CYBERSECURITY -
OFAC Issues Advisory on Sanctions for Facilitating Ransomware Payments -
On October 1, 2020, the U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC) issued an advisory “to...more
10/5/2020
/ Building Inspectors ,
Business Continuity Plans ,
California Consumer Privacy Act (CCPA) ,
Cyber Attacks ,
Cybersecurity ,
Data Breach ,
Data Privacy ,
Drones ,
Economic Sanctions ,
Financial Institutions ,
Fraud ,
Hackers ,
HIPAA Breach ,
Identity Theft ,
OCR ,
Office of Foreign Assets Control (OFAC) ,
PHI ,
Ransomware ,
Regulatory Agenda ,
Unemployment Benefits
CYBERSECURITY -
FBI + CISA Issue Joint Alert on Vishing Attacks -
When the Federal Bureau of Investigations (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) get together to issue an alert to warn us...more
9/4/2020
/ Australia ,
Cisco ,
Cyber Crimes ,
Cybersecurity ,
Data Management ,
Data Privacy ,
Drones ,
FBI ,
Federal Trade Commission (FTC) ,
Hackers ,
Homeland Security Cybersecurity & Infrastructure Security Agency (CISA) ,
Mobile Apps ,
Online Education ,
Phishing Scams ,
Popular ,
Vulnerability Assessments
When the Federal Bureau of Investigations (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) get together to issue an alert to warn us about a security threat, you can bet that the threat is real, and that...more
CYBERSECURITY -
U.S. Organizations Doing Business in China Warned of Malware in Tax Software -
The Federal Bureau of Investigations (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) have issued a joint...more
8/28/2020
/ ALEXA ,
Amazon Echo ,
Audits ,
Automatic License Plate Readers ,
Connected Cars ,
Cybersecurity ,
Data Breach ,
Data Collection ,
Data Privacy ,
Data Protection ,
Data Security ,
Financial Industry Regulatory Authority (FINRA) ,
Location Data ,
Malware ,
Motor Vehicles ,
Personal Assistants ,
Personally Identifiable Information ,
Popular ,
Scams ,
Websites ,
Zoom®
The Federal Bureau of Investigations (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) have issued a joint Flash Alert to U.S. based businesses doing business in China about a remote targeting campaign...more
8/28/2020
/ Banks ,
Cybersecurity ,
Data Privacy ,
Data Protection ,
FBI ,
Foreign Corporations ,
Homeland Security Cybersecurity & Infrastructure Security Agency (CISA) ,
Malware ,
Popular ,
Software ,
Tax Planning ,
Tax Preparers
Auditors have to continue doing their job of auditing, but with the pandemic, audits now are rarely on-site. Many auditing firms are using remote technology to conduct audits, and companies are either forwarding files...more
I continue to be quite surprised at the lack of understanding that people have about personal assistants such as Alexa and Echo. It seems logical to me that when you yell out “Alexa, turn on the lights!”...more
8/28/2020
/ ALEXA ,
Amazon Echo ,
Connected Items ,
Cybersecurity ,
Data Privacy ,
Data Protection ,
Data Security ,
Internet of Things ,
Oral Communications ,
Personal Assistants ,
Privacy Concerns
CYBERSECURITY -
NSA + FBI Warn Defense Contractors of Russian Hackers -
When the National Security Agency (NSA) and the Federal Bureau of Investigations (FBI) get together to issue a joint warning, you may wish to listen...more
8/21/2020
/ California Consumer Privacy Act (CCPA) ,
Carnival Cruise Lines ,
Class Action ,
Cybersecurity ,
Data Privacy ,
Data Protection ,
FBI ,
Instagram ,
NASA ,
Personal Data ,
Personally Identifiable Information ,
Popular ,
Ransomware ,
Social Media ,
TikTok ,
Vulnerability Assessments ,
YouTube
The California Consumer Privacy Act (CCPA), touted as the toughest privacy act in the country, went into effect on July 1, 2020. Although the enforcement regulations have been tweaked three times during the last year, this...more
8/21/2020
/ California Consumer Privacy Act (CCPA) ,
Consumer Privacy Rights ,
Cybersecurity ,
Data Collection ,
Data Management ,
Data Privacy ,
Data Protection ,
Information Governance ,
Personal Data ,
Personally Identifiable Information ,
State and Local Government ,
State Attorneys General
CYBERSECURITY -
Maze Continues to Strike Companies -
It is being reported by ZDNet that the Maze ransomware group has attacked two companies that, apparently, refused to pay the requested ransom, so Maze, as it...more
8/10/2020
/ Capital One ,
Cyber Attacks ,
Cybersecurity ,
Data Breach ,
Data Privacy ,
Data Protection ,
Financial Services Industry ,
Hackers ,
Personal Data ,
Personally Identifiable Information ,
Ransomware ,
Settlement Agreements ,
Social Media ,
TikTok
CYBERSECURITY -
Connecticut Insurance Department Reminds Licensees to Comply with Data Security Law -
On July 20, 2020, the Connecticut Insurance Department issued a bulletin to licensees reminding them that the Connecticut...more
CYBERSECURITY -
SEC Issues Warning for Advisors and Broker-Dealers on Increased Ransomware Attacks -
On July 10, 2020, the Securities and Exchange Commission (SEC), through its Office of Compliance Inspections and...more
7/17/2020
/ Broker-Dealer ,
California Consumer Privacy Act (CCPA) ,
Cybersecurity ,
Data Breach ,
Data Privacy ,
Data Protection ,
Drones ,
Investment Adviser ,
OCIE ,
Ransomware ,
Scams ,
Securities and Exchange Commission (SEC) ,
Supply Chain ,
Vulnerability Assessments
CYBERSECURITY -
Health Care Providers Continue to Be Hit with Ransomware and Phishing -
It doesn’t matter in which state you are located, how many patients you treat, what kind of medicine you practice or how many...more
Cyber-Attacks Against Maritime Industry Quadrupled in Last Few Months -
A recent report released by the British Ports Association and Astaara, a risk management firm based in the U.K., concludes that since February of...more
We have previously alerted our readers about the California Consumer Privacy Act (CCPA), which went into effect on January 1, 2020. CCPA is one of the strictest consumer privacy laws in the U.S. and is broadly applicable....more
Alabama City Hit with Ransomware -
On June 5, 2020, Florence, Alabama’s information technology systems were hit with ransomware by the DoppelPaymer group demanding a ransom payment of $378,000 in bitcoin. Mayor Steve Holt...more
6/13/2020
/ California Consumer Privacy Act (CCPA) ,
Cybersecurity ,
Data Privacy ,
Data Protection ,
Department of Homeland Security (DHS) ,
Hackers ,
Marketing ,
Microsoft ,
Personal Data ,
Personally Identifiable Information ,
Popular ,
Ransomware ,
Robocalling ,
Vulnerability Assessments
As you know, I very rarely download mobile apps. Except for a multi-factor authentication app, and of course, the Jumbo privacy app....more
6/12/2020
/ Cyber Attacks ,
Cyber Crimes ,
Cybersecurity ,
Dark Web ,
Data Breach ,
Data Privacy ,
Data Protection ,
Data Security ,
Hackers ,
Mobile App Privacy Guidelines ,
Personally Identifiable Information
Capital One Required to Produce Forensic Report in Class Action -
As a litigator, when responding to any security incident, thoughtful consideration is given to the possibility that the security incident may wind up in...more
5/31/2020
/ Artificial Intelligence ,
Automation Systems ,
Capital One ,
Class Action ,
Cybersecurity ,
Cybersecurity Maturity Model Certification (CMMC) ,
Data Breach ,
Data Privacy ,
Department of Defense (DOD) ,
Drones ,
Financial Services Industry ,
iPhone ,
Popular ,
Robotics ,
Toyota ,
Vulnerability Assessments
Texas Court System Hit with Ransomware -
The Office of Court Administration in Texas (OCA) confirmed late last week that it is the victim of a ransomware attack. The OCA stated that it would not pay the ransom. “OCA was...more
After incidents of Zoom “bombing,” including a recent intrusion by hackers to disrupt a church service with foul content (don’t these guys have better things to do?), it has been reported that hackers are now taking advantage...more
Adult Streaming Site Leaves 7TB of Users’ Information Unsecured -
Live adult streaming website CAM4 has reportedly not secured 7TB of users’ information, which may be able to be used for blackmail and identity theft...more
5/11/2020
/ California Consumer Privacy Act (CCPA) ,
Charitable Organizations ,
Coronavirus/COVID-19 ,
Cyber Attacks ,
Cyber Threats ,
Cybersecurity ,
Data Breach ,
Data Privacy ,
Data Security ,
Hackers ,
Health Care Providers ,
OCR ,
Personally Identifiable Information ,
Scams
ExecuPharm Data Stolen in Ransomware Attack Published on Internet -
In a growing trend, pharmaceutical company ExecuPharm became the victim of a ransomware attack on March 13, 2020, by the CLOP ransomware group, which...more
Cognizant Confirms Maze Ransomware Attack -
The criminals behind the Maze ransomware [view recent related posts here and here] have gone big and hit Cognizant, one of the largest technology consulting companies in the U.S.,...more
4/25/2020
/ Coronavirus/COVID-19 ,
Cybersecurity ,
Data Privacy ,
Data Protection ,
Drones ,
Fast-Food Industry ,
Loss Prevention ,
National Security ,
NYDFS ,
Personal Data ,
Personally Identifiable Information ,
Phishing Scams ,
Popular ,
Ransomware ,
U.S. Navy
I always enjoy hosting and participating in the CISO Executive Network meetings. The meetings offer Chief Information Security Officers (CISOs) the opportunity to discuss together ways they can improve security in their...more
Sodinokibi Hackers Switch Payment Mechanism to Monero -
The hackers behind the Sodinokibi/REvil ransomware have reportedly switched their demands for payment from Bitcoin or Ethereum to Monero cryptocurrency to try to...more
4/19/2020
/ Bitcoin ,
CARES Act ,
Coronavirus/COVID-19 ,
Cryptocurrency ,
Cyber Attacks ,
Cyber Crimes ,
Cybersecurity ,
Data Breach ,
Data Privacy ,
Data Security ,
Financial Stimulus ,
Hackers ,
INTERPOL ,
Personally Identifiable Information ,
Popular ,
Ransomware ,
Risk Mitigation ,
Scams