BIPARTISAN LAWMAKERS PUSH TO BAN INDIAN HACK-FOR-HIRE FIRMS
■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
A group of US lawmakers spanning both parties has called on the government to ban three Indian companies accused of running hacking operations to steal information for litigation purposes.
■ MORE FROM THE SECURITY DESK
Two major US law firms have fallen victim to cyber extortion attacks, with threat actors obtaining and publishing private client documents. The incidents highlight ongoing security vulnerabilities in the legal sector.
U.S. cybersecurity and intelligence agencies have identified six Chinese AI companies conducting large-scale distillation attacks on American frontier AI models since late 2024, extracting billions of tokens in the process.
Healthcare technology company Veradigm disclosed a data breach after a ransomware attack on a third-party vendor exposed patient personal information. A cybersecurity incident at the vendor compromised data stored on Veradigm's systems.
While multi-factor authentication strengthens account security, attackers are increasingly exploiting password recovery and authentication reset processes. Stronger identity verification at service desks is now critical to block social engineering attacks.