Sat.Jul 23, 2022

article thumbnail

$350 Million Settlement of T-Mobile Breach Lawsuits Proposed

Data Breach Today

On Top of Settling With Victims, Telecom Carrier Would Invest More in Security A proposed $350 million settlement of a consolidated class action lawsuit against T-Mobile, after a 2021 data breach that affected nearly 77 million people, includes breach victims and related legal costs. The settlement requires T-Mobile to invest $150 million to bolster data security.

article thumbnail

FBI seized $500,000 worth of bitcoin obtained from Maui ransomware attacks

Security Affairs

The U.S. DoJ seized $500,000 worth of Bitcoin from North Korea-linked threat actors who are behind the Maui ransomware. The U.S. Department of Justice (DoJ) has seized $500,000 worth of Bitcoin from North Korean threat actors who used the Maui ransomware to target several organizations worldwide. “The Justice Department today announced a complaint filed in the District of Kansas to forfeit cryptocurrency paid as ransom to North Korean hackers or otherwise used to launder such ransom paymen

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Platform Security Firm SonicWall Promotes Sales Guru to CEO

Data Breach Today

SonicWall Taps Bob VanKirk to Grow Cloud Transformation and Enterprise Coverage SonicWall promoted its chief revenue officer to CEO, tasking him with accelerating cloud transformation, expanding enterprise coverage and enabling managed service providers. SonicWall credits Bob VanKirk with producing eight consecutive quarters of double-digit top-line and bottom-line growth.

Sales 259
article thumbnail

SonicWall fixed critical SQLi in Analytics and GMS products

Security Affairs

Security company SonicWall released updates to address a critical SQL injection (SQLi) flaw in Analytics On-Prem and Global Management System (GMS) products. Security company SonicWall addressed a critical SQL injection (SQLi) vulnerability, tracked as CVE-2022-22280 (CVSS score 9.4), in Analytics On-Prem and Global Management System (GMS) products. “Improper Neutralization of Special Elements used in an SQL Command leading to Unauthenticated SQL Injection vulnerability, impacting SonicWal

Analytics 100
article thumbnail

Peak Performance: Continuous Testing & Evaluation of LLM-Based Applications

Speaker: Aarushi Kansal, AI Leader & Author and Tony Karrer, Founder & CTO at Aggregage

Software leaders who are building applications based on Large Language Models (LLMs) often find it a challenge to achieve reliability. It’s no surprise given the non-deterministic nature of LLMs. To effectively create reliable LLM-based (often with RAG) applications, extensive testing and evaluation processes are crucial. This often ends up involving meticulous adjustments to prompts.

article thumbnail

MedusaLocker Server Likely Spotted In The Wild

Data Breach Today

Self-Signed Certificate Of Red Team Tool Leads To 'Smoking Gun' A scan of Russian servers lead researchers to follow a trail of digital breadcrumbs to find a server with "smoking gun" evidence of connection to MedusaLocker ransomware. The malware has especially affected the healthcare industry. Attack surface risk firm Censys detailed its findings in a report.

More Trending

article thumbnail

Malware Attacks In Ukraine Continue

Data Breach Today

Radio Broadcaster And Governmental Software Provider Targeted Ukrainian network defenders continue to contend with a barrage of malware attacks. Apparent Russia hackers broadcast disinformation about Ukranian President Volodymyr Zelensky's health and targeted a software developer with government customers.

article thumbnail

Feds Warn Healthcare Sector of Web Application Attacks

Data Breach Today

HHS HC3 Advises Medical Centers, Others to Mitigate Risks Involving Many Common Apps Federal authorities are advising healthcare entities to fortify their defenses against cyberattacks involving web applications, including patient portals, telehealth services and webmail. Such apps offer hackers many potential entry points into an organization, they warn.

Risk 251