Dissent Doe  

@PogoWasRight@infosec.exchange
2.8K Followers
1.2K Following
1.7K Posts

Blogger/journalist at databreaches.net and pogowasright.org. As a retired healthcare professional, breaches in the healthcare sector are my priority.

The header pic is Indy, a Siberian husky we rescued in 2016 after I read how nobody wanted her because she was so difficult. She is now living her best life and is a mushball with me. My avatar is her co-conspirator, Senna. We rescued him from the town shelter in 2018. He is named for the #F1 #GOAT.

#DataBreacheshttps://www.databreaches.net
#Privacyhttps://www.pogowasright.org
Have a news tip?Signal: +1-516-776-7756
EmailBreaches@DataBreaches.net
EmailBreaches@protonmail.ch
PronounsShe/Her

NEW by me:

Plastic surgeons often store nude photos of patients with their identity information. When would we call that “negligent?”

Defense counsel for Hankins & Sohn claims that the attack they experienced in February 2023 was "unforeseeable." Was it really?

https://databreaches.net/2025/06/14/plastic-surgeons-often-store-nude-photos-of-patients-with-their-identity-information-when-would-we-call-that-negligent/

#HealthSec #databreach #extortion #HIPAA #cybersecurity #infosecurity #phishing

Exclusive: Gunra claims to have stolen 20TB of information from the liquor company Varela Hermanos, demanded a $7 million ransom, which the company refused to pay.

more details:

https://www.security-chu.com/2025/06/gunra-filtra-los-datos-de-Varela-Hermanos-Dark-Web.html

#ransomware #gunra #cyberattack #Cybersecurity #Panama #LATAM #ciberseguridad #noticias #news
#infosec

Update:Gunra Filtra los datos en la Dark Web de la licorera Varela Hermanos - Panamá

Ciberseguridad-Noticias- Latinoamérica: Gunra afirma que robó 20TB de información

School Districts Unaware BoardDocs Software Published Their Private Files

Company said it notified customers nationwide after a tech glitch exposed confidential data, but multiple districts said they knew nothing about it.

Help, please:

If anyone has a copy of the ransom note sent to PowerSchool in December 2024 or PowerSchool clients in May 2025, please email me a copy or upload it to me on Signal. I want to see not only the body, but the full header and signature.

PowerSchool has not been transparent about the extortion aspects of the incident and has not responded to inquiries.

To reach me on Signal, my number is +1 516-776-7756. Email: breaches@databreaches[.]net

#databreach #extortion #ransom #PowerSchool

@douglevin @funnymonkey @mkeierleber

Bruce Schneier testified before the House Committee on Oversight and Government Reform at a hearing titled “The Federal Government in the Age of Artificial Intelligence.”

"I was asked by the Democrats to specifically talk about DOGE and the risks of exfiltrating our data from government agencies and feeding it into AIs."

His written testimony is at https://oversight.house.gov/wp-content/uploads/2025/06/Schneier-Written-Testimony.pdf

The YouTube video of the hearing is at https://www.youtube.com/watch?v=wKkk-uWi7HM (his opening statement is at around 1:14:40). He really rips into DOGE and the harm they have already done each and every one of us because security protections were bypassed.

Of course, the hearing became politicized, but I wish more people would consider his testimony.

#AI #ArtificialIntelligence #DOGE

Jackson Health System has disclosed another insider-wrongdoing breach. This one affected about 2000 patients. The employee's motivation was reportedly related to boosting their personal healthcare business.

In their notice, JHS tries to portray themself as a victim. That didn't go over too well with me, as this is not the first time they have had a long-running insider wrongdoing breach.

In 2019, they settled HHS OCR charges after three breaches -- one of which involved insider wrongdoing over 5 years that affected 24k patients. There was no corrective action plan as part of the settlement. Perhaps there should have been?

Read more:
https://databreaches.net/2025/06/07/data-breach-of-patient-info-ends-in-firing-of-miami-hospital-employee/

#databreach #healthsec #insiderthreat #HIPAA #SecurityRule #insiderwrongdoing

Germany fines Vodafone $51 million for privacy, security breaches

The German data protection authority (BfDI) has fined Vodafone GmbH, the telecommunications company's German subsidiary, €45 million ($51.4 million) for privacy and security violations.

BleepingComputer