Gov Info Security

UK Labels Data Centers as Critical National Infrastructure

The UK government has classified data centers as critical national infrastructure, recognizing their importance for society's functioning. The move aims to protect sensitive user data from cyberattacks.

Fortinet Acquires Unicorn Lacework to Enhance Cloud Security

The acquisition comes after reports that rival Wiz had been planning to purchase Lacework for a significantly lower amount. The deal is expected to close in the second half of 2024.

Transcend Gets $40M to Advance Privacy Tech for Enterprises

Transcend said the $40 million investment will encode privacy controls directly into business systems and address the full personal data privacy life cycle from discovery and classification to responding to data deletion and access requests.

HHS Beefs Up Privacy Protection for Reproductive Health Info

Doctors, clinics and other providers are prohibited from disclosing protected health information related to lawful reproductive healthcare, according to a final rule released Monday by federal regulators to "strengthen" HIPAA privacy.

Feds Issue Guide for Change Health Breach Reporting Duties

HHS' Office for Civil Rights in new "frequently asked questions" guidance issued Friday night said it has not yet received breach reports from Change Healthcare, UHG, or any other affected covered entities pertaining to the incident.

Vietnamese Threat Actor Targeting Financial Data Across Asia

Vietnamese financially motivated hackers are targeting businesses across Asia in a campaign to harvest corporate credentials and financial data for resale in online criminal markets.

OMB Issues First Governmentwide AI Risk Mitigation Rules

U.S. federal agencies have until December to implement a series of safeguards that aim to ensure the government is responsibly using artificial intelligence, the White House ordered Thursday.

Medical Device Maker Flags Eight Flaws in Drug Infusion Products

CISA said the BD product vulnerabilities have a "low attack complexity" and that successful exploitation could allow a malicious actor to compromise sensitive data, hijack a session, modify firmware, and make changes to system configurations.

Feds, Medtronic Warn of Flaw in Cardiac Device Data Tool

CISA, in an advisory issued Thursday, said the deserialization of untrusted data vulnerability identified in Medtronic's Paceart Optima, versions 1.11 and earlier, is exploitable remotely and has a low attack complexity.

FTC Makes Moves to Enhance Data Privacy Oversight

The FTC made a few bold moves to ramp up its oversight of data privacy, including an effort to codify sweeping changes to the Health Breach Notification Rule and releasing a policy statement warning of greater scrutiny over the use of biometric data.

Defend Against Threats with Cyber Fusion

Cyware is the leading provider of cyber fusion solutions that power threat intelligence sharing , end-to-end automation and 360-degree threat response.

Trending Tags