clearview Hackers Steal Client List from Controversial Facial Recognition Startup Clearview An unknown hacker breaches Clearview AI and steals a customer list detailing police and government use of its controversial facial recognition software. The company dismisses the incident as a normal part of modern life despite patching a security flaw.
equifax U.S. Indicts Four Chinese Military Officers Over Massive 2017 Equifax Breach The Justice Department charges four members of China's People's Liberation Army with stealing the personal data of 145 million Americans in the largest known state-sponsored hack of consumer information.
equifax Chinese Military Hackers Charged in Massive 2017 Equifax Data Breach US prosecutors charge four members of the Chinese military with hacking Equifax and stealing the personal data of 145 million Americans. The attackers exploit an unpatched software vulnerability to extract sensitive information through thousands of database queries.
twitter Twitter Shuts Down Vast Fake Account Network Exploiting Phone Number Bug Twitter suspends a massive network of fake accounts that abuse a system flaw to match millions of phone numbers to specific user profiles. The platform detects suspicious activity originating from IP addresses in Iran, Israel, and Malaysia.
cybersecurity Forensic Report Links Saudi Crown Prince Account to Jeff Bezos WhatsApp Hack A new Guardian report reveals that Amazon CEO Jeff Bezos had large amounts of data stolen from his phone via a malicious WhatsApp message sent from an account used by Saudi crown prince Mohammed bin Salman.
google Google Accelerates Google+ Shutdown After New API Bug Exposes 52.5 Million Users Google speeds up the closure of consumer Google+ to April 2019 after discovering a software bug that exposes the profile data of 52.5 million users. The company states that no third parties compromised its systems or misused the exposed information.
sprint Unprotected Cloud Server Exposes Hundreds of Thousands of Cell Phone Bills A Sprint marketing contractor leaves over 261,000 cell phone bills from AT&T, Verizon, and T-Mobile customers on an unsecured AWS server. The exposed data includes highly sensitive information like names, addresses, and even account passwords.
truedialog Unprotected Database Exposes Millions of Business SMS Text Messages Security researchers discover a massive, unsecured database belonging to TrueDialog that exposes tens of millions of two-way text messages. The leaked data contains sensitive information, including two-factor codes, password reset links, and customer login credentials.
magic the gathering Magic: The Gathering Maker Exposes Player Data in Unprotected Cloud Bucket Wizards of the Coast leaves a database of over 450,000 Magic: The Gathering players in a public cloud storage bucket without a password. The company is now forcing password resets and investigating the security lapse.
veritas genetics DNA Startup Veritas Genetics Suffers Quiet Data Breach Veritas Genetics confirms a breach of its customer portal but refuses to disclose exactly what data is stolen. The incident adds to growing privacy concerns surrounding DNA testing companies.
twitter Two Former Twitter Employees Face Spy Charges for Leaking Data to Saudi Arabia Federal prosecutors charge two former Twitter employees with acting as Saudi agents by secretly accessing private user data of government critics. The case marks the first time U.S. authorities allege Saudi agents operated inside an American tech company.
twitter Saudi Government Paid Twitter Insiders to Spy on Dissidents Newly unsealed court documents reveal that Saudi officials bribed Twitter employees to access personal data of political activists and journalists.
data breach Unprotected Database Exposes Millions of Camgirl Site Users A major data exposure at VTS Media leaves millions of camgirl site users and sex workers vulnerable after an unprotected database reveals private chats, passwords, and viewing habits.
mercedes-benz Mercedes-Benz App Glitch Exposes Customer Data to Other Drivers A security lapse in the Mercedes-Benz connected car app allows users to view sensitive account and vehicle information belonging to complete strangers. The company takes the app offline for maintenance shortly after customers report the bizarre data mix-up.
comodo Cybersecurity Firm Comodo Suffers Embarrassing Forum Database Breach Comodo confirms a hacker exploits a known vBulletin vulnerability to steal personal data from roughly 245,000 forum users. This marks the second major security lapse for the cybersecurity company this year.