14 Jun Former IT employee gets 2.5 years for wiping 180 virtual servers A former quality assurance employee of National Computer Systems (NCS) was sentenced to two years and eight months in prison for reportedly deleting 180 virtual servers after being fired. […]
14 Jun Microsoft removes Copilot app ‘incorrectly’ added on Windows PCs Microsoft says it removed a Copilot app that was “incorrectly” added to Windows 10 and Windows 11 systems in April due to buggy Microsoft Edge updates. […]
14 Jun Scattered Spider hackers switch focus to cloud apps for data theft The Scattered Spider gang has started to steal data from software-as-a-service (SaaS) applications and establish persistence through creating new virtual machines. […]
14 Jun Insurance giant Globe Life investigating web portal breach American financial services holding company Globe Life says attackers may have accessed consumer and policyholder data after breaching one of its web portals. […]
13 Jun Microsoft delays Windows Recall amid privacy and security concerns Microsoft is delaying the release of its AI-powered Windows Recall feature to test and secure it further before releasing it in a public preview on Copilot+ PCs. […]
13 Jun Truist Bank confirms breach after stolen data shows up on hacking forum Truist Bank, a leading U.S. commercial bank, confirmed this week that its systems were breached in an October 2023 cyberattack after a threat actor posted some of the company’s data for sale on a hacking forum. […]
13 Jun Toronto District School Board hit by a ransomware attack The Toronto District School Board (TDSB) is warning that it suffered a ransomware attack on its software testing environment and is now investigating whether any personal information was exposed. […]
13 Jun Panera warns of employee data breach after March ransomware attack U.S. food chain giant Panera Bread is notifying employees of a data breach after unknown threat actors stole their sensitive personal information in a March ransomware attack. […]
13 Jun Exploit for Veeam Recovery Orchestrator auth bypass available, patch now A proof-of-concept (PoC) exploit for a critical Veeam Recovery Orchestrator authentication bypass vulnerability tracked as CVE-2024-29855 has been released, elevating the risk of being exploited in attacks. […]
13 Jun YouTube tests harder-to-block server-side ad injection in videos YouTube reportedly now injects ads directly into video streams to make it more difficult for ad blockers to block advertisements. […]