This Week In Cybersecurity | October 3rd, 2025

London nursery chain, Kido, was hit by a cyberattack carried out by a cybercrime group known as Radiant.   The hacker group demanded ransom and posted profiles of over 8,000 children on the dark web, including the parents’ contact information, and threatened to continue adding more until Kido paid the ransom.  Huge public backlash pushed the group to remove all of the data from the web. They have since apologized for hurting children.  (–Source: The Telegraph on Yahoo! News Read More: Hackers behind nursery cyber-attack apologise ‘for hurting children’ )      Employees of Volvo North America have been informed that some of their personal information was stolen in a recent ransomware attack on the company’s HR software provider on August 20th.  It’s not currently known who the attackers were or how exactly many people were affected, but it is estimated to be at least 1.5 million. The stolen information includes employees’ full names, and SSNs, contact information, birth dates, and more.   (–Source: TechRadar Pro on MSN Read More: Volvo says staff data was stolen following recent ransomware attack on IT supplier )      Another Luxury brand, Harrods, has been involved in a third-party data breach, with an alleged 430,000+ customer records being stolen.  The hackers are demanding a ransom, but Harrods refuses to pay. The luxury brand has notified authorities and is sending breach notices to affected customers, while the third-party has confirmed that this is an isolated incident and has been contained.  (–Source: CPO Magazine Read More: Third-Party Data Breach Hits Harrods, Leaking Over 430,000 Customer Records – CPO Magazine )      The Medusa ransomware gang claims to have stolen 834.4 GB of data from Comcast in a post on the dark web.  Their post contained 33 screenshots indicating that the information they stole in the attack is highly targeted data, including financial documents, HR-related records, personnel records, security logs, and some customer-facing functions. Comcast has yet to confirm the breach, but if Medusa’s claims are accurate, this could be a highly sensitive breach.  (–Source: Cyber News Read More: Medusa ransomware claims Comcast data breach | Cybernews )      Canadian airline, WestJet, was targeted in a data breach earlier this year and has now confirmed the size of the breach.  1.2 million WestJet passengers have had their personal information stolen, including names, contact information, birth dates, travel documents, and more.  (–Source: TechCrunch on MSN Read More: Data breach at Canadian airline WestJet affects 1.2M passengers )      During a period of a few weeks over the summer, FEMA, Customs, and Border Protection employees had their sensitive information stolen by a hacker who has not yet been identified.   The hacker gained access to critical FEMA systems during the attack, causing major doubts of the ability of the Department of Homeland Security to properly protect the information of everyone who works for agencies that the department oversees. Two dozen FEMA employees were fired last month for lapses in security that enabled a threat actor to “breach FEMA’s network and threaten the entire department and the nation as a whole” despite being highly respected by longtime FEMA employees.  (–Source: CNN on MSN Read More: Hacker stole sensitive FEMA and border patrol data in months-long breach ) 
Get In Touch