• Top legal firm specializing in data breaches...hit by data breach

    From TechnologyDaily@1337:1/100 to All on Fri Jan 5 16:00:05 2024
    Top legal firm specializing in data breaches...hit by data breach

    Date:
    Fri, 05 Jan 2024 15:57:12 +0000

    Description:
    Hundreds of thousands of people affected as hackers steal personal and
    payment data from Orrick, Herrington & Sutcliffe.

    FULL STORY ======================================================================

    A top legal firm that specializes in helping other organizations in the aftermath of a data breach has ironically suffered one such incident itself.

    Orrick, Herrington & Sutcliffe has sent out a breach notification letter to affected individuals, confirming it had been the victim of an intrusion that happened in March 2023.

    Usually, the company helps other victims remain compliant with state laws and regulations regarding data management, privacy, and communication. Among
    other things, the company collects victim information and uses it to notify state authorities. Missing key details

    It was this very data that the hackers made away with. Orrick claims threat actors stole peoples names, birth dates, postal and email addresses, Social Security Numbers (SSN), drivers license numbers, and tax identification numbers. Furthermore, online account credentials, as well as credit and debit card numbers, were also taken.

    Finally, hackers took data on medical treatment and diagnosis, insurance claims, insurance numbers, and more.

    The victims include people with vision plans at EyeMed Vision Care, dental plans with Delta Dental, as well as those using MultiPlan, Beacon Health Options, and the U.S. Small Business Administration. In total, at least 637,000 people were affected.

    Despite the large scale of the incident, some important details remain omitted. For example, we dont know who the threat actors are, or how they infiltrated the companys infrastructure (via malware , or social engineering, for example). We also dont know if this was a ransomware attack and, if so, what the demands are, and whether the company plans on paying them or not.

    Issuing a statement to TechCrunch, Orrick spokesperson Jolie Goldstein said: We regret the inconvenience and distraction that this malicious incident caused. We made it our priority to resolve it as quickly as possible for our clients, the individuals whose data was impacted, and our team.

    Via TechCrunch More from TechRadar Pro Microsoft inches closer to glass storage breakthrough that could finally make ransomware attacks impossible in the data center and hyperscalers but only Azure customers will benefit from Here's a list of the best firewalls today These are the best endpoint protection services right now



    ======================================================================
    Link to news story: https://www.techradar.com/pro/security/top-legal-firm-specializing-in-data-bre acheshit-by-data-breach


    --- Mystic BBS v1.12 A47 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)