{"id":29607,"date":"2020-01-23T15:57:30","date_gmt":"2020-01-23T22:57:30","guid":{"rendered":"https://www.webroot.com/blog/?p=29607"},"modified":"2020-01-23T15:57:31","modified_gmt":"2020-01-23T22:57:31","slug":"cyber-news-rundown-cannabis-user-data-breach","status":"publish","type":"post","link":"https://www.webroot.com/blog/2020\/01\/23\/cyber-news-rundown-cannabis-user-data-breach\/","title":{"rendered":"Cyber News Rundown: Cannabis User Data Breach"},"content":{"rendered":"\n<h2>Point-of-Sale Breach Targets U.S. Cannabis Industry<\/h2>\n\n\n\n<p>Late last month, researchers discovered a database owned by\nthe company <a href=\"https:\/\/www.zdnet.com\/article\/data-leak-strikes-us-cannabis-users-sensitive-information-exposed\/\">THSuite<\/a> that appeared to contain information belonging to\nroughly 30,000 cannabis customers in the U.S. With no authentication, the\nresearchers were able to find contact information as well as cannabis purchase\nreceipts, including price and quantity, and even scanned copies of employee and\ngovernment IDs. Though many of the records were for recreational users, medical\npatients were also involved in the breach, which could prompt additional investigations\nregarding HIPAA violations.<\/p>\n\n\n\n<h2>Ransomware Attack Shuts Down Florida Libraries<\/h2>\n\n\n\n<p>At least 600 computers belonging to the <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/600-computers-taken-down-after-florida-library-cyberattack\/\">library\nsystem<\/a> of Volusia County, Florida were taken offline after falling victim\nto an unconfirmed ransomware attack. While the libraries were able to get 50\ncomputers back up and running, many of their core functionalities are still\noffline for the time being. Though officials still have not confirmed that\nransomware was the cause of the shutdown, the attack is similar to ones\ntargeting multiple California libraries less than a week earlier.<\/p>\n\n\n\n<h2>UK Government Allows Gambling Firms Access to Children\u2019s Data<\/h2>\n\n\n\n<p>The Information Commissioner\u2019s Office (ICO) was recently\ninformed of a <a href=\"https:\/\/www.infosecurity-magazine.com\/news\/uk-gov-database-leak\/\">data breach<\/a>\nthat could affect nearly 28 million students in the UK. A gambling firm was\napparently given access to a Department for Education database by a third-party\nvendor to complete age and ID verification, though it is unclear just how much\ninformation they were gathering. Both firms and the Department for Education\nhave begun examining this breach to determine if this requires a full GDPR\ninvestigation.<\/p>\n\n\n\n<h2>International Law Enforcement Efforts Take Down Breach Dealer Site<\/h2>\n\n\n\n<p>In a combined effort from multiple <a href=\"https:\/\/arstechnica.com\/information-technology\/2020\/01\/fbi-partners-sieze-breach-data-marketplace-alleged-operators-arrested\/\">law\nenforcement<\/a> agencies in the U.S. and Europe, two individuals who operated a\nsite that sold login credentials from thousands of data breaches were arrested.\nImmediately following the arrests, the domain for WeLeakInfo was taken down and\nall related computers were seized by police, who then promptly put up an\nofficial press release and request for any additional info on the site or\nowners. WeLeakInfo, which boasted access to over 12 billion records, was\noriginally hosted by a Canadian company, but was quick to employ Cloudflare to\ncontinue their nefarious dealings privately. <\/p>\n\n\n\n<h2>UPS Store Exposes Customer Data<\/h2>\n\n\n\n<p>Roughly <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/ups-store-phishing-incident-exposes-customer-personal-info\/\">100\nUPS Stores<\/a> across the U.S. fell victim to a phishing attack that compromised\nsensitive customer information over the last four months. This incident stems\nfrom a malicious phishing attack that allowed some individuals to compromise store\nemail accounts, which then allowed access to any documents that had been\nexchanged between the accounts and customers, from passports and IDs to\nfinancial info. Fortunately, UPS has already begun contacting affected\ncustomers and is offering two years of credit and identity monitoring. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Point-of-Sale Breach Targets U.S. Cannabis Industry Late last month, researchers discovered a database owned by the company THSuite that appeared to contain information belonging to roughly 30,000 cannabis customers in the U.S. With no authentication, the researchers were able to find contact information as well as cannabis purchase receipts, including price and quantity, and even [&hellip;]<\/p>\n","protected":false},"author":47,"featured_media":29609,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[3005],"tags":[22457,21944],"yst_prominent_words":[],"acf":[],"_links":{"self":[{"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/posts\/29607"}],"collection":[{"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/users\/47"}],"replies":[{"embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/comments?post=29607"}],"version-history":[{"count":1,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/posts\/29607\/revisions"}],"predecessor-version":[{"id":29611,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/posts\/29607\/revisions\/29611"}],"wp:featuredmedia":[{"embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/media\/29609"}],"wp:attachment":[{"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/media?parent=29607"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/categories?post=29607"},{"taxonomy":"post_tag","embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/tags?post=29607"},{"taxonomy":"yst_prominent_words","embeddable":true,"href":"https://www.webroot.com/blog/wp-json\/wp\/v2\/yst_prominent_words?post=29607"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}