-
Crown Point Community School
November 30, 2022
•
[ ransomware, malware, education ]
Crown Point Community School reveals to have been the victim of a ransomware attack costing $1M to resolve.
-
Latvian Portal of State Administration Services
November 30, 2022
•
[ hack, ddos, government ]
Anonymous Russia claims to have conducted a DDoS attack against a Latvian portal providing access to state services and local government institutions.
-
Legal & General
November 30, 2022
•
[ hack, ddos, finance ]
NoName057(16) claims to have conducted a DDoS attack against the website of a British financial service provider
-
Plascar Participaes Industriais S.A. (Plascar)
November 30, 2022
The Vice Society ransomware group adds Plascar Participaes Industriais S.A. (Plascar) to their dedicated leak site. The threat actors claim to have 650 GB of information about the company that they have leaked.
-
Chestertons Inc.
November 30, 2022
•
[ ransomware, malware ]
Lorenz encrypted and leaked data stolen from Chestertons Inc. onto their dark web site
-
GoTo
November 30, 2022
•
[ hack, technology ]
Remote access and collaboration company GoTo discloses that they suffered a security breach where threat actors gained access to their development environment and third-party cloud storage service.
-
Government of Spain and the Council of Ministers
November 30, 2022
•
[ hack, ddos, government ]
People's CyberArmy claims to have conducted a DDoS attack against the website of the president of the Government of Spain and the Council of Ministers.
-
LastPass
November 30, 2022
LastPass says unknown attackers breached its cloud storage using information stolen during a previous security incident'from August 2022.
-
-
Suffolk University
November 30, 2022
•
[ leak, misconfiguration, education ]
Suffolk University reports a data breach after learning that an unauthorized party was able to access and remove certain files containing sensitive student information from the school's computer network.
-
Legacy Hospice
November 30, 2022
•
[ hack, phishing, healthcare ]
Legacy Hospice in Alabama notified 21,202 individuals of a breach that stemmed from unauthorized access to a limited number of employee email accounts.
-
Hayward Sisters Hospital
November 29, 2022
•
[ healthcare ]
Hayward Sisters Hospital, which operates under the name St. Rose Hospital, files notice of a data breach after learning that an unauthorized party accessed and removed files containing sensitive patient information from its computer network.
-
Ukraine Ministry of Finance
November 29, 2022
•
[ hack, espionage, government ]
Russian hackers from the XakNet collective claim to have breached the Ukraine Ministry of Finance, gaining access to more than one million documents.
-
IKEA Kuwait
November 29, 2022
•
[ ransomware, malware, manufacturing ]
Ransomware cartel Vice Society adds data stolen from IKEA Kuwait to the gang's website. The company confirms it was attacked.
-
IKEA Morocco
November 29, 2022
•
[ ransomware, malware, manufacturing ]
Ransomware cartel Vice Society adds data stolen from IKEA Morocco to the gang's website. The company confirms it was attacked.
-
Camst
November 29, 2022
•
[ ransomware, malware, retail ]
Camst, an Italian company operating in the catering services, is hit with a ransomware attack.
-
Vancouver Film School
November 29, 2022
•
[ hack, education ]
VFS has been impacted by and is investigating a suspected cyber incident. We are currently investigating and are taking all steps possible to contain and mitigate any associated risks.
-
Wings Financial
November 29, 2022
•
[ leak, finance ]
Wings Financial admitted to the breach by filing a notice with the Maine Attorney General. The company also sent notification letters to the victims of the breach, alerting them to its occurrence to help ensure their future safety.
-
BreachForums
November 29, 2022
In November 2022, the well-known hacking forum "BreachForums" was itself, breached. Later the following year, the operator of the website was arrested and the site seized by law enforcement agencies. The breach exposed 212k records including usernames, IP and email addresses, private messages between site members and passwords stored as argon2 hashes. The data was provided to HIBP by a source who requested it be attributed to "breached_db_person".
-
BetMGM
November 28, 2022
Leading sports betting company BetMGM disclosed a data breach after a threat actor stole personal information belonging to an undisclosed number of customers.