Get up-to-the-minute news and opinions, plus access to a wide assortment of IT security resources that will keep you current and informed.

Keep me logged in Forgot your password?

Please wait...

Please wait...

 Breaches & Exposures

Global Payments working to again validate its PCI compliance

May 02, 2012

For the first time, breached processor Global Payments disclosed on Tuesday that a number of card brands have removed the company from their approved list of service providers.
 

Connecticut community college hit with "zero-day" malware

April 13, 2012

Eighty-seven thousand people affiliated with Housatonic Community College may be open to identity theft after the institution became the second Connecticut school to experience a malware outbreak this year.
 

Visa warns of phone phishing after Global Payments breach

April 11, 2012

Visa is advising its customers to be wary of phone scams in which fraudsters request their credit card information under the guise that they need it for "security reasons" in light of the major data breach that affected Global Payments, according to a Tuesday alert from Visa.
 

Number of victims in state of Utah breach significantly rises

April 09, 2012

A misconfigured server is to blame for the attack, which impacted roughly 780,000 Medicaid and Children's Health Insurance Plan recipients.
 

LulzSec hacker reverses guilty plea for Sony Pictures attack

April 05, 2012

An accused member of the hacktivist group LulzSec pleaded guilty Thursday in federal court in Los Angeles to charges of hacking into the systems of Sony Pictures Entertainment, according to reports.
 

Hackers target Medicaid claim forms in Utah

April 05, 2012

Hackers, believed to be operating out of Eastern Europe, breached a server at the Utah Department of Health (UDOH) to access thousands of Medicaid records.
 

Attention executives: Make sense of security (finally)

Michael Fey, SVP of advanced technology and field engineering at McAfee April 03, 2012

Boardrooms are finally buzzing with serious discussion around cyber security as countless high-profile breaches have produced massive loss.
 

Visa expels Global Payments following 1.5M-card breach

April 02, 2012

Global Payments, a major credit card processor based in Atlanta, is off Visa's approved list after it confirmed it was breached of some 1.5 million card numbers. The incident, however, is still shrouded in some mystery.
 

RockYou to pay FTC $250K after breach of 32M passwords

March 27, 2012

The FTC seemed most upset with RockYou's failure to protect the personal information of 179,000 children who registered to use the site.
 

LulzSec redux dumps data after raiding military dating site

March 27, 2012

Hackers calling themselves "LulzSec Reborn" have claimed responsibility for two breaches that resulted in the dumping of personal information.
 

Michigan union employees' data exposed

March 22, 2012

The personal information of more than 1,000 public employees of Wayne County, Mich., was exposed when a spreadsheet containing their data was inadvertently attached to an email blast.
 

University of Tampa sustains breach of Social Security numbers

March 21, 2012

The college blames a "server management error" for the public posting of confidential information of tens of thousands of students, faculty and staff.
 

Data breach costs drop for first time in study

March 20, 2012

Organizations now pay an average of $194 per breached record, the first time the annual Symantec-Ponemon Institute "Cost of a Data Breach Study" noted a drop since its inception in 2006.
 

Porn site Digital Playground hacked to expose card numbers

March 09, 2012

Online hackers have compromised two adult websites, including the very popular YouPorn, in recent weeks, apparently to highlight weak security.
 

Lawsuits in Sutter Health breach to be rolled into one

March 08, 2012

Following the theft of a computer at Sutter Health in October that put the personal information of more than 4.2 million patients at risk, 11 class-action lawsuits were filed against the Sacramento, Calif.-based nonprofit.
 

Sponsors say new Senate cyber bill less costly for business

March 01, 2012

A group of Republican senators on Thursday introduced a competing bill to the bipartisan Cybersecurity Act of 2012, which was unveiled two weeks ago.
 

Hacktivism endures

March 01, 2012

The threat posed by politically motivated attackers, known as hacker activists, or hacktivists, is far-reaching, yet authorities are finding it difficult to take down a structurally decentralized movement.
 

RSA Conference 2012: Breaches help in C-suite communication

February 29, 2012

The corner offices are finally perking up to the need for security, so now security professionals need to smarten up on how to best reach them.
 

Hacking now responsible for most of exposed records

February 27, 2012

Until last year, lost and stolen laptops were to blame for the largest percentage of breach types. Now, hacking has claimed the top spot.
 

Patient data available on Google, Yahoo due to security mishap

February 23, 2012

The health records of more than 30,000 patients at five California hospitals may have been publicly accessible via search engines due to improper server configurations.
 

Podcast: The probability of a data breach lawsuit

February 17, 2012

If a data breach occurs, when are companies more likely to be sued by consumers or employees? A Carnegie Mellon University researcher joined me on the SC Magazine Podcast to discuss.
 

Stratfor subscribers targeted by malware-ridden emails

February 14, 2012

A letter addressed to the stolen email addresses of Stratfor customers claims to be a helpful reminder of malware scams, but is actually bait to spread the Zbot trojan.
 

Breaches aided by weak passwords, poor AV detection

February 09, 2012

Trustwave's annual review of its data breach response investigations concluded that franchises are now the prime target for hackers seeking customer data, such as credit card numbers.
 

Phishing email leads to Denver area health care breach

February 07, 2012

Hackers may have accessed the personal health data belonging to patients of Denver area-based Metro Community Provider Network, a nonprofit health care provider for low-income individuals and families.
 

Anonymous raids law firm over its defense of Marine

February 03, 2012

Anonymous stayed busy on Friday with the dump of 300 GB of emails and other communications, lifted from the law firm representing a U.S. Marine who recently escaped jail time for his role in a 2005 massacre.
 

Security breaches impacting VeriSign emerge in filing

February 02, 2012

The company responsible for ensuring that users reach the website they intend to reach admitted in an SEC filing that its network was breached numerous times in 2010.
 

Indiana University hospital hacked to steal data

February 01, 2012

Malware may have allowed attackers to make off with the personal information of thousands of people connected to Indiana University Health Goshen Hospital.
 

Univ. of Hawaii settles with 98,000 over five breaches

January 27, 2012

The largest class-action settlement in Hawaii's history is related to data breaches at University of Hawaii campuses.
 

Symantec admits stolen source code impacts pcAnywhere

January 25, 2012

Big Yellow has done an about-face in light of new analysis that confirms users of its pcAnywhere software may be at risk to attack due to the disclosure of source code.
 

Zappos breach affects 24M, opens door for more attacks

January 16, 2012

Hackers breached a server belonging to online retailer Zappos and made off with the personal information of 24 million customers, though no credit card numbers were involved.