-
Swvl
July 3, 2020
•
[ hack, technology ]
Swvl, a bus-booking app and operator of bus routes in Egypt, Kenya, and Pakistan, becomes aware of "unauthorized access to its IT infrastructure".
-
Technology Management Resources, Inc. (TMR)
July 3, 2020
Technology Management Resources, Inc. suffers a phishing attack. Many organizations are affected.
-
MyGov accounts
July 3, 2020
Logins for more than 3600 MyGov accounts are listed for sale on the dark web.
-
Heartland Farm Mutual
July 2, 2020
•
[ social, phishing, finance ]
A phishing attack at Heartland Farm Mutual, a Canadian insurance firm, may have exposed the personal data of clients, the company warns.
-
CNY Works
July 2, 2020
•
[ ransomware, social ]
The names and Social Security numbers of 56,000 people who used CNY Works employment services are exposed in a ransomware incident that was discovered in December 2019.
-
Natanz nuclear facility
July 2, 2020
A group composed of dissidents within Iran's military and security forces claim to be behind the fire at the Natanz nuclear facility.
-
Wayne County School District
July 2, 2020
•
[ financial, education ]
A cyberattack against Wayne County School District's 16th Section Principal Fund Account has resulted in an investigation by the FBI after they were contacted by school officials shortly after the breach was discovered on July 2.
-
Russia's Ministry of Foreign Affairs
July 2, 2020
Unknown hackers hijack the Twitter account of Russia's Ministry of Foreign Affairs, offer to sell stolen data.
-
Drizly
July 2, 2020
•
[ hack, retail ]
In approximately July 2020, the US-based online alcohol delivery service Drizly suffered a data breach. The data was sold online before being extensively redistributed and contained 2.5 million unique email addresses alongside names, physical and IP addresses, phone numbers, dates of birth and passwords stored as bcrypt hashes. The data was provided to HIBP by dehashed.com.
-
Uyghur ethnic minority
July 1, 2020
•
[ espionage, malware, technology ]
Researchers from Lookout discover four Android surveillance tools, named SilkBean, DoubleAgent, CarbonSteal, and GoldenEagle, elements of campaigns originating in China, and primarily targeting the Uyghur ethnic minority.
-
Stradis Healthcare
July 1, 2020
•
[ insider, misconfiguration, healthcare ]
A former vice president of a company in Georgia has been sent behind bars for sabotaging systems and causing delays in the shipment of Personal Protective Equipment (PPE).
-
Trinity Metro
July 1, 2020
•
[ ransomware, malware, government ]
The cybercriminals behind NetWalker publish online evidence of an attack on Trinity Metro, a transit agency that operates bus and commuter rail transportation services in Fort Worth and its nearby Tarrant County suburbs.
-
Unnamed English football club
July 1, 2020
In a report the UK National Cyber Security Centre has reported that an unnamed English football club was targeted by ransomware that crippled its IT systems and stopped their turnstiles from working.
-
Utah Pathology
June 30, 2020
•
[ financial, healthcare ]
An unknown third party tried to redirect funds from Utah Pathology in June.
-
Roblox
June 30, 2020
Hackers use leaked credentials on pastebin to deface Roblox profiles to support Donald Trump in the forthcoming US presidential election.
-
City of Duncannon
June 29, 2020
•
[ ransomware, malware, government ]
Duncannon reveals to have been hit with a ransomware attack in April, which left many municipal computer systems inoperable and caused the borough to pay out more than $40,000 to the hackers to restore systems.
-
New Mexico State University Foundation
June 29, 2020
•
[ ransomware, malware, education ]
New Mexico State University Foundation is another victim of the Blackbaud hack.
-
Wattpad
June 29, 2020
•
[ hack, leak, technology ]
In June 2020, the user-generated stories website Wattpad suffered a huge data breach that exposed almost 270 million records. The data was initially sold then published on a public hacking forum where it was broadly shared. The incident exposed extensive personal information including names and usernames, email and IP addresses, genders, birth dates and passwords stored as bcrypt hashes.
-
OrderSnapp
June 29, 2020
In June 2020, the restaurant solutions provider OrderSnapp suffered a data breach which exposed 1.3M unique email addresses. Impacted data also included names, phone numbers, dates of birth and passwords stored as bcrypt hashes. The data was provided to HIBP by dehashed.com.
-
Israel Philharmonic Orchestra
June 28, 2020
The online Israel Philharmonic Orchestra concert, hosted by Helen Mirren, was disrupted by cyberattackers.