government
healthcare
social media
service provider
fine
education
finance
dark web
law enforcement
retail
web
telecoms
phama
travel
manufacturing
operating system
charity
insurance
legal
app
tech
gaming
publishing
transport
utilities
story
hacked
malware
unauthorised access
ransomware
vulnerability
accidental disclosure
phishing
unsecured database
poor security
insider threat
unsecured server
hacked email
lost device
website hacked
identity theft
stolen documents
ddos
Trojans
financial
inside job
spear phishing
RDP
skimming
spyware
cyber attack
privacy
breach notification
security flaw
legislation
poor operations
user credentials
physical security
customer data
third party
Cryptocurrency
enforcement
email hacked
insecure storage
court action
encryption
fraud
VPN
passwords
zero day
state hacking
3rd parties
employee data
remote working
stolen data
BA customer data at risk after airline cyber hack
Elite Russian Cybercrime Forums Ironically Hacked, Critical User Data Leaked | HotHardware
How To Stop Being Overwhelmed by Security Audits – CloudSavvy IT
Oh SITA: Airline IT provider confirms passenger data leaked after major 'cyber-attack' • The Register
New ransomware only decrypts victims who join their Discord server
Move over, SolarWinds: 30,000 orgs’ email hacked via Microsoft Exchange Server flaws - The Verge
Troy Hunt: Gab Has Been Breached
Maza Russian cybercriminal forum suffers data breach | ZDNet
#COVID19 Vaccine Phishing Scams Surge 26% in Three Months - Infosecurity Magazine
The Long Hack: How China Exploited a U.S. Tech Supplier
Ripe for extortion? Navajo Nation hospital targeted by large-scale ransomware hack
Electricity Authority of Cyprus fined 40,000 Euros for breaching Art. 6 (1) GDPR, Art. 9 (2) GDPR - Insufficient legal basis for data processing
KEPIDES fined 6,000 Euros for breaching Art. 32 (4) - Insufficient technical and organisational measures to ensure information security
Cypriot Real Estate Registration Authority fined 10,000 Euros for breaching Art. 12 GDPR, Art. 15 GDPR, Art. 31 GDPR, Art. 58 (1) e) GDPR - Insufficient fulfilment of information obligations
Hellenic Bank fined 25,000 Euros for breaching Art. 5 (1) e), f) GDPR, Art. 32 (1) b), c) GDPR, Art. 33 (1) GDPR - Insufficient technical and organisational measures to ensure information security
Private Individual fined 200 Euros for breaching Art. 5 GDPR, Art. 32 GDPR - Non-compliance with general data processing principles
Ursnif Trojan has targeted over 100 Italian banks | ZDNet
Microsoft accuses China over email cyber-attacks - BBC News
Brave buys a search engine, promises no tracking, no profiling – and may even offer a paid-for, no-ad version • The Register
Unpatched Bug in WiFi Mouse App Opens PCs to Attack | Threatpost
Researcher finds 5 privilege escalation vulnerabilities in Linux kernel
Bournemouth residents advised to look out for Bluetooth malware | Bournemouth Echo
Hackers share methods to bypass 3D Secure for payment cards
Proof of concept code published for latest Saltstack CVE: Don't be an update laggard • The Register
Microsoft promises end-to-end encrypted Teams calls for some, invites you to go passwordless with Azure AD • The Register
How Gootkit trojan distributes ransomware via Google SERPs
Cybersecurity Trends and Emerging Threats in 2021
Vulnerabilities in Smarty PHP template engine renders popular CMS platforms open to abuse | The Daily Swig
Gootkit malware crew using SEO to get pwned websites in front of unwitting marks • The Register
I-DE Redes Eléctricas Inteligentes, S.A.U fined 200,000 Euros for breaching Art. 5 (1) b), c) GDPR, Art. 6 (1) b) GDPR - Non-compliance with general data processing principles
Registrų Centras fined 15,000 Euros for breaching Art. 32 (1) b), c) GDPR - Insufficient technical and organisational measures to ensure information security
Unknown fined 9,000 Euros for breaching Art. 6 GDPR, Art. 13 GDPR - Insufficient legal basis for data processing
Undisclosed company fined 24,400 Euros for breaching Art. 5 GDPR, Art. 6 GDPR - Insufficient legal basis for data processing
CVE-2020-3992-CVE-2021-21974
Malicious NPM packages target Amazon, Slack with new dependency attacks
New nation-state cyberattacks - Microsoft On the Issues
Israeli spyware firm NSO Group faces renewed US scrutiny | Surveillance | The Guardian
Critical vulnerability found in Snow Software's Inventory Agent
Malware attack that crippled Mumbai's power system came from China, claims infosec intel outfit Recorded Future • The Register
'Incorrect software parameter' sends Formula E's Edoardo Mortara to hospital: Brakes' fail-safe system failed • The Register