mastodon.xyz is one of the many independent Mastodon servers you can use to participate in the fediverse.
A Mastodon instance, open to everyone, but mainly English and French speaking.

Administered by:

Server stats:

790
active users

#cyberattack

2 posts1 participant0 posts today

#Hertz says customers' personal data and driver's licenses stolen in data #breach | TechCrunch

Car rental giant Hertz has begun notifying its customers of a data breach that included their personal information and driver’s licenses.

The rental company, which also owns the #Dollar and #Thrifty brands, said in notices on its website that the breach relates to a #cyberattack on one of its vendors between October 2024 and December 2024.
#privacy #security

techcrunch.com/2025/04/14/hert

TechCrunch · Hertz says customers' personal data and driver's licenses stolen in data breach | TechCrunchThe car rental giant attributed the breach to Cleo, whose customers had data stolen by a ransomware gang in 2024.

📨 Latest issue of my curated #cybersecurity and #infosec list of resources for week #13/2025 is out!

It includes the following and much more:

➝ DNA of 15 Million People for Sale in #23andMe Bankruptcy,

#Trump administration accidentally texted a journalist its war plans,

➝ Critical Ingress #NGINX controller vulnerability allows RCE without authentication,

#Cyberattack hits Ukraine's state railway,

➝ Troy Hunt's Mailchimp account was successfully phished,

#OpenAI Offering $100K Bounties for Critical #Vulnerabilities,

#Meta AI is now available in #WhatsApp for users in 41 European countries... and cannot be turned off

Subscribe to the #infosecMASHUP newsletter to have it piping hot in your inbox every week-end ⬇️

infosec-mashup.santolaria.net/

DNA of 15 Million People for Sale in 23andMe Bankruptcy, Trump administration accidentally texted a journalist its war plans, Critical Ingress NGINX controller vulnerability allows RCE without authentication, Cyberattack hits Ukraine's state railway, Troy Hunt's Mailchimp account was successfully phished, OpenAI Offering $100K Bounties for Critical Vulnerabilities, Meta AI is now available in WhatsApp for users in 41 European countries... and cannot be turned off
X’s InfoSec Newsletter🕵🏻‍♂️ [InfoSec MASHUP] 13/2025DNA of 15 Million People for Sale in 23andMe Bankruptcy, Trump administration accidentally texted a journalist its war plans, Critical Ingress NGINX controller vulnerability allows RCE without authentication, Cyberattack hits Ukraine's state railway, Troy Hunt's Mailchimp account was successfully phished, OpenAI Offering $100K Bounties for Critical Vulnerabilities, Meta AI is now available in WhatsApp for users in 41 European countries... and cannot be turned off

The cybercriminals from Hunters International published the stolen documents (208,508) from Megacentro.

In the files, personal data such as RUT (Chilean ID numbers), first names, last names, phone numbers, and addresses of employees can be observed.

🔗 security-chu.com/2025/03/ciber

If you are an employee or customer of Megacentro, your personal data might be circulating on the dark web.

We recommend reviewing your accounts, updating your passwords immediately, and staying alert for any phone scam attempts.

www.security-chu.comactor malicioso (MSPAINT) vende datos en un foro de hacking de una universidad ecuatorianaCiberseguridad-Noticias- Latinoamérica: actor malicioso (MSPAINT) vende datos en un foro de hacking de una universidad ecuatoriana

🇸🇻 The audacity of the RansomHub cybercriminal group:

"Our team attempted to contact Solventa S.A. de C.V. management regarding data protection for approximately a month.

The company ignored our messages and the information we provided over the phone.

Today we are making 141 GB of data leaks from Solventa S.A. de C.V. available for free."

🔗 security-chu.com/2025/03/Ranso

www.security-chu.comactor malicioso (MSPAINT) vende datos en un foro de hacking de una universidad ecuatorianaCiberseguridad-Noticias- Latinoamérica: actor malicioso (MSPAINT) vende datos en un foro de hacking de una universidad ecuatoriana

😒 What Really Happened With the DDoS Attacks That Took Down X
@WIRED

「 Kevin Beaumont and other analysts see evidence that some X origin servers, which respond to web requests, weren't properly secured behind the company's Cloudflare DDoS protection and were publicly visible. As a result, attackers could target them directly. X has since secured the servers 」

wired.com/story/x-ddos-attack-

WIRED · What Really Happened With the DDoS Attacks That Took Down XBy Lily Hay Newman

"Nym today launched NymVPN, a groundbreaking decentralized Virtual Private Network (dVPN) that protects users from government and corporate surveillance, including AI-driven tracking. NymVPN is built on the world’s first Noise Generating Mixnet (NGM), which is designed to protect metadata and patterns of communication, circumvent censorship, guard against cyberattacks, and fill security gaps in crypto transactions and VPN technology."

"Chelsea Manning, privacy advocate and security advisor at Nym, said: “Even in democratic nations, people are faced with unrestricted data collection, hyper-narrow algorithmic feeds and normalized censorship tactics. NymVPN takes an infrastructure-based privacy approach to try to combat this increasingly uncertain and splintered internet.”

#security #vpn #mixnet #cyberattack

nym.com/blog/NymVPN-launch-pre

nym.comNymVPN commercial launch press announcementNymVPN launches with Chelsea Manning with unlinkable payment system

DATE: March 13, 2025 at 04:59PM
SOURCE: HEALTHCARE INFO SECURITY

Direct article link at end of text block below.

#Radiology Clinic, #Hospital Among Latest #Rural #Cyberattack Victims t.co/cJOC3GIF0B

Here are any URLs found in the article text:

t.co/cJOC3GIF0B

Articles can be found by scrolling down the page at healthcareinfosecurity.com/ under the title "Latest"

-------------------------------------------------

Private, vetted email list for mental health professionals: clinicians-exchange.org

Healthcare security & privacy posts not related to IT or infosec are at @HIPAABot . Even so, they mix in some infosec with the legal & regulatory information.

-------------------------------------------------

#security #healthcare #doctors #itsecurity #hacking #doxxing #psychotherapy #securitynews #psychotherapist #mentalhealth #psychiatry #hospital #socialwork #datasecurity #webbeacons #cookies #HIPAA #privacy #datanalytics #healthcaresecurity #healthitsecurity #patientrecords @infosec #telehealth #netneutrality #socialengineering

Oh really it was Ukraine that took down X on March 10? Not so fast.

Independent security researchers found evidence that some X origin servers were not properly secured behind DDoS protection, and researchers noted they did not even see Ukraine in the breakdown of the top 20 IP address origins involved in the attacks. wired.com/story/x-ddos-attack- #X #Musk #DDoS #cyberattack #cybersecurity #security #Ukraine #BotNet #Internet

Safepay has been very active in Latin America.

🔗 security-chu.com/2025/03/Safep

Among the files exposed by these cybercriminals:

🇨🇴 Funeral Home cali.losolivos.co Among this multitude of files, we found one from customer service. An unsatisfied customer with the service expresses their dissatisfaction with the funeral home through an email sent on February 16, 2022. #databreach #PII

🇵🇪 Medical Center JockeySalud.com.pe In the samples exposed by these cybercriminals, there are image files of endoscopy reports of their patients. #databreach #PHI #Safepay

www.security-chu.comactor malicioso (MSPAINT) vende datos en un foro de hacking de una universidad ecuatorianaCiberseguridad-Noticias- Latinoamérica: actor malicioso (MSPAINT) vende datos en un foro de hacking de una universidad ecuatoriana