Breaches


  • Broadband connections
    Image attribution tooltip
    NicoElNino via Getty Images
    Image attribution tooltip

    Cisco: Salt Typhoon used new custom malware in telecom attacks

    The China-backed hackers used compromised credentials to gain initial access to Cisco devices.

    By Updated Feb. 21, 2025
  • Data Breach Button on Computer Keyboard
    Image attribution tooltip
    GOCMEN via Getty Images
    Image attribution tooltip

    Tech investment firm Insight Partners discloses data breach

    The company holds equity in several major technology companies, including Wiz and Kaseya.

    By Feb. 19, 2025
  • An abstract photo copy background in black and white. Explore the Trendline
    Image attribution tooltip
    BNMK0819 via Getty Images
    Image attribution tooltip
    Trendline

    Securing the cloud

    A host of new technologies and a spate of incidents at top providers means businesses have even more cloud security conundrums to consider. 

    By Cybersecurity Dive staff
  • Telecom network above a city
    Image attribution tooltip
    NicoElNino via Getty Images
    Image attribution tooltip

    China-backed hackers continue cyberattacks on telecom companies

    Salt Typhoon threat actors compromised Cisco edge devices by exploiting older vulnerabilities.

    By Feb. 13, 2025
  • HPE, Juniper, Cisco, DOJ
    Image attribution tooltip
    JHVEPhoto via Getty Images
    Image attribution tooltip

    HPE issues breach notifications for 2023 Midnight Blizzard attack

    Russian state-sponsored hackers compromised the tech giant's Office 365 email environment.

    By Feb. 10, 2025
  • Ransomware spelled out in a creative depiction.
    Image attribution tooltip
    Just_Super via Getty Images
    Image attribution tooltip

    Ransomware payments fell 35% in 2024

    Cyberattacks using ransomware spiked in the second half of the year, but fewer victims paid up.

    By Feb. 5, 2025
  • Rhode Island Chief Digital Officer Brian Tardiff and Gov. Dan McKee speak at a Dec. 30 press briefing on the cyberattack against the RIBridges social services database. The officials held a Jan. 10 briefing to notify thousands of recipients that breach notification letters were being mailed out.
    Image attribution tooltip
    Courtesy of Rhode Island
    Image attribution tooltip

    Deloitte pays $5M in connection with breach of Rhode Island benefits site

    The company agreed to cover expenses related to recovery from the December cyberattack.

    By Feb. 5, 2025
  • UnitedHealth Group office
    Image attribution tooltip
    Courtesy of UnitedHealth Group
    Image attribution tooltip

    UnitedHealth hikes number of Change cyberattack breach victims to 190M

    The new estimate nearly doubles the company’s previous report of 100 million affected individuals, already the largest healthcare data breach ever reported to federal regulators.

    By Emily Olsen • Jan. 27, 2025
  • A row of students learning how to code while working at a classroom computer.
    Image attribution tooltip
    izusek via Getty Images
    Image attribution tooltip

    PowerSchool data breach brings claims of negligence, poor cyber hygiene

    The K-12 software company is facing legal pushback and criticism following a cyberattack that impacted a still unknown number of districts.

    By Anna Merod • Jan. 22, 2025
  • Front of Hewlett Packard Enterprise's campus in Houston.
    Image attribution tooltip
    Courtesy of HPE
    Image attribution tooltip

    HPE probes hacker claim involving trove of sensitive company data

    The vendor said it has no immediate evidence of operational impacts or compromised customer data.

    By Jan. 21, 2025
  • Statue of Alexander Hamilton.
    Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    Treasury Department issues sanctions linked to cyber intrusions, telecom attacks

    The Office of Foreign Assets Control took measures against a state-linked hacker and a Shanghai-based cybersecurity firm in response to the recent attacks against critical infrastructure in the U.S.

    By Jan. 21, 2025
  • A screen displays an announcement on possible travel delays due to a global IT outage Gatwick Airport on July 19, 2024 in Crawley, United Kingdom.
    Image attribution tooltip
    Jack Taylor / Stringer via Getty Images
    Image attribution tooltip

    Cyber disruptions remain top business risk concern in US, globally

    A report from Allianz shows the global disruption caused by CrowdStrike’s IT mishap added to longtime concerns about data breaches and ransomware.

    By Jan. 15, 2025
  • Illustrated man with fishing hook stealing key
    Image attribution tooltip
    stefanovsky via Getty Images
    Image attribution tooltip

    CISA adds second BeyondTrust CVE to known exploited vulnerabilities list

    Federal authorities are still working with the company to investigate a hack of Treasury Department workstations, but have not yet explained the CVEs’ specific roles in the attacks.

    By Jan. 14, 2025
  • A stressed, frustrated woman uses her laptop.
    Image attribution tooltip
    Brothers91 via Getty Images
    Image attribution tooltip

    Consumers are becoming apathetic to cyber incidents, research finds

    Despite an increase in cyber incidents, breaches had less impact on consumer trust in 2024, a Vercara survey found.

    By Kristen Doerer • Jan. 13, 2025
  • Rhode Island Chief Digital Officer Brian Tardiff and Gov. Dan McKee speak at a Dec. 30 press briefing on the cyberattack against the RIBridges social services database. The officials held a Jan. 10 briefing to notify thousands of recipients that breach notification letters were being mailed out.
    Image attribution tooltip
    Courtesy of Rhode Island
    Image attribution tooltip

    Hack of Rhode Island social services platform impacted at least 709K, officials say

    State officials received reports from Deloitte and a third-party forensic firm showing the threat to the database has been mitigated and restoration efforts are underway.

    By Jan. 10, 2025
  • Team of hackers dressed in black work on computers in dark room.
    Image attribution tooltip
    gorodenkoff via Getty Images
    Image attribution tooltip

    Cyberattacks, tech disruption rank as top threats to business growth

    Two in five executives view data breaches and leaks as the most financially burdensome man-made threats, a Chubb study found.

    By Alexei Alexis • Jan. 10, 2025
  • A single opened padlock glows red among rows of closed blue padlocks.
    Image attribution tooltip
    JuSun via Getty Images
    Image attribution tooltip

    PowerSchool data breach possibly exposed student, staff data

    The cloud-based K-12 software provider confirmed a compromised credential was used to access its PowerSource customer support portal.

    By Anna Merod • Jan. 10, 2025
  • U.S. Treasury Secretary Janet Yellen testifies before the House Committee on Financial Services
    Image attribution tooltip
    Win McNamee via Getty Images
    Image attribution tooltip

    Censys researchers warn 8,600 BeyondTrust instances still exposed

    As authorities investigate a December attack spree, the researchers added the caveat that not all instances are considered vulnerable.

    By Jan. 3, 2025
  • Providence is the capital and most populous city in Rhode Island. Downtown Providence has numerous 19th-century mercantile buildings in the Federal and Victorian architectural styles.
    Image attribution tooltip
    Denis Tangney Jr./iStock via Getty Images
    Image attribution tooltip

    Hackers leaked data from Rhode Island ransomware attack, officials warn

    A criminal threat group had previously threatened to leak sensitive data from a Deloitte-managed social services database.

    By Jan. 2, 2025
  • Statue of Alexander Hamilton.
    Image attribution tooltip
    Chip Somodevilla via Getty Images
    Image attribution tooltip

    Treasury Department says state-linked hacker gained access to unclassified data in major attack

    The compromise of agency workstations is linked to a previously disclosed compromise of certain BeyondTrust customers.

    By Dec. 31, 2024
  • A view of Ascension St. Vincent's Riverside Hospital sign.
    Image attribution tooltip
    Cliff Hawkins via Getty Images
    Image attribution tooltip

    Ascension cyberattack exposes data from 5.6M people

    The breach is the third largest reported to a portal managed by federal regulators this year.

    By Emily Olsen • Dec. 20, 2024
  • View of Rhode Island statehouse
    Image attribution tooltip
    sgoodwin4813 via Getty Images
    Image attribution tooltip

    Rhode Island officials warn residents as ransomware group threatens social services data leak

    The personal data of hundreds of thousands of vulnerable residents is at risk after a threat group attacked a state social services database.

    By Dec. 18, 2024
  • A black and gold United States Environmental Protection Agency sign next to double-glass doors.
    Image attribution tooltip
    Sara Samora/Cybersecurity Dive
    Image attribution tooltip

    US subsidiary of global water treatment firm probes November cyberattack after data encrypted

    Kurita America, a subsidiary of a Tokyo-based company, is the latest in a string of companies tied to the water industry targeted by hackers.

    By Dec. 10, 2024
  • Finance chiefs can achieve supply chain security, risk mitigation, and even happy customers by collaborating with their logistics and procurement teams.
    Image attribution tooltip
    Getty Images via Getty Images
    Image attribution tooltip

    Blue Yonder investigating data leak claim following ransomware attack

    The software supply chain company is widening its investigation after Termite ransomware leaked data it claims is linked to the attack.

    By Dec. 9, 2024
  • A worker scans produce at a Morrisons supermarket in 2017. The supermarket chain was impacted by a cyberattack against Blue Yonder in November 2024.
    Image attribution tooltip
    Christopher Furlong via Getty Images
    Image attribution tooltip

    Morrisons recovers warehouse systems following attack on Blue Yonder

    The U.K. supermarket chain was one of several high-profile customers impacted by a ransomware attack against the supply chain management software provider.

    By Dec. 6, 2024
  • New York Attorney General Letitia James attends a press conference on July 31, 2023, in New York City.
    Image attribution tooltip
    Michael M. Santiago / Staff via Getty Images
    Image attribution tooltip

    New York fines Geico, Travelers $11.3M for pandemic-era breaches

    The auto insurance companies were penalized for a series of attacks that exposed the personal data of 120,000 people in late 2020 and early 2021.

    By Nov. 26, 2024