Tag: data protection

Italian Data Protection Watchdog Accuses ChatGPT of Privacy Violations
News

Italian Data Protection Watchdog Accuses ChatGPT of Privacy Violations

The maker of ChatGPT, OpenAI, has received notification from Italy's data protection authority (DPA) that it appears that privacy regulations in the area have been broken. The Garante per la protezione dei dati personali, also known as the Garante, stated in a statement on Monday that "the available evidence pointed to the existence of breaches of the provisions contained in the E.U. GDPR [General Data Protection Regulation]." It further stated that it will "take account of the work in progress within the ad-hoc task force set up by the European Data Protection Framework (EDPB) in its final determination on the case. This breakthrough occurred over ten months after the country's watchdog temporarily outlawed ChatGPT read more Italian Data Protection Watchdog Accuses ChatGPT of Pr...
Multiple Flaws in CyberPower and Dataprobe Products Put Data Centers at Risk
News

Multiple Flaws in CyberPower and Dataprobe Products Put Data Centers at Risk

Multiple security flaws affecting Dataprobe's iBoot Power Distribution Unit (PDU) and CyberPower's PowerPanel Enterprise Data Centre Infrastructure Management (DCIM) platform could potentially be used to gain unauthorised access to these systems and cause irreparable harm to target environments. The nine vulnerabilities, with severity levels ranging from 6.7 to 9.8, from CVE-2023-3259 to CVE-2023-3267, give threat actors the ability to shut down entire data centres, compromise data centre deployments, steal data, or carry out large-scale assaults. According to a report published with The Hacker News by Trellix security experts Sam Quinn, Jesse Chick, and Philippe Laulheret, "An attacker could chain these vulnerabilities together to gain full access to these systems read more Multipl...
India Passes New Digital Personal Data Protection Bill (DPDPB) Putting Users’ Privacy First
News

India Passes New Digital Personal Data Protection Bill (DPDPB) Putting Users’ Privacy First

Following its unanimous passage by both chambers of parliament last week, the Digital Personal Data Protection Bill (DPDPB) received the assent of Indian President Droupadi Murmu on Friday, signalling a significant advancement in the protection of individuals' personal information. The Indian government stated that the bill "allows for the processing of digital personal data in a manner that recognises both the rights of the individuals to protect their personal data and the need to process such personal data for lawful purposes and for matters connected therewith or incidental thereto." Months after the Ministry of Electronics and Information Technology (MeitY) published a draught of the bill in November 2022, the long-awaited data protection law has finally been passed read more I...
Encryption Flaws in Popular Chinese Language App Put Users’ Typed Data at Risk
News

Encryption Flaws in Popular Chinese Language App Put Users’ Typed Data at Risk

A popular Chinese language input tool for Windows and Android has been discovered to have major security weaknesses that could allow a hostile intruder to understand the text inputted by users. The findings come from the University of Toronto's Citizen Lab, which examined the encryption algorithm used in Tencent's Sogou Input Method, an app with over 455 million monthly active users on Windows, Android, and iOS. The flaws are in EncryptWall, the service's own encryption mechanism, and allow network eavesdroppers to extract textual content and get access to sensitive data read more Encryption Flaws in Popular Chinese Language App Put Users' Typed Data at Risk. Stay informed with the best cybersecurity news and raise your cybersecurity awareness with our comprehensive coverage of t...
Swedish Data Protection Authority Warns Companies Against Google Analytics Use
News

Swedish Data Protection Authority Warns Companies Against Google Analytics Use

Following similar actions taken by Austria, France, and Italy last year, the Swedish data protection agency has advised businesses against using Google Analytics due to concerns associated with American government spying. The development follows an audit that the Swedish Authority for Privacy Protection (IMY) conducted on behalf of the four businesses CDON, Coop, Dagens Industri, and Tele2. "In its audits, IMY considers that the data transferred to the U.S. via Google's statistics tool is personal data because the data can be linked with other unique data that is transferred read more Swedish Data Protection Authority Warns Companies Against Google Analytics Use. Stay one step ahead of cyber threats with ReconBee.com. Explore our comprehensive coverage of recent cyber attacks, cy...
US Patent and Trademark Office data leak exposed 61K private addresses
News

US Patent and Trademark Office data leak exposed 61K private addresses

The U.S. Patent and Trademark Office admitted on Thursday that a year-long data leak between February 2020 and March 2023 unintentionally revealed 61,000 applicants' private addresses for trademarks. The trademark office said that the issue was completely resolved on April 1 and that no data had been misused. The data leak, according to the trademark office, only affected roughly 3% of all trademark applications submitted during the course of the three-year period. The Department's Senior Agency Official for Privacy and its Enterprise Security Operations Centre were notified as soon as the data exposure was made known by the USPTO, and they in turn informed the Department of Homeland Security. As you are aware, the USPTO also informed those who were exposed about the situation in an...
Pornhub accused of illegal data collection in Europe
News

Pornhub accused of illegal data collection in Europe

In Italy, Pornhub has been accused of gathering and disclosing user data regarding their sexual preferences to unidentified third parties. According to the complaint, Pornhub violates the EU's General Data Protection Regulation (GDPR) by improperly processing users' personal data and disclosing it to unnamed third parties. The complaint was submitted to the Italian data protection authorities on Thursday, June 29. According to Alessandro Polidoro, lead attorney for the lawsuit filed by activist organisation StopDataPorn, "Platforms like Pornhub are hoarding information about everyone's sexual orientation and trading it with business partners for a profit read more Pornhub accused of illegal data collection in Europe. Stay one step ahead of cyber threats with ReconBee.com. Explore...
Data breach at Idaho Department of Health and Welfare
News

Data breach at Idaho Department of Health and Welfare

A data breach to their systems was reported on April 18 by the Idaho Department of Health and Welfare (DHW). A person who had access to a Medicaid healthcare provider's payment account may have revealed the names, member identification numbers, dates of services, and billing codes of 2,501 Medicaid recipients. According to DHW, there is currently no proof that any information has been used. However, anyone who might have been impacted should have received mail notification on June 9 and have been provided with free identity theft protection and a year of credit monitoring. Protecting the personal health and financial information for the people we serve and those we work with is critical," DHW Director Dave Jeppesen stated read more Data breach at Idaho Department of Health and Welfa...
University of Manchester Suffers Suspected Data Breach During Cyber Incident
News

University of Manchester Suffers Suspected Data Breach During Cyber Incident

The University of Manchester has revealed in a statement released on June 9, 2023, that it has experienced a cyber-incident that most likely led to data being acquired by the attackers. Patrick Hackett, the University of Manchester's director of operations, acknowledged in the post that "some of our systems have been accessed by an unauthorized party and data have likely been copied." The attack was discovered on June 6, earlier this week. Hackett stated that in order to rectify the situation and determine what data has been accessed, the UK university is currently collaborating with internal experts and outside support read more University of Manchester Suffers Suspected Data Breach During Cyber Incident. Stay one step ahead of cyber threats with ReconBee.com. Explore our compre...
California workforce platform leaks drivers licenses and medical records
News

California workforce platform leaks drivers licenses and medical records

A personnel management software called Prosperix in the US has exposed about 250,000 data. Sensitive information about job applicants, including home addresses and phone numbers, was compromised. Formerly known as Crowdstaffing, Prosperix describes itself as a "workforce innovation" firm that creates software tools to help companies hire "extraordinary" employees. It cites the companies that have confidence in the company as KPMG, Walmart, NBCUniversal, and Avon. A misconfigured Amazon AWS bucket was uncovered on May 1st by the Cybernews research team. Approximately 250,000 files were exposed as a result of the misconfiguration read more California workforce platform leaks drivers licenses and medical records. Stay one step ahead of cyber threats with ReconBee.com. Explore our co...