article thumbnail

CafePress faces $500,000 fine for data breach cover up

Malwarebytes

The US Federal Trade Commission (FTC) has announced that it took action against online customized merchandise platform CafePress over allegations that it failed to secure consumers’ sensitive personal data and covered up a major breach. In February 2019, a threat actor was able to access millions of email addresses and passwords.

article thumbnail

New IoT Security Regulations

Schneier on Security

It falls upon lawmakers to create laws that protect consumers. While the US government is largely absent in this area of consumer protection, the state of California has recently stepped in and started regulating the Internet of Things, or "IoT" devices sold in the state­and the effects will soon be felt worldwide.

IoT 227
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Advice for manufacturers on the coming PSTI regulation

Pen Test Partners

Security requirements unpacked The regulations lay down explicit security mandates, from unique product passwords to transparent reporting mechanisms for security issues, alongside clear directives on security update commitments. Each product must either have a unique password or allow the user to set a secure password upon initial setup.

article thumbnail

It’s a Holiday Security Breach Blowout

SiteLock

The first notification I received was from a large federal organization which, ironically, handles the security investigations for government clearances. Thankfully, we understand how the breaches may have occurred and how to protect ourselves, which I will share with you now. A good strategy to reduce the risk of a breach three-fold.

article thumbnail

Scary Fraud Ensues When ID Theft & Usury Collide

Krebs on Security

Although he didn’t technically have an account with MSF, their authentication system is based on email addresses, so Jim requested that a password reset link be sent to his email address. MSF said the personal information involved in this incident may have included name, date of birth, government-issued identification numbers (e.g.,

article thumbnail

MY TAKE: Why Satya Nadella is wise to align with privacy advocates on regulating facial recognition

The Last Watchdog

The surveillance regime the UK government has built seriously undermines our freedom,” Megan Golding, a lawyer speaking for privacy advocates, stated. We’re talking about an enormously powerful surveillance capability that no government has ever had in the history of humanity,” Stanley says. Secure credentialing. Marquez, the Robbie.AI

article thumbnail

Common Holiday Scams and How to Avoid Them

Identity IQ

To verify the legitimacy of a charity , you can research its website and look for outside assessments from third-party charity reviewers and government websites. Stay informed and aware: Keep yourself updated on the latest holiday scams and trends by reading reputable blogs , news sources, and consumer protection websites.

Scams 52