720-891-1663

Anthem Agrees To Pay $115 Million To Settle Lawsuits From Breach

Anthem Blue Cross, you likely remember, was one of the first “Blues” to admit that they had lost control of the data on their subscribers to the tune of around 79 million people.  After Anthem admitted that, a number of other insurance companies – both Blues and others – admitted that they, too, had been […]

Continue reading → [DISPLAY_ACURAX_ICONS]

GOP Contractor Exposes Profiles of 198 Million Voters

In what has to be one of the largest disclosures of personal data ever, it appears that a Republican National Committee vendor exposed their collection of data on 198 million U.S. voters in the cloud for anyone to trip over. Unlike other cases where hackers broke in or used zero day exploits to compromise systems, […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Yet Another Outsourcer Hacked

Aptos, an outsource point of sale vendor for many businesses, announced that they were breached.  Sort of announced, but not really. The breach was active from February 2016 thru November 2016, but they didn’t notify their merchants until February of this year.  Now the vendors are slowly notifying their customers.  Potentially, customers are not going […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Database of 10 Million Auto VINs Exposed

An unprotected database containing 10 million vehicle identification numbers or VINs has been discovered on the Internet.  That database also included make and model information, sales gross, monthly payment, customer name, address, phone, email, birth date and many other fields. But here is the interesting part.  Even though that researchers discovered the unprotected database 137 […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Why The Software Supply Chain is The Rhinoceros Head in the Corner

As if Yahoo didn’t have enough trouble, it apparently was using a third party software library called ImageMagick which had a serious security bug in it. The library which is used to manipulate images is very widely used.  Or at least, it was.  Some people say that it has not aged well. Security researcher Chris […]

Continue reading → [DISPLAY_ACURAX_ICONS]

One Login Cloud Identity Manager Has Critical Breach

Onelogin, a cloud based identity and access manager, reported being hacked on May 30th.  This is the challenge with cloud based IDaaS managers. WARNING: Normally I try to make my posts non-techie.  I failed at this one.  Sorry!  If the post stops making sense, then just stop reading.  I promise that tomorrow’s post, whatever it is, will […]

Continue reading → [DISPLAY_ACURAX_ICONS]