Category: CyberSecurityDive

Lemonade says applicant driver’s license numbers exposed
18
Apr
2025

Lemonade says applicant driver’s license numbers exposed

Lemonade Inc. has begun sending notification letters to about 190,000 people after their driver’s license numbers were transmitted unencrypted, according…

Ahold Delhaize confirms data stolen after threat group claims credit for November attack
18
Apr
2025

Ahold Delhaize confirms data stolen after threat group claims credit for November attack

Ahold Delhaize confirmed Thursday that certain files from its U.S. operations were stolen in a November cyberattack after a threat…

Older SonicWall SMA100 vulnerability exploited in the wild
17
Apr
2025

Older SonicWall SMA100 vulnerability exploited in the wild

Dive Brief: SonicWall on Tuesday disclosed that an OS command-injection vulnerability in SonicWall SMA100 remote-access appliances, tracked as CVE-2021-20035, has…

CISA warns companies to secure credentials amid claims of Oracle Cloud data breach
17
Apr
2025

CISA warns companies to secure credentials amid claims of Oracle Cloud data breach

The Cybersecurity and Infrastructure Security Agency on Wednesday said organizations and individuals should take steps to protect their environments from…

Bill extends cyber threat info-sharing between public, private sector
16
Apr
2025

Bill extends cyber threat info-sharing between public, private sector

Two federal lawmakers today introduced a bi-partisan bill that preserves key regulation that facilitates the sharing of cyber-threat data between…

Mitre CVE program regains funding as renewal deal reached
16
Apr
2025

Mitre CVE program regains funding as renewal deal reached

The Cybersecurity and Infrastructure Security Agency said it reached an agreement to renew funding for a software vulnerability program that…

CISA urges fired probationary workers to respond after federal judge grants order
16
Apr
2025

CISA launches new wave of job cuts

The Cybersecurity and Infrastructure Security Agency is in the process of a major push to eliminate jobs, starting with a…

DaVita hit by ransomware attack
15
Apr
2025

DaVita hit by ransomware attack

Dive Brief: DaVita has been hit by a ransomware attack that’s affecting operations, the kidney care provider said Monday.  The…

Attackers exploit zero-day flaw in Gladinet CentreStack file-sharing platform
15
Apr
2025

Attackers exploit zero-day flaw in Gladinet CentreStack file-sharing platform

Dive Brief: Huntress on Monday published research that showed exploitation of CVE-2025-30406, a deserialization vulnerability in Gladinet’s CentreStack enterprise file-sharing…

Hertz says personal data breached in connection with Cleo file-transfer flaws
15
Apr
2025

Hertz says personal data breached in connection with Cleo file-transfer flaws

Hertz Corp. confirmed a threat actor gained access to sensitive personal data in a breach linked to vulnerabilities in Cleo…

Aviation sector faces heightened cyber risks due to vulnerable software, aging tech
14
Apr
2025

Aviation sector faces heightened cyber risks due to vulnerable software, aging tech

Dive Brief: The aviation industry is facing significant threats to its ability to maintain cyber resilience and must address key…

Over 14K Fortinet devices compromised via new attack method
14
Apr
2025

Over 14K Fortinet devices compromised via new attack method

Dive Brief: The Shadowserver Foundation reported Saturday that more than 14,000 Fortinet devices across the globe have been compromised by…