Wat betekent de meldplicht datalekken voor jouw site?

1 januari is de wet meldplicht datalekken ingegaan. Dit is een belangrijke wetswijziging voor iedereen die met persoonsgegevens werkt, en dus ook voor jou als beheerder van een website of webshop. Sinds 1 januari ben je namelijk verplicht om een melding te doen bij een datalek én kan het AP (Autoriteit Persoonsgegevens, het voormalige College […]

Lees meer

Evernote Saw First Signs Of Hacking On Feb. 28: Emails, Passwords And Usernames Accessed But Not Your Data Or Payment Details

evernoteEvernote is requiring its nearly 50 million users to reset their passwords after the popular personal note-taking app became the latest high-profile victim of wide-scale hacking attempts. The breach follows malicious activity at Twitter, Facebook and others in recent weeks.

Lees meer

European Cyber Security Agency ENISA Names Drive-By Exploits The Biggest Threat, Spam On The Decline

driving odometerENISA, the European Network and Information Security Agency, today called out drive-by exploits as the biggest, most increasing threat of the moment in the Internet landscape, amongst a sea of other all-too-familiar issues like worms, phishing and botnets. Spam, one of the oldest and most annoying aspects of being online, is the only threat that is on the wane, according to ENISA’s Threat Landscape report out today.

Lees meer

Dropbox Reports User Accounts Were Hijacked, Adds New Security Features

dropbox-logoSeveral weeks ago, reports started to trickle out that a number of Dropbox users were under attack from spam. Since then, Dropbox has been investigating those attacks (with some help from a third-party) and today gave the first update on the progress, saying that some accounts were indeed accessed by hackers, but that it is now adding two-factor authentication and other security features to prevent further problems.

For some background: On July 17th, a number of Dropbox users begun noticing an increase in the level spam attacking their accounts. As Sarah reported at the time, the red flag appeared when users begun reporting that the email accounts receiving spam were in fact only tied to their Dropbox accounts, which indicated that the address leak had come from Dropbox itself. Many of those reports came from the company’s international users, including Germany, the U.K. and the Netherlands.

Lees meer

Yahoo Confirms, Apologizes For The Email Hack, Says Still Fixing. Plus, Check If You Were Impacted (Non-Yahoo Accounts Apply)

yahoo-logoThere are still a lot of questions about this alleged Yahoo Voices data breach — including whether there was a reason behind the breach in the first place — but Yahoo has now officially confirmed that the data did in fact come from its servers, and that “approximately” 400,000 email addresses and passwords have been leaked in plain text online. Meanwhile, security specialists are now parsing the data and one has created a script to check if your email address (which doesn’t have to be a @yahoo.com address) is among those exposed.

In a statement in which it apologizes for the attack, Yahoo tells us that the data came from an older file from the Yahoo! Contributor Network (which it picked up via its Associated Content acquisition). But it also noted that less than five percent of the emails had valid passwords, and that it is now working to fix the vulnerability that led to the disclosure — note, it didn’t say it’s fixed yet.

Lees meer