December 2022

BankInfoSecurity.com reported about Twitter “the uptime problems come amid ongoing concerns about the long-term security of Twitter’s systems – and user data privacy – following last month’s mass layoffs at the company, which included an exodus of cybersecurity staff.”  The December 29, 2022 report entitled “As Twitter Downplays Outage, Security

Continue Reading Cyberattack at Twitter blamed on lack of security staff or what?

HomeLandPrepNews.com reported that “the House as a bipartisan, bicameral push to make federal agencies more proactive on cybersecurity protections. Much of the onus would be on the Office of Management and Budget (OMB), though, to prioritize the acquisition and migration of federal agencies’ information technology to post-quantum cryptography, as well

Continue Reading Are you ready the new Quantum Computing Cybersecurity Preparedness Act?

GovInfoSecurity.com reported  “A hacking group the Ukrainian government says is a unit of Russian intelligence attempted earlier this year to compromise a large petroleum refining company based inside a NATO member, new research charges.” A December 20, 2022 report entitled “Russian Hackers Targeted Oil Refinery Firm in NATO Country” (

Continue Reading Russians cyber attacks target a NATO petroleum refinery!

DarkReading.com reported that Microsoft issued a report about “this new botnet is used to launch distributed denial-of-service (DDoS) attacks on Minecraft servers, which might sound like kid stuff. But enterprises should take note because of the botnet’s ability to target both Windows and Linux devices, spread quickly, and avoid detection, the Microsoft

Continue Reading Watch out for DDoS on Minecraft servers!

HealthCareInfoSecurity.com reported “Federal regulators slapped a California dental practice with a $23,000 fine and corrective action plan after its owner responded to negative Yelp reviews by posting patient data online.”  The December 14, 2022 article entitled “Dental Practice Hit With HIPAA Fine for Posting PHI on Yelp” (https://tinyurl.com/2p9b4acn)

Continue Reading Yelp postings leads to an OCR fine for posting PHI and violating HIPAA!

BankInfoSecurity.com reported that “U.S. federal law enforcement arrested four members of a business email conspiracy and credit card fraud ring, alleging they collectively tricked legitimate businesses into enriching them by $9.2 million.”  The December 9, 2022 report entitled “US Law Enforcement Arrests 4 for Business Email Compromise” (https://tinyurl.com/wsfb39vj)

Continue Reading Business Email Compromise (BEC or Spearphishing) continues to grow!

HelpNetSecurity.com reported that Rackspace disclosed that “on Friday, December 2nd, 2022, we became aware of suspicious activity and immediately took proactive measures to isolate the Hosted Exchange environment to contain the incident. We have since determined this suspicious activity was the result of a ransomware incident,…”  The December 6, 2022

Continue Reading Ransomware attack caused Rackspace outage!

HealthInfoSecurity.com reported “Federal regulators warned healthcare entities over commercial web traffic trackers embedded into patient portals, saying their use may violate patient privacy law.”  The December 1, 2022 report entitled ” HHS: Web Trackers in Patient Portals Violate HIPAA” (https://tinyurl.com/y4fdbpfk) included these comments:

A Department of Health and

Continue Reading Are your web trackers violating HIPAA?