Image of a keyboard with a button that says

2 min read

Researchers discover earliest GPT-4-enabled malware tool

Security experts have uncovered a new class of malware powered by GPT-4, raising concerns over how AI is accelerating cybercriminal capabilities.

Read More
Image of the back of a silver I-Phone.

2 min read

Apple issues spyware warnings to high-risk users in ongoing zero-day attacks

A new wave of threat notifications indicated targeted spyware campaigns affecting Apple users across multiple countries.

Read More
Image of a gavel.

2 min read

Jefferson Healthcare settles lawsuit over Meta Pixel patient data sharing

The Washington-based provider will stop using Meta Pixel for at least two years and offer privacy tool subscriptions as part of the settlement.

Read More
23and me logo

2 min read

23andMe seeks court approval for $50M revised data breach settlement

The genetic testing firm has increased its proposed US settlement following a 2023 credential stuffing breach affecting millions.

Read More
computer with red data

1 min read

GAO flags 82 unresolved cyber and IT gaps at HHS

A federal watchdog has warned that the U.S. Department of Health and Human Services must urgently act on decades-old cybersecurity and IT...

Read More
Image of an AI chatbox.

2 min read

AI chatbot apps leak user prompts and tokens in massive data exposure

An open server tied to three popular generative AI apps has exposed sensitive data from potentially millions of users.

Read More
Image of a gavel with someone shaking hands.

2 min read

R1 RCM and Dignity Health settle data breach lawsuit for $675,000

The 2023 breach exposed sensitive patient data; affected individuals may now claim credit monitoring and compensation.

Read More
Image of a keyboard.

2 min read

Root cause of Salesforce breaches traced to OAuth token theft

A coordinated cyberattack exploited OAuth tokens linked to Salesforce, exposing hundreds of companies to data compromise.

Read More
Image of a computer open to Google.

2 min read

Google confirms fake law enforcement account created in data request system

A threat group’s claims led Google to confirm that its Law Enforcement Request System had been misused, though no data was compromised.

Read More
Image of a hospital entrance.

2 min read

Morris Hospital reaches $1.36M settlement in 2023 data breach lawsuit

Patients and employees affected by a 2023 ransomware attack can now claim compensation or credit monitoring as part of a court-approved settlement.

Read More
Image of an email icon over a keyboard.

2 min read

APT28 deploys “NotDoor” malware via Outlook in NATO-targeted espionage campaign

A newly discovered Outlook backdoor is being used by Russian hackers to quietly exfiltrate data and run commands in high-profile cyber-espionage...

Read More
digital law icon

2 min read

Regulators crack down on non-HIPAA health data practices

New enforcement trends are expanding how courts and regulators police sensitive health data outside HIPAA’s reach.

Read More
Image of a hooded figure.

2 min read

North Korean hackers pose as recruiters in global attacks

A new campaign by North Korean state-backed hackers has compromised hundreds of professionals by impersonating recruiters on platforms like Slack.

Read More