Sunday, February 18, 2024

Bank of America Data Breach 17-Feb-2024

 Data breach notification filed in Maine. Persons affected used Bank of America's deferred compensation plans. 

The breach occurred at Infosys McCamish Systems.

“It is unlikely that we will be able to determine with certainty what personal information was accessed as a result of this incident at IMS.

According to our records, deferred compensation plan information may have included your first and last name, address, business email address, date of birth, Social Security number, and other account information.”

Friday, February 16, 2024

Williamson County reporting data breach.

 WILLIAMSON COUNTY, Texas — Central Texas residents are being warned about a data breach that happened in 2022.

Officials said they discovered during an investigation that an unauthorized user gained access to an email account with a member of the 277th District Court in Williamson County, who then may have seen or taken certain information.

According to officials, certain people who interacted with the court on or before Nov. 10, 2022, may have their personal information impacted.

Sensitive information impacted varies by person but county officials said it could include names, addresses, Social Security numbers, and more. Officials also said they conducted a review of the attack and plan to reach out to those who may have been affected.

Cybersecurity experts said these types of attacks are not only happening more often but that government entities like Williamson County are also increasingly becoming the target of such attacks.

"Especially for the data that they have, we see that for multiple reasons," Mitchem Boles said. "But any type of data that's taken, according to Verizon's data breach investigation report from last year, 97% of those malicious actors are motivated by financial gain."

Boles also said these types of attacks can be accessed through emails easily when it comes to scam links and phishing fraud across the internet. He also says government agencies are seemingly being attacked more frequently.

"Because of older infrastructure. They're underfunded. They don't necessarily have the protections in place for their data, for their emails and for their users," said Boles. "We know that these kinds of attacks will only increase really in number and sophistication into 2024. So we don't see it slowing down."

KVUE reached out to Williamson County officials for more information, but we were told that no interviews would be conducted at this time.

What to do if you think you were affected

If you think your identity has been stolen, you can place a credit freeze to stop anyone from creating a new credit account in your name.

The freeze can be placed by contacting any of the three major credit reporting agencies: Equifax, Experian or TransUnion. The request can be submitted online, by phone, or by mail.


UPDATE: reports to the Texas Attorney General's office claim 3,763 person's personal information exposed. 
November 2022. Just now being informed.


Read the notification here.

Thursday, February 8, 2024

iOS 17.3.1 iPadOS 17.3.1 Sonoma 14.3.1 watchOS 10.3.1 visionOS 10.3.1 Updates released 8-Feb-2024

  Updates to fix bug of text may overlap while typing.

And the potential security related issues. The tell, updates to Sonoma and Safari to 17.3 on older Macs and iPads.

Sunday, February 4, 2024

AT&T adding SPAM Detect Feature

 AT&T is starting to provide TruContact Branded Call Display.

A feature in partnership with TransUnion. The delivery to cell customers uses STIR/SHAKEN protocol to authenticate callers.
Callers need to register with TransUnion.

 The incoming calls should display the companies logo, name, phone number and valid number.

 The STIR/SHAKEN protocol uses asymmetric cryptography to validate the information displayed.

 Only a very few companies are using TruContact Branded Call Display currently.