Cyber Risk News

We bring to your attention a sampling of recent media stories involving cyber risk & privacy liability. Among the stories we’re highlighting this month: Cencora Pays Record $75M Ransom in Major Cyberattack, 300K Victims’ Data Compromised in Avis Car Rental Breach, MSSP Market News: Court Considers Who Is Liable for Data Breaches, Biggest Data Breaches of 2024: 1 Billion Stolen Records and Rising, and more!

Healthcare

Nearly 1M Medicare Beneficiaries Face Data Breach

Nearly 1 million Medicare beneficiaries have recently learned that their personal information may have been compromised in a data breach last year. This incident comes on the heels of another incident and highlights the ongoing challenges in protecting sensitive healthcare data and the importance of staying vigilant about your personal information. Click to read entire article.

Cencora Pays Record $75M Ransom in Major Cyberattack

Cencora Inc., the drug distributor formerly known as AmerisourceBergen, became the victim of a significant cyberattack that resulted in the company paying an unprecedented $75 million ransom, making it the largest known cyber extortion payment ever recorded. Click to read entire article.

23andMe Settles Data Breach Lawsuit for $30M

23andMe will pay $30 million and provide three years of security monitoring to settle a lawsuit accusing the genetics testing company of failing to protect the privacy of 6.9 million customers whose personal information was exposed in a data breach last year. Click to read entire article.

Data on Nearly 1M NHS Patients Leaked Online Following Ransomware Attack on London Hospitals

People with symptoms of sensitive medical conditions, including cancer and sexually transmitted infections, are among almost a million individuals who had their personal information published online following a ransomware attack that disrupted NHS hospitals in London earlier this year, according to an analysis shared with Recorded Future News. Click to read entire article.

Texas Level 1 Trauma Center Hit by Ransomware Attack

One of the few Texas level 1 trauma centers outside of a major city – and the only one in West Texas – is being forced to divert patients because of a ransomware attack. Click to read entire article.

Financial Services

1.7M People Hit in Massive Credit Card Data Breach — What to Do Now

Keeping your credit card details safe from hackers just got a whole lot more difficult, following a new data breach at a payment gateway provider that affects almost 1.7 million people. Click to read entire article.

Ally Bank Class Action Alleges Co. Negligence Led to Data Breach

A new class action lawsuit claims that Ally Bank failed to protect its customers from a cyberattack that compromised their personal information. Click to read entire article.

Transportation

300K Victims’ Data Compromised in Avis Car Rental Breach

Avis Car Rental is notifying nearly 300,000 individuals of a data breach it fell victim to in early August. Click to read entire article.

Technology & Telecommunications

T-Mobile Reaches $31.5M Settlement With FCC Over Multiple Data Breaches

T-Mobile, which experienced three huge data breaches in the past three years, agreed to pay $31.5 million in penalties and remediation for failing to protect millions of its customers’ personal information. Click to read entire article.

Fortinet Confirms Data Breach After Hacker Claims to Steal 440 GB of Files

In a statement posted online, Fortinet said an individual intruder accessed “a limited number of files” stored on a third-party shared cloud drive belonging to Fortinet, which included data belonging to “less than 0.3%” of its customers. The company said that the incident “did not involve any data encryption, deployment of ransomware, or access to Fortinet’s corporate network.” Click to read entire article.

MSSP Market News: Court Considers Who Is Liable for Data Breaches

Security breaches are top of mind with more news around the data breach at Columbus Regional Healthcare System. The question of who is liable for data breaches continues to be examined as the legal system catches up with trends in the market. Click to read entire article.

Retail

Temu Denies Data Breach Claims Amidst Hacker Allegations of Selling 87M Customer Records

Temu, a rapidly expanding e-commerce platform, has refuted claims of a data breach after a hacker advertised the alleged theft of a database containing 87 million customer records on a popular hacker forum, according to a news report from BleepingComputer. Click to read entire article.

Cyber Landscape & Evolving Threats

Biggest Data Breaches of 2024: 1B Stolen Records and Rising

We’re over halfway through 2024, and already this year we have seen some of the biggest, most damaging data breaches in recent history. And just when you think some of these hacks can’t get any worse, they do. Click to read entire article.

Average Cost of a Data Breach in the United States From 2006 to 2024

As of 2024, the average cost of a data breach in the United States amounted to $9.36M, down from $9.48M in the previous year. The global average cost per data breach was $4.88M in 2024. Click to read entire article.

The Secret Weakness Execs Are Overlooking: Non-Human Identities

Mismanaged non-human identities are a top cause of security breaches. Learn how secret security can reduce risk. Click to read entire article.

New Data Breach Notification Obligations for PA – and a New Reporting Portal

Pennsylvania AG Michelle Henry announced the launch of an online portal for businesses to report data breaches to the AG’s office. The portal launch comes before Pennsylvania’s new breach amendments take effect on September 26, 2024. Click to read entire article.

150 Top AI Companies (2024): Visionaries Driving the AI Revolution

Artificial intelligence companies are riding a hyper-accelerated growth curve. Like the crack of a starting gun, the November 2022 launch of ChatGPT awakened the world to the vast potential of AI—particularly generative AI. As more companies invest in machine learning, automation, robotics, and AI-based data analytics solutions, the AI algorithm has quickly become the foundational technology of business. Click to read entire article.


Vol. 273 – October 16, 2024

Download 2024 Cyber Claims Study

The annual NetDiligence® Cyber Claims Study uses actual cyber insurance reported claims to illuminate the real costs of incidents from an insurer’s perspective.

Download

© 2024 NetDiligence All Rights Reserved.