Industry Intel

Compliance & Security News

Data breaches, regulatory enforcement, AI governance updates, and compliance industry developments — updated every 6 hours.

Breach & EnforcementRegulatoryAI Governance
RegulatoryHIPAA Journal2d ago

Settlement Agreed to Resolve Class Action Data Breach Litigation Against Concord Orthopaedics

Concord Orthopaedics Professional Association, a New Hampshire-based provider of comprehensive orthopedic and rheumatology care, has settled a consolidated class action […] The post Settlement...

RegulatoryHIPAA Journal3d ago

OrthopedicsNY Settles Class Action Data Breach Lawsuit for $1.45M

A $1,450,000 settlement has been agreed upon to resolve a class action lawsuit against the New York orthopedic medicine and […] The post OrthopedicsNY Settles Class Action Data Breach Lawsuit...

Breach & EnforcementBleeping Computer19h ago

Over 20,000 crypto fraud victims identified in international crackdown

An international law enforcement action led by the U.K.'s National Crime Agency (NCA) has identified over 20,000 victims of cryptocurrency fraud across Canada, the United Kingdom, and the United...

Breach & EnforcementThe Record1d ago

UK says it exposed Russian submarine activity near undersea cables

A Russian attack submarine and vessels from the country’s Main Directorate of Deep Sea Research (GUGI) were involved in what the UK Ministry of Defence called “nefarious activity over critical...

RegulatoryHIPAA Journal1d ago

February 2026 Healthcare Data Breach Report

In February 2026, 63 data breaches were reported to the Department of Health and Human Services (HHS) Office for Civil […] The post February 2026 Healthcare Data Breach Report appeared first on...

Breach & EnforcementBleeping Computer2d ago

New ‘LucidRook’ malware used in targeted attacks on NGOs, universities

A new Lua-based malware, called LucidRook, is being used in spear-phishing campaigns targeting non-governmental organizations and universities in Taiwan. [...]

Breach & EnforcementBleeping Computer2d ago

New VENOM phishing attacks steal senior executives' Microsoft logins

Threat actors using a previously undocumented phishing-as-a-service (PhaaS) platform called "VENOM" are targeting credentials of C-suite executives across multiple industries. [...]

Breach & EnforcementBleeping Computer2d ago

Healthcare IT solutions provider ChipSoft hit by ransomware attack

Dutch healthcare software vendor ChipSoft has been impacted by a ransomware attack that forced the company to take offline its website and digital services for patients and healthcare providers. [...]

Breach & EnforcementBleeping Computer2d ago

When attackers already have the keys, MFA is just another door to open

Stolen credentials turn authentication systems into the attack surface. Token shows how wearable biometric authentication verifies the user—not the session—blocking phishing relays and MFA bypass....

Breach & EnforcementBleeping Computer2d ago

Eurail says December data breach impacts 300,000 individuals

Eurail B.V., a European travel operator that provides digital passes covering 33 national railways, says attackers stole the personal information of over 300,000 individuals in a December 2025 data...

RegulatoryHIPAA Journal2d ago

Data Breaches Announced by Neinstein Plastic Surgery; Atlantic Brain and Spine

Neinstein Plastic Surgery in New York and Atlantic Brain and Spine in North Carolina have announced security incidents that exposed […] The post Data Breaches Announced by Neinstein Plastic...

RegulatoryHIPAA Journal3d ago

OCR Releases Video on HIPAA Security Rule Risk Management Requirements

Earlier this year, Paula M. Stannard, Director of the Department of Health and Human Services (HHS) Office for Civil Rights […] The post OCR Releases Video on HIPAA Security Rule Risk...

RegulatoryHIPAA Journal3d ago

New Jersey Long Term Care Pharmacy Data Breach Affects 133,800 Patients

The New Jersey long-term care pharmacy Innovative Pharmacy Packaging Corp (IPPC Inc), and the affiliated entities IPPC of New York […] The post New Jersey Long Term Care Pharmacy Data Breach...

RegulatoryHIPAA Journal3d ago

Data Breaches Reported by Southern Illinois Dermatology; Heart South Cardiovascular Group

Patient data has potentially been compromised in data incidents at Southern Illinois Dermatology and Heart South Cardiovascular Group in Alabama. […] The post Data Breaches Reported by Southern...

RegulatoryHIPAA Journal4d ago

Woodfords Family Services Data Breach Affected Almost 42,000 Individuals

Legal counsel for Woodfords Family Services has provided an updated breach notice to the Maine Attorney General, confirming that more […] The post Woodfords Family Services Data Breach Affected...

Breach & EnforcementKrebs on Security6d ago

Germany Doxes “UNKN,” Head of RU Ransomware Gangs REvil, GandCrab

An elusive hacker who went by the handle "UNKN" and ran the early Russian ransomware groups GandCrab and REvil now has a name and a face. Authorities in Germany say 31-year-old Russian Daniil...

Breach & EnforcementKrebs on SecurityMar 23, 2026

‘CanisterWorm’ Springs Wiper Attack Targeting Iran

A financially motivated data theft and extortion group is attempting to inject itself into the Iran war, unleashing a worm that spreads through poorly secured cloud services and wipes data on...

Breach & EnforcementKrebs on SecurityFeb 28, 2026

Who is the Kimwolf Botmaster “Dort”?

In early January 2026, KrebsOnSecurity revealed how a security researcher disclosed a vulnerability that was used to assemble Kimwolf, the world's largest and most disruptive botnet. Since then, the...

Breach & EnforcementKrebs on SecurityFeb 20, 2026

‘Starkiller’ Phishing Service Proxies Real Login Pages, MFA

Most phishing websites are little more than static copies of login pages for popular online destinations, and they are often quickly taken down by anti-abuse activists and security firms. But a...

RegulatoryCISAJan 8, 2026

CISA Retires Ten Emergency Directives, Marking an Era in Federal Cybersecurity

Don't wait for a breach to prioritize compliance.

Every headline above is a company that didn't act in time. Schedule a scoping call — 30 minutes to know exactly where you stand.

Schedule a scoping call →