security breaches
Telehealth startup Cerebral shared millions of patients’ data with advertisers
Cerebral has revealed it shared the private health information, including mental health assessments, of more than 3.1 million patients in the United States with advertisers and social media giants lik
Samsung says customer data stolen in July data breach
Electronics giant Samsung has confirmed a data breach affecting customers’ personal information. In a brief notice, Samsung said it discovered the security incident in late-July and that an R
DoorDash hit by data breach linked to Twilio hackers
Food delivery giant DoorDash has confirmed a data breach that exposed customers’ personal information. In a blog post shared with TechCrunch ahead of its publication at market close, DoorDash sa
Apple patches nasty security bugs, HBO Max suddenly removes content, and a16z backs Neumann’s next thing
Hello hello! We’re back with another edition of Week in Review, the newsletter where we quickly recap the top stories to hit TechCrunch across the last seven days. Want it in your inbox? Sign up
TechCrunch launches TheTruthSpy spyware lookup tool
TechCrunch today launched a spyware lookup tool that allows anyone to check if their Android device was compromised by a network of consumer-grade stalkerware apps, including TheTruthSpy. The aim is t
What you might have missed at Black Hat and Def Con 2022
Hackers, researchers, cybersecurity companies and government officials descended on Las Vegas last week for Black Hat and Def Con, a cybersecurity double-bill that’s collectively referred to as “h
A newly discovered malware hijacks Facebook Business accounts
An ongoing cybercriminal operation is targeting digital marketing and human resources professionals in an effort to hijack Facebook Business accounts using a newly discovered data-stealing malware. Re
Spyware maker Candiru linked to Chrome zero-day targeting journalists
Security researchers have linked the discovery of an actively exploited but since-fixed zero-day vulnerability in Google Chrome to an Israeli spyware maker targeting journalists in the Middle East. Cy
A ransomware attack on a debt collection firm is one of 2022’s biggest health data breaches
A ransomware attack on a little-known debt collection firm that serves hundreds of hospitals and medical facilities across the U.S. could be one of the biggest data breaches of personal and health inf
A huge data leak of 1 billion records exposes China’s vast surveillance state
A massive store of data containing information on about one billion Chinese residents could be one of the biggest breaches of personal information in history. Portions of the leaked data appeared last
RansomHouse extortion group claims AMD as its latest victim
AMD said it is investigating a potential data breach after RansomHouse, a relatively new data cybercrime operation, claims to have extorted data from the U.S. chipmaker. An AMD spokesperson told TechC
Hackers stole Social Security numbers in Flagstar data breach affecting 1.5 million customers
Flagstar Bank, one of the largest financial service providers in the United States, has notified more than 1.5 million customers of a data breach in which Social Security numbers were stolen — its s
Ex-Amazon employee convicted over data breach of 100 million CapitalOne customers
Paige Thompson, a former Amazon employee accused of stealing the personal information of 100 million customers by breaching banking giant CapitalOne in 2019, has been found guilty by a Seattle jury on
A hacked Kaiser Permanente employee’s emails led to breach of 70,000 patient records
Kaiser Permanente, the largest nonprofit health plan provider in the United States, has disclosed a data breach that exposed the sensitive health information of almost 70,000 patients. In a notice to
China-backed hackers are exploiting unpatched Microsoft zero-day
China-backed hackers are exploiting an unpatched Microsoft Office zero-day vulnerability, known as “Follina”, to execute malicious code remotely on Windows systems. The high-severity vulnerabilit
US names and shames Venezuelan doctor as notorious ransomware maker
The U.S. has named a Venezuelan cardiologist as the alleged mastermind behind the notorious Thanos ransomware. According to the U.S. Justice Department, Moises Luis Zagala Gonzalez, 55, created and di
Socket lands $4.6M to audit and catch malicious open source code
Securing the software supply chain is admittedly somewhat of a dry topic, but knowing which components and code go into your everyday devices and appliances is a critical part of the software developm
Car rental giant Sixt hit by cyberattack, customers told to expect delays
Germany-based rental car giant Sixt has confirmed it’s been hit by a cyberattack that has caused widespread disruption to its global operations. According to a statement from Sixt, which has mor
Health startup myNurse to shut down after data breach exposed health records
myNurse, a healthcare startup that provides chronic care management and remote patient monitoring services, said it will shut down at the end of the month after reporting a data breach that exposed pe
Ukraine disrupts attempt by Russian hackers to take down energy provider
The Computer Emergency Response Team of Ukraine (CERT-UA) has disrupted an attempt by Sandworm, a hacking group known to work for Russia’s military intelligence, to take down a Ukrainian energy