federal regulators.

    By Emily Olsen • Oct. 25, 2024
  • Empty interior of modern security system control room with workstations with multiple displays and big screens mounted on the wall.
    Image attribution tooltip
    .shock via Getty Images
    Image attribution tooltip

    Where organizations invest after a data breach

    Asking customers to foot the bill for data breach remediation will not prevent future data breaches or address the issues that cause costs to increase.

    By Sue Poremba • Oct. 14, 2024
  • Building Exterior with Marriott sign
    Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip

    FTC settles yearslong investigation into Marriott’s ‘security failures’

    The settlement caps a pattern of major data breaches at Marriott and its subsidiary Starwood Hotels and Resorts Worldwide over the last decade.

    By Oct. 10, 2024
  • T-Mobile storefront in San Francisco.
    Image attribution tooltip
    Justin Sullivan/Getty Images via Getty Images
    Image attribution tooltip

    FCC reaches $31.5M settlement with T-Mobile over rash of data breaches

    The company agreed to a major change in board-level governance and will make a series of upgrades to boost its cyber resilience.

    By Oct. 1, 2024
  • Code on a black and white background that appears warped.
    Image attribution tooltip
    HenrikNorway via Getty Images
    Image attribution tooltip

    Dark web exposure is ‘highly correlated’ with cyberattack risk

    Organizations that are mentioned in dark web market listings are more than twice as likely to experience an attack, Marsh McLennan found.

    By Alexei Alexis • Sept. 24, 2024