Close Menu
TechBrunchTechBrunch
  • Home
  • AI
  • Apps
  • Crypto
  • Security
  • Startups
  • TechCrunch
  • Venture

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

What's Hot

US government bans new foreign-made humanoids, robot dogs and solar power inverters due to national security risks

July 29, 2026

Cyera agrees to acquire Oasis Security for $1 billion to protect burgeoning AI agents

July 29, 2026

PSA: Chats and artifacts shared by Claude may have been uploaded to Google

July 27, 2026
Facebook X (Twitter) Instagram
TechBrunchTechBrunch
  • Home
  • AI

    OpenAI seeks to extend human lifespans with the help of longevity startups

    January 17, 2025

    Farewell to the $200 million woolly mammoth and TikTok

    January 17, 2025

    Nord Security founder launches Nexos.ai to help enterprises move AI projects from pilot to production

    January 17, 2025

    Data proves it remains difficult for startups to raise capital, even though VCs invested $75 billion in the fourth quarter

    January 16, 2025

    Apple suspends AI notification summaries for news after generating false alerts

    January 16, 2025
  • Apps

    Google brings Pixel 6 and new devices to Material3 Expressive, along with other features, to the Pixel 6 and new devices

    September 3, 2025

    Google's NoteBookLM now allows you to customize the tone of your AI podcasts

    September 3, 2025

    Roblox expands the use of age estimation techniques and introduces standardized assessments

    September 3, 2025

    Instagram finally launches the iPad app

    September 3, 2025

    Complete the 2025 Confusion Builder Stage Agenda with the Maximum Scaling Voice

    September 3, 2025
  • Crypto

    Sam Altman's biometrics startup World raises $52.5 million in crypto sales

    July 24, 2026

    Trump Meme Coin Investors Lost $3.8 Billion, Analysis Finds

    July 5, 2026

    Venice AI becomes unicorn with $65M Series A as privacy-first AI platform takes off

    July 1, 2026

    Disrupt 2026 Builders Stage Agenda Revealed

    July 1, 2026

    Crypto exchange OKX wants to hire AI agents and pay each other

    June 30, 2026
  • Security

    US government bans new foreign-made humanoids, robot dogs and solar power inverters due to national security risks

    July 29, 2026

    Cyera agrees to acquire Oasis Security for $1 billion to protect burgeoning AI agents

    July 29, 2026

    PSA: Chats and artifacts shared by Claude may have been uploaded to Google

    July 27, 2026

    Microsoft unveils first cybersecurity model and new agent cybersecurity system

    July 27, 2026

    Hugface CEO calls for 'radical transparency' after 'unprecedented' OpenAI hack

    July 26, 2026
  • Startups

    7 days left: Founders and VCs save over $300 on all stage passes

    March 24, 2025

    AI chip startup Furiosaai reportedly rejecting $800 million acquisition offer from Meta

    March 24, 2025

    20 Hottest Open Source Startups of 2024

    March 22, 2025

    Andrill may build a weapons factory in the UK

    March 21, 2025

    Startup Weekly: Wiz bets paid off at M&A Rich Week

    March 21, 2025
  • TechCrunch

    OpenSea takes a long-term view with a focus on UX despite NFT sales remaining low

    February 8, 2024

    AI will save software companies' growth dreams

    February 8, 2024

    B2B and B2C are not about who buys, but how you sell

    February 5, 2024

    It's time for venture capital to break away from fast fashion

    February 3, 2024

    a16z's Chris Dixon believes it's time to focus on blockchain use cases rather than speculation

    February 2, 2024
  • Venture

    Europe has its own TBPN-style live show and everyone is eyeing a guest spot

    July 27, 2026

    Inside the Founders' House in London, the rules of the Founders' House are rewritten.

    July 26, 2026

    Elon Musk's Boring Company is reportedly raising money at a valuation of $20 billion

    July 25, 2026

    Edtech platform raises $4.5 million to teach code vibrations to students

    July 23, 2026

    Travis Kalanick's robotics company raises $1.7 billion led by a16z

    July 22, 2026
TechBrunchTechBrunch

These are the wrong data breaches of 2024

TechBrunchBy TechBrunchDecember 26, 20248 Mins Read
Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
Share
Facebook Twitter LinkedIn Pinterest Telegram Email


Over the past few years, TechCrunch has looked back with anticipation at some of the worst, mishandled data breaches and security incidents. — Other giant companies will take note and avoid the same disasters. To no one's surprise, this year we're listing many of the same bad acts by a whole new class of companies.

23andMe blames users for massive data breach

Last year, genetic testing giant 23andMe lost the genetic and ancestry data of nearly 7 million customers thanks to a data breach in which hackers brute-forced access to thousands of accounts and collected data on millions more. I lost. 23andMe belatedly introduced multi-factor authentication, a security feature that was able to prevent accounts from being hacked.

Within days of the new year, 23andMe tried to shift the blame for a massive data theft onto victims, claiming that users did not adequately protect their accounts. Lawyers representing a group of hundreds of 23andMe users who sued the company after being hacked said the accusations were “nonsense.” Shortly after, British and Canadian authorities announced a joint investigation into last year's 23andMe data breach.

23andMe, along with the vast banks that store customers' genetic data, laid off 40% of its employees later this year as the beleaguered company faces an uncertain financial future. .

Change Healthcare took months to confirm that hackers had stolen most of America's health data

Change Healthcare was a healthcare technology company that few had heard of until a cyberattack brought down its entire network in February of this year. The result was immediate and widespread service outages across the United States, shutting down large portions of the U.S. health care system. Change, owned by health insurance giant UnitedHealth Group, processes billing and insurance for thousands of healthcare providers and practices across the country, processing one-third to half of all U.S. healthcare transactions each year .

The company's response to the hack, which was caused by a breach of basic user accounts due to a lack of multi-factor authentication, was criticized by Americans who were unable to get prescriptions for medication or approval for hospitalization. Ta. Those affected included healthcare workers who went bankrupt as a result of the cyberattack, as well as members of Congress who blasted the company's chief executive officer for the hack during a Congressional hearing in May. Change Healthcare paid the hackers a $22 million ransom, but the federal government has long warned that this only helps cybercriminals profit from cyberattacks. They simply had to pay a new ransom to request deletion of the stolen data.

In the end, it took until October, about seven months later, to discover that more than 100 million people had had their personal health information stolen in a cyberattack. Granted, it must have taken a while because this was by all accounts the biggest healthcare data breach of the year, if not the biggest in history.

Synovis hack disrupts UK health service for months

Earlier this year, London-based pathology service provider Synovis was hit by a ransomware attack in June, causing months of disruption to the NHS. The attack, claimed by the Qilin ransomware group, left patients in south-east London unable to get blood tests from their doctors for more than three months, leading to the cancellation of thousands of outpatient appointments and more than 1,700 surgical procedures. Ta.

In light of the attack, which experts say could have been prevented had two-factor authentication been in place, Britain's main trade union Unite announced that Synovis workers would go on a five-day strike in December. announced that it would be done. Unite said the incident had “a worrying impact on staff who have been forced to work additional hours without access to critical computer systems for several months while we dealt with the attack”. .

The number of patients affected by this incident remains unknown. The Qilin ransomware group claims to have leaked 400 gigabytes of sensitive data allegedly stolen from Synovis, including patient names, health system registration numbers, and blood test descriptions.

Snowflake customer hacks snowball into massive data breaches

Cloud computing giant Snowflake has been at the center of a series of major hacks this year targeting corporate customers including AT&T, Ticketmaster and Santander Bank. The hackers, who were later charged criminally for the break-in, did so using login information stolen by malware found on the computers of employees of companies that relied on Snowflake. Because Snowflake was not required to use multi-factor security, hackers were able to break into and steal the vast databanks stored by hundreds of Snowflake customers and hold the data for ransom.

Snowflake, for its part, said little about the incident at the time, but acknowledged that the breach was caused by a “targeted campaign targeting users who use single-factor authentication.” Snowflake then rolled out multi-factor by default to customers in hopes of avoiding a repeat of the incident.

Columbus, Ohio, charges security researcher for truthfully reporting ransomware attacks

When the city of Columbus, Ohio, reported a cyberattack over the summer, Mayor Andrew Ginther said the stolen city data was “encrypted or corrupted” and could not be used by the hackers who stole it. The move was made to reassure concerned residents. All the while, security researchers who track data breaches on the dark web for their work have discovered that the ransomware team actually accessed residents' data (at least 500,000 people), including their social security numbers and driver's licenses. I found evidence that it was. , including information on arrest records, minors, and survivors of domestic violence. Researchers warned journalists about the mountain of data.

The city successfully obtained an injunction to prevent researchers from sharing evidence of the violations they found, but this was seen as an effort by the city to silence security researchers rather than fix the violations. There is. The city later dropped the lawsuit.

Salt Typhoon hacks phone and internet providers thanks to US backdoor law

Thirty years after hackers known as Salt Typhoons, one of a group of Chinese-backed hackers laying the digital foundations for a potential conflict with the United States, were discovered on networks in some countries. The previous backdoor law was once again all the rage this year. America's largest telephone and internet company. The hackers were found to have accessed real-time phone calls, messages, and communications metadata of U.S. politicians and senior officials, including presidential candidates.

The hackers reportedly infiltrated some of the corporate eavesdropping systems telecom companies were required to install after a law called CALEA was passed in 1994. Now, thanks to continued access to these systems, data collected by carriers is also available. Businesses depend on Americans – The US government is now providing end-to-end encrypted messaging to Americans and older Americans to ensure that no one, including Chinese hackers, can access their private communications. We advise you to use the app.

MoneyGram has not yet disclosed how many people's transaction data was stolen in the data breach.

MoneyGram, the US money transfer giant with more than 50 million customers, was attacked by hackers in September. After customers experienced unexplained outages for several days, the company acknowledged the incident more than a week later, disclosing only an unspecified “cybersecurity issue.” MoneyGram did not say whether customer data had been stolen, but in late September the UK data protection watchdog issued a data breach report showing customer data had been stolen from the US-based company. He told TechCrunch that he had received it.

Weeks later, MoneyGram admitted that hackers had stolen customer data during the cyberattack, including social security numbers, government identification, and transaction information such as the date and amount of each transaction. The company acknowledged that the hackers also stole criminal investigation information for a “limited number” of customers. MoneyGram has not yet disclosed how many customers had their data stolen or directly notified.

57 million customer records leaked online, but the story remains silent

The October breach of US retail giant Hot Topic, which affected 57 million customers, is recorded as one of the largest breaches of retail data in history. However, despite the scale of the breach, Hot Topic has not publicly acknowledged the incident or alerted customers or state attorney general's offices to the breach. The retailer also ignored TechCrunch's multiple requests for comment.

The breach notification site Have I Been Pwned, which obtained a copy of the compromised data, told its nearly 57 million affected customers that the stolen data included email addresses, physical addresses, phone numbers, purchases, and gender. , warned that it contained a date of birth. This data also included partial credit card data, such as credit card type, expiration date, and last four digits of the card number.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

US government bans new foreign-made humanoids, robot dogs and solar power inverters due to national security risks

July 29, 2026

Cyera agrees to acquire Oasis Security for $1 billion to protect burgeoning AI agents

July 29, 2026

PSA: Chats and artifacts shared by Claude may have been uploaded to Google

July 27, 2026

Microsoft unveils first cybersecurity model and new agent cybersecurity system

July 27, 2026

Hugface CEO calls for 'radical transparency' after 'unprecedented' OpenAI hack

July 26, 2026

Hacker who humiliated spyware maker but didn't get caught

July 25, 2026

Leave A Reply Cancel Reply

Top Reviews
Editors Picks

7 days left: Founders and VCs save over $300 on all stage passes

March 24, 2025

AI chip startup Furiosaai reportedly rejecting $800 million acquisition offer from Meta

March 24, 2025

20 Hottest Open Source Startups of 2024

March 22, 2025

Andrill may build a weapons factory in the UK

March 21, 2025
About Us
About Us

Welcome to Tech Brunch, your go-to destination for cutting-edge insights, news, and analysis in the fields of Artificial Intelligence (AI), Cryptocurrency, Technology, and Startups. At Tech Brunch, we are passionate about exploring the latest trends, innovations, and developments shaping the future of these dynamic industries.

Our Picks

US government bans new foreign-made humanoids, robot dogs and solar power inverters due to national security risks

July 29, 2026

Cyera agrees to acquire Oasis Security for $1 billion to protect burgeoning AI agents

July 29, 2026

PSA: Chats and artifacts shared by Claude may have been uploaded to Google

July 27, 2026

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

© 2026 TechBrunch. Designed by TechBrunch.
  • Home
  • About Tech Brunch
  • Advertise with Tech Brunch
  • Contact us
  • DMCA Notice
  • Privacy Policy
  • Terms of Use

Type above and press Enter to search. Press Esc to cancel.