Tuesday, December 30, 2014

Data Breach Cost Of $5.6 Billion Predicted For Healthcare In 2015

Healthcare, as an industry, is opening its doors to more attacks, just as information is becoming more valuable on the criminal circuit. Source: BSMInfo.com

Entry Point Identified for JPMorgan Chase Breach

The bank's security team had failed to implement two-factor authentication on one of its network servers. Source: ESecurityPlanet.com

The year in security: How 2014’s failures will help us prepare for 2015

Data breaches were on the rise this year, with no clear indication of slowing down. Both 2013 and 2014 were dubbed the year of the data breach, indicating that these are becoming the norm rather than isolated incidents. Source: VentureBeat.com

Wednesday, December 17, 2014

Sony's Breach Notification: The Details

Compromised Information, Including Health Data, Described. Source: BankInfoSecurity.com

The biggest challenges faced by CIOs/CISOs heading into 2015

As the year winds to a close, CIOs and CISOs are faced with a number of challenges heading into 2015. CSO recently heard from several experts about the topic, each offering their opinion on what they feel would be the most important item in the security sandbox next year. Source: CSOOnline.com

University of California, Berkeley suffers data breach

On September 16th, the servers at the University of California, Berkeley were compromised. The breach involved servers and workstations in the Real Estate division which is responsible for commercial leasing and campus filming and facility use permits. Source: CSOOnline.com

Wednesday, December 3, 2014

Data breach trends for 2015: Credit cards, healthcare records will be vulnerable

The data breaches of 2014 have yet to fade into memory, and we already have 2015 looming. Source: pcworld.com

Infographic: Are You a Breach Victim?

Recent Incidents Show No Sector Is Safe. Source: Bankinfosecurity.com

Sony Breach: Leaked Salaries, Confidential Data Points To Major Lapse

The attackers who infiltrated Sony Pictures Entertainment also appear to have gained access to the company's email server and databases containing sensitive files. Source: CRN.com

Wednesday, November 19, 2014

Neiman Marcus Hires First CISO

Move Comes in Wake of Breach Affecting 350,000 Payment Cards. Source: BankInfoSecurity.com

U.S. Postal Service Confirms Data Breach

Employee, Customer Information Potentially Compromised. Source: BankInfoSecurity.com

Post Breach: Jimmy John's, Coke Sued

Plaintiffs Allege Instances of Fraud, Identity Theft. Source: DataBreachToday.com

Wednesday, November 5, 2014

Amex to Implement Digital Tokens to Replace Cards

American Express has announced that it will implement payment tokenization for card transactions. Source: InfoSecurityMagazine.com

Chase Breach Offers Detection Lessons

The latest details reported about the JPMorgan Chase breach investigation illustrate why it's critical for organizations to scrutinize external sources of information to help detect attacks. Source: DataBreachToday.com

The View From A High-Value Data Breach Target

Financial services, retail, media, and healthcare industry representatives share their biggest threats and strategies for combating them. Source: DarkReading.com

Wednesday, October 22, 2014

12 Tips for Responding to Rising Healthcare IT Security Threats

Healthcare faces a growing breadth and depth of security threats (both intentional and accidental). These 12 steps will help IT leaders prepare for, respond to and perhaps even stay ahead of the latest dangers.  Source: CSOonline.com

PCI compliance under scrutiny following Big Data breaches

In the wake of numerous high-profile data breaches, some security experts question the effectiveness of PCI compliance. Should PCI standards do more than set a baseline for security -- and should they be given teeth for when companies don’t comply? Source: CSOonline.com

4 Reasons Why You Should Shop at Stores That Got Hacked

Almost half of all consumers surveyed are afraid to shop at retailers like Target. They shouldn't be. Source: Time.com

Wednesday, October 8, 2014

Chase Breach Affects 76 Million Households

7 Million Small Businesses Also Impacted. Source: Bankinfosecurity.com

Breach blanket: To contain the damage, plan ahead – way ahead

Investigating and repairing the damage of a major data breach can take months, if not years. But what happens in the early hours after a breach has been discovered can do a lot to minimize that damage. That takes intensive planning. Source: CSOonline.com

How the cloud is changing the security game

New market of vendors sprouts up to secure the cloud. Source: CSOonline.com

Thursday, September 25, 2014

Study: 43% of companies had data breach in past year

Forty-three percent of companies have experienced a data breach in the past year, an annual study on data breach preparedness finds.Source: Shreveporttimes.com

Home Depot breach leads to fraudulent transactions, class-action lawsuits

In the wake of Home Depot's breach, reports of fraudulent transactions have surfaced on the heels of two class-action lawsuits. Source: SCMagazine.com

Jimmy John's Gourmet Sandwiches POS Systems Hacked

Sandwich chain is the latest data breach victim, with credit and debit card data breached in 216 of its restaurants. Source: DarkReading.com

Wednesday, September 10, 2014

Keys to Fighting Insider Fraud

Fraud Summit Speaker Outlines Role of Data Analytics. Source: Bankinfosecurity.com

PCI Updates Skimming Prevention Guide

Best Practices for Protecting Merchants from POS Attacks. Source: Bankinfosecurity.com

Breach Prevention: A New Approach

CA's Charley Chell on Passwords that Can't Be Stolen. Source: Bankinfosecurity.cm

Wednesday, August 27, 2014

Community Health Systems Faces Lawsuit

Legal Action Comes After Breach Affecting 4.5 Million Patients. Source: Databreachtoday.com

UPS data breach: Another one bites the dust

UPS revealed that it is the latest high-profile company to fall victim to a data breach resulting from a point-of-sale system compromise. Source: CSOonline.com

Small Businesses at High Risk for Data Breach

For every high-profile case, there are dozens of threats to confidential data held by everyday enterprises. Source: TopTechNews.com

Wednesday, August 13, 2014

Patient data at risk following missing unencrypted CD

Jersey City Medical Center patients are being notified that their information may have been compromised after an unencrypted CD went missing after being mailed. Source: SCmagazine.com

2014 So Far: The Year of the Data Breach

Cyber threats, data breaches and high-risk vulnerabilities continued to dominate the first half of 2014. Source: infosecurity-magazine.com

State employees notified of stolen personal information

State employees' personal information could be in the wrong hands after letters were recently sent to notify them of a data breach. Source: WSMV.com

Tuesday, July 29, 2014

96% of Companies Have Experienced a Security Breach

Nearly every single organization in a study that looked at U.S. and European companies across several industries experienced at least one security breach. Source: Credit.com

Post Target many retailers continue to leave data at risk

More than six months on from the Target breach hitting the headlines retailers are still not properly protecting their data. Source: Betanews.com

IRS Employee Charged in ID Theft Scheme

Crime Ring Made $1.2 Million in Fraudulent Credit Card Purchases. Source: BankInfoSecurity.Com

Wednesday, July 9, 2014

How Physicians' SSNs Were Exposed

Blue Shield of California Mistake Leads to Breach. Source: DataBreachToday.com

Florida Law Aims To Tighten Data Security

Florida's new data privacy law increases security accountability for all enterprises; healthcare providers could face greater burden to protect patients' personal information. Source: InformationWeek.com

School Breach Affects 10,000

Information Inappropriately Downloaded from Work Computer. Source: DataBreachToday.com

Thursday, June 26, 2014

The Soft Costs of A Data Breach

What are some of the less tangible, but highly impactful "costs" of a data breach? Source: DigitalJournal.com

Montana Breach Victim Tally: 1.3 Million

Montana state officials have now confirmed that 1.3 million people will be notified following a breach at the state's Department of Public Health and Human Services. Source: Govinfosecurity.com

Report: Organizations recognize security risks, slow to take action

Businesses continue to struggle to prioritize safeguarding confidential data despite 72 percent having suffered a data breach over the last year. Source: SCMagazine.com

Thursday, June 12, 2014

Why database monitoring may, or may not, secure your data

While security pros in a Ponemon Institute study favored database monitoring, other experts say much more is needed to properly secure data. Source: CSOOnline.com

Data Breach Survey: Consumers Hold Retailers Responsible, Second Only to Criminals

Majority believe that retailers should be financially responsible for fraudulent charges; One third of consumers stopped shopping at certain retailers, based on data breach concerns. Source: DigitalJournal.com


P.F. Chang's Investigates Data Breach

Restaurant chain P.F. Chang’s China Bistro is the latest retailer to suffer a data breach. Source: CUTimes.com

Wednesday, May 28, 2014

Lowe's Warns Of Cloud-related Data Compromise

An insecure backup incident affects 35,000 employees over a period of nine months. Source: infosecurity-magazine.com

Needed: Breach detection correction

It is impossible to prevent all breaches. But experts say organizations can and must do a much better job at detecting and responding to them more quickly. Source: CSOonline.com

County moves to require computer encryption after medical data breach

Encryption push by supervisors comes after the theft of computers from a medical billing company. Source: LAtimes.com

Wednesday, May 14, 2014

Five Essential Tips for Small Business Data Security

Given the increasing frequency and sophistication of cyber attacks in today's world, it is more important than ever for small businesses to understand the costly effects of a data breach and develop an approach to mitigate the risks. Source: Huffingtonpost.com

Symantec develops new business strategy, says AV is dead

Symantec says that AntiVirus is dead, citing it as one of the reasons they're shifting focus and mapping out a new plan of attack when it comes to dealing with threats. Source: CSOonline.com

The cost of a data breach in 2014: $3.5 million, Ponemon study says

2013 was an interesting year in security, with some fairly high-profile data breaches making the news. Source: ITWorldCanada.com

Wednesday, April 30, 2014

Employee Error Causes Data Breach at Insurance Broker

Willis North America employees' names, e-mail addresses, birthdates and Social Security numbers were exposed. Source: Esecurityplanet.com

Stolen Passwords Used In Most Data Breaches

New Verizon 2014 Data Breach Investigations Report identifies nine types of attack patterns that accounted for 93 percent of security incidents in the past decade. Source: DarkReading.com

Heartbleed's silver lining

The security flaw got more consumers to change their passwords and start using two-factor authentication. Source: CSOonline.com

Wednesday, April 16, 2014

Symantec to CISOs: Watch for the 'mega-breach'

Company releases 2013 Internet Security Threat Report, warning organizations that phishing and watering hole attacks can bury them. Source: CSOonline.com

Windows XP Support is Over, but the Finance Industry Persists in Using It

Today marks the end of support for Windows XP by Microsoft, and the beginning of a bonanza for hackers who will be targeting the vulnerable machines. XP usage has dropped across the board as companies upgrade, but new analysis shows that here’s still plenty of work to be done. Source: InfoSecurity-Magazine.com

The Heartbleed Continues: Advice from Information Security Professionals

In the aftermath of the discovery of a major security flaw, the Heartbleed bug, information security professionals and companies are issuing contradictory advice on how best to protect against the Heartbleed ramifications. Source: InfoSecurity-Magazine.com

Wednesday, April 2, 2014

44% of Financial Accounts Have Been Affected By Data Compromise

A survey by ACI Worldwide of financial industry professionals found that a full 44% of customer accounts have been compromised. Source : infosecuritymagazine.com

Health Breach Tally: 30 Million Victims

More than 30.6 million individuals have been affected by major healthcare data breaches since September 2009. Source: GovInfoSecurity.com

12 Biggest Data Breaches of the Last 12 Months

Many companies have felt the effects of data theft over the last several years. It's 2014 and it doesn't look like the going is getting any easier. The technology sector seems most at risk with every week bringing the world another reported data breach. Here we look at the largest breaches in the last year. Source: NetworkWorld.com

Wednesday, March 19, 2014

Virus nails hospital, causes massive data breach

The latest hospital cyber-attack is reported by a small-town rural hospital in Colorado. As a result, some 5,400 patients were mailed breach notification letters on March 17. Source: Govhealthit.com

Is HIPAA lulling health orgs into a false sense of security?

With the first anniversary of the omnibus HIPAA Final Rule on Privacy and Security just days away the question of whether the rule is making healthcare organizations less prone to security problems — or actually more so — has arisen. Source: Govhealthit.com

4 Lessons CIOs Can Learn From the Target Breach

Retail giant Target made headlines after announcing that 110 million Americans were affected by a massive data breach at its stores. If you want to avoid the same fate, pay attention to these four lessons learned in the wake of the Target breach. Source: CIO.com

Wednesday, March 5, 2014

Verizon Shares Glimpse Into Upcoming 2014 Data Breach Investigations Report

Breach data for upcoming Verizon report comes from some 50 contributing organizations from 95 nations, including Eastern European and Latin American CERTs. Source: Darkreading.com

University of Maryland begins purging data accessed in breach

The university has purged its databases of about 140,000 names, Social Security numbers, birth dates and university IDs of former students that were compromised in a massive data breach. Source: Diamondbackonline.com

US health information breaches up 137%

More than seven million health records in the United States were affected by data breaches in 2013, an increase of 137% over the previous year. Source: CMAJ.CA

Friday, February 14, 2014

Beebe Healthcare Acknowledges Potential Data Breach

After a contractor failed to show up for work, the company discovered that she had previously been arrested for 'incidents related to identity theft.' Source: eSecurityPlanet.com

Target Compromised Via Its HVAC Contractor's Network Credentials

Attackers compromised credentials for a third party and were off to the races -- leaving a key concept of network security in the dust. Source: DarkReading.com

Multifactor authentication extended to all Office 365 users

All users will now have the option of using a second layer of log-in verification to reduce vulnerability to online identity theft. Source: CNET.com

Wednesday, January 29, 2014

AP-GfK poll: Data breaches not changing people's habits

American shoppers say they are very concerned about the safety of their personal information following a massive security breach at Target, but many aren’t taking steps to ensure their data is more secure, says a new Associated Press-GfK Poll. Source: APP.Com

Important lessons from the Target data breach

The massive hacking attack against Target stores last month marks a turning point in how we view data security in the United States. Source: TimesFreePress.com

Coca-Cola suffers data breach after employee 'borrows' 55 laptops

Coca-Cola has admitted falling prey to bizarre slow-motion data breach in which an employee apparently stole dozens of laptops over several years containing the sensitive data of 74,000 people Source: CSO Online

Wednesday, January 15, 2014

Credit card hackers hit Neiman Marcus

Neiman Marcus says that it's the latest victim of data thieves, who made off with the credit card information of an unknown number of customers. Source: CNET News.com

Breach goes from bad to worse for Target and its customers

Company now says up to 70 million cards exposed -- up from 40 million -- and that hackers accessed more data than previously thought. Source: CSO Online

Friday, January 3, 2014

Researchers Reveal Snapchat Security Issues

Security researchers release proof-of-concept code for issues they say they disclosed months ago to Snapchat. Source: Dark Reading 

Thursday, January 2, 2014

The 8 hottest security stories of 2013

The biggest security news from this past year. Source: CSO Online

Target Breach Affecting 40 Million Was Likely an Inside Job

The US, originator of Black Friday holiday sales and the dubious homeland of in-store, post-Thanksgiving brawls over hot toys (remember Tickle-Me Elmo?), has been hit with the largest retail breach of credit and debit card information of 2013. Source:Infosecurity-Magazine.com