FTC Announces Six-Month Extension for Compliance with Some Changes to Gramm-Leach-Bliley Safeguards Rule

Hunton Andrews Kurth writes: On November 15, 2022, the Federal Trade Commission announced a six-month extension for companies to comply with certain updated requirements of the Gramm-Leach-Bliley Act’s Safeguards Rule, a set of data security provisions covered  financial institutions must implement to protect their customers’ personal information. The new deadline is June 9, 2023. The FTC announced updates...

County of Tehama, Calif., Identifies and Addresses Data Security Incident

RED BLUFF, Calif., Nov. 17, 2022 /PRNewswire/ — Today, the County of Tehama, California announced that it has addressed a data security incident that resulted in unauthorized access to files on its systems. On August 19, 2022, the County of Tehama concluded its investigation of a data security incident that resulted in unauthorized access to personal information pertaining to certain County...

Have ransomware-type cyberattacks really decreased in 2022?

Marco A. De Felice writes: According to various reports drawn up by analysts and journalists in the information security sector, ransomware-type attacks would be in sharp decline in 2022. A statement that we find in total disagreement. For SuspectFile, the number of victims in all sectors is instead comparable to those experienced in the...

Researchers Quietly Cracked Zeppelin Ransomware Keys

Brian Krebs reports: Peter is an IT manager for a technology manufacturer that got hit with a Russian ransomware strain called “Zeppelin” in May 2020. He’d been on the job less than six months, and because of the way his predecessor architected things, the company’s data backups also were encrypted by Zeppelin. After two...

Vanuatu island hit by ransom attack, cripples government

WION reports: The small archipelago of the South Pacific Ocean, Vanuatu, was attacked by ransomware on 4 November, Friday and stranded the country for over a week. According to civil servants in the government, they noticed that their official emails started bouncing back from government addresses, this was the first sign when they found...

Alert (AA22-321A) #StopRansomware: Hive Ransomware

CISA has issued an alert about the Hive ransomware group. Summary Note: This joint Cybersecurity Advisory (CSA) is part of an ongoing #StopRansomware effort to publish advisories for network defenders that detail various ransomware variants and ransomware threat actors. These #StopRansomware advisories include recently and historically observed tactics, techniques, and procedures (TTPs) and indicators...

Meta Fires Employees and Contractors for Improperly Accessing Users’ Accounts and Selling Them to Hackers

Daniel Kreps reports: Meta, the parent company of Facebook, has fired or disciplined dozens of employees and contractors — including Meta security guards — following an internal probe that revealed they were improperly accessing users’ accounts for reasons including bribery. The Wall Street Journal reports that, for years, the employees and contractors wrongly used Facebook’s internal mechanism for helping...