Info – Earlybirds Invest https://earlybirdsinvest.com Latest Crypto News Mon, 11 Aug 2025 01:20:15 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.7 https://i0.wp.com/earlybirdsinvest.com/wp-content/uploads/2024/12/cropped-New-Project-2024-12-17T235703.455.png?fit=32%2C32&ssl=1 Info – Earlybirds Invest https://earlybirdsinvest.com 32 32 240146708 Google confirms data breach exposed potential Google Ads customers’ info https://earlybirdsinvest.com/google-confirms-data-breach-exposed-potential-google-ads-customers-info/ https://earlybirdsinvest.com/google-confirms-data-breach-exposed-potential-google-ads-customers-info/#respond Mon, 11 Aug 2025 01:20:14 +0000 https://earlybirdsinvest.com/google-confirms-data-breach-exposed-potential-google-ads-customers-info/

Google Ads

Google has confirmed that a recently disclosed data breach of one of its Salesforce CRM instances involved the information of potential Google Ads customers.

“We’re writing to let you know about an event that affected a limited set of data in one of Google’s corporate Salesforce instances used to communicate with prospective Ads customers,” reads a data breach notification shared with BleepingComputer.

“Our records indicate basic business contact information and related notes were impacted by this event.”

Google says the exposed information includes business names, phone numbers, and “related notes” for a Google sales agent to contact them again.

The company says that payment information was not exposed and that there is no impact on Ads data in Google Ads Account, Merchant Center, Google Analytics, and other Ads products.

The breach was conducted by threat actors known as ShinyHunters, who have been behind an ongoing wave of data theft attacks targeting Salesforce customers.

While Google has not shared how many individuals were impacted, ShinyHunters says the stolen information contains approximately 2.55 million data records. It is unclear if there are duplicates within these records.

ShinyHunters further told BleepingComputer that they are also working with threat actors associated with “Scattered Spider, who are responsible for first gaining initial access to targeted systems.

“Like we have said repeatedly already, ShinyHunters and Scattered Spider are one and the same,” ShinyHunters told BleepingComputer.

“They provide us with initial access and we conduct the dump and exfiltration of the Salesforce CRM instances. Just like we did with Snowflake.”

The threat actors are now referring to themselves as “Sp1d3rHunters,” to illustrate the overlapping group of people who are involved in these attacks.

As part of these attacks, the threat actors conduct social engineering attacks against employees to gain access to credentials or trick them into linking a malicious version of Salesforce’s Data Loader OAuth app to the target’s Salesforce environment.

The threat actors then download the entire Salesforce database and extort the companies via email, threatening to release the stolen data if a ransom is not paid.

These Salesforce attacks were first reported by the Google Threat Intelligence Group (GTIG) in June, with the company suffering the same fate a month later.

Databreaches.net reported that the threat actors have already sent an extortion demand to Google. After publishing the story, ShinyHunters told BleepingComputer that they demanded 20 Bitcoins, or approximately $2.3 million, from Google to not leak the data.

“I don’t care about ransoming Google anyway, I just sent them a bogus email for the lulz of it,” said the threat actor.

ShinyHunters says they have since switched to a new custom tool that makes it easier and quicker to steal data from compromised Salesforce instances.

In an update, Google recently acknowledged the new tooling, stating that they have seen Python scripts used in the attacks instead of the Salesforce Data Loader.

Update 8/9/25: Added further information about the extortion demand.

Picus Red Report 2025

Malware targeting password stores surged 3X as attackers executed stealthy Perfect Heist scenarios, infiltrating and exploiting critical systems.

Discover the top 10 MITRE ATT&CK techniques behind 93% of attacks and how to defend against them.

]]>
https://earlybirdsinvest.com/google-confirms-data-breach-exposed-potential-google-ads-customers-info/feed/ 0 52579
2,200,000 People Affected As Data Breach Hits Retail Grocery Giant – Names, Government IDs, Bank Account Numbers and Health Info Stolen https://earlybirdsinvest.com/2200000-people-affected-as-data-breach-hits-retail-grocery-giant-names-government-ids-bank-account-numbers-and-health-info-stolen/ https://earlybirdsinvest.com/2200000-people-affected-as-data-breach-hits-retail-grocery-giant-names-government-ids-bank-account-numbers-and-health-info-stolen/#respond Sat, 28 Jun 2025 07:13:49 +0000 https://earlybirdsinvest.com/2200000-people-affected-as-data-breach-hits-retail-grocery-giant-names-government-ids-bank-account-numbers-and-health-info-stolen/

A massive data breach at a company connected to the grocery retail giant Ahold Delhaize USA impacted more than 2.2 million victims.

The breach targeted Ahold Delhaize USA Services, LLC, a firm that provides support services to Ahold Delhaize USA, one of the largest grocery retail groups on the East Coast.

Stolen data from the breach varied on a person-to-person basis but included names, contact details, birthdates, Social Security numbers, passport and driver’s license numbers, financial account records, workers’ compensation details, medical records in employment histories and other employment-related records, per a notification on the Maine Attorney General’s website.

“We detected a cybersecurity issue involving unauthorized access to some of our internal US business systems on November 6th, 2024. We immediately launched an investigation with the assistance of leading external cybersecurity experts, coordinated with US federal law enforcement and began taking steps to contain the issue.

Based on our investigation, we identified that an unauthorized third party obtained certain files from one of our internal US file repositories between November 5th and 6th, 2024.”

Ahold Delhaize USA Services says it is currently notifying impacted victims and offering complimentary credit monitoring and identity protection services for two years.

Ahold Delhaize USA is the American division of a large global retailer, and its domestic corporate umbrella includes the grocery brands Food Lion, Giant Food, The GIANT Company, Hannaford and Stop & Shop.

Follow us on X, Facebook and Telegram

Don’t Miss a Beat – Subscribe to get email alerts delivered directly to your inbox

Check Price Action

Surf The Daily Hodl Mix

&nbsp

Disclaimer: Opinions expressed at The Daily Hodl are not investment advice. Investors should do their due diligence before making any high-risk investments in Bitcoin, cryptocurrency or digital assets. Please be advised that your transfers and trades are at your own risk, and any losses you may incur are your responsibility. The Daily Hodl does not recommend the buying or selling of any cryptocurrencies or digital assets, nor is The Daily Hodl an investment advisor. Please note that The Daily Hodl participates in affiliate marketing.

Generated Image: Midjourney

]]>
https://earlybirdsinvest.com/2200000-people-affected-as-data-breach-hits-retail-grocery-giant-names-government-ids-bank-account-numbers-and-health-info-stolen/feed/ 0 44571
Dems Say They're Blocked From Info on Verge of Crypto Market Structure Bill Hearings https://earlybirdsinvest.com/dems-say-theyre-blocked-from-info-on-verge-of-crypto-market-structure-bill-hearings/ https://earlybirdsinvest.com/dems-say-theyre-blocked-from-info-on-verge-of-crypto-market-structure-bill-hearings/#respond Wed, 04 Jun 2025 00:27:53 +0000 https://earlybirdsinvest.com/dems-say-theyre-blocked-from-info-on-verge-of-crypto-market-structure-bill-hearings/

On the eve of a U.S. House of Representatives hearing to scrutinize a bill to establish rules for the crypto markets, Democrats said they’ve been stymied from seeking technical information about its effects from the U.S. Securities and Exchange Commission, according to staffers.

Regulatory agencies such as the SEC routinely give technical analysis to lawmakers, answering questions about the potential effects of legislative efforts such as the Digital Asset Market Clarity Act that would establish regulatory guardrails for digital assets. Democratic staff on the House Financial Services Committee submitted questions to the SEC about the bill and in a briefing were denied basic answers that were previously given to Republicans, according to the Democratic aides who asked not to be named. The agency also didn’t offer its subject-matter experts for the discussion, they said.

On Tuesday, the panel’s ranking Democrat, Representative Maxine Waters of California, prepared a letter to SEC Chairman Paul Atkins to demand “comprehensive technical and impact analysis” of the crypto market structure bill. She included several pages of questions in a draft reviewed by CoinDesk, contending that “fulsome answers to the questions raised above are necessary for the American people, through their representatives in Congress, to determine whether this legislative proposal addresses the unique risks related to crypto, and would foster the needed environment for responsible innovation to take root.”

The SEC “provides technical assistance to any Member of Congress who seeks it, including on these crypto-related bills,” a spokesperson told CoinDesk when asked about the complaints.

One of the staffers said that the SEC Crypto Task Force’s Landon Zinda, who moved to the agency from crypto advocacy group Coin Center in February, was meant to brief them but was unable to answer basic questions.

The House committee is set to hold the Clarity Act hearing on Wednesday after having recently introduced the long-negotiated legislation, a successor of the last sessions’ Financial Innovation and Technology for the 21st Century Act (FIT21). The House Agriculture Committee, which also has jurisdiction over the regulation of digital assets, is running its own hearing at the same time.

This bill represents the central policy goal of the crypto industry, which contends that it needs clear U.S. regulations to encourage investors who’ve waited on the sidelines and to keep crypto innovators from moving overseas.

The Democratic staffers say that members have concerns about the traditional securities firms finding loopholes in this major legislation that will allow them to skirt existing securities regulations.

But congressional Democrats haven’t acted as a block when it comes to this and a related stablecoin bill also making its way through the legislative process. While some leaders, including Waters, have opposed advancing crypto legislation, other Democrats have joined with Republicans to move bills forward in both the House and Senate.

Read More: Planned Crypto Hearing in U.S. House Derailed by Democrat Revolt

UPDATE (June 3, 2025, 20:01 UTC): Updates with a response from the SEC and further information from sources.

]]>
https://earlybirdsinvest.com/dems-say-theyre-blocked-from-info-on-verge-of-crypto-market-structure-bill-hearings/feed/ 0 39986
364,333 Americans At Risk As Data Giant Discovers Breach – Social Security Numbers, Names and Other Sensitive Info Stolen https://earlybirdsinvest.com/364333-americans-at-risk-as-data-giant-discovers-breach-social-security-numbers-names-and-other-sensitive-info-stolen/ https://earlybirdsinvest.com/364333-americans-at-risk-as-data-giant-discovers-breach-social-security-numbers-names-and-other-sensitive-info-stolen/#respond Fri, 30 May 2025 08:39:02 +0000 https://earlybirdsinvest.com/364333-americans-at-risk-as-data-giant-discovers-breach-social-security-numbers-names-and-other-sensitive-info-stolen/

Sensitive personal and financial information of hundreds of thousands of Americans has been stolen in a newly reported cybersecurity incident.

In a filing with the Office of the Maine Attorney General, Georgia-based data broker giant LexisNexis Risk Solutions (LNRS) says that it discovered a breach affecting 364,333 people.

“We learned that on December 25, 2024, an unauthorized third party acquired certain LNRS data from a third-party platform used for software development. The issue did not affect LNRS?s own networks or systems…

The types of impacted personal information varied by affected individual, and could have included name, contact information (such as phone number, postal or email address), Social Security number, driver’s license number or date of birth. No financial or credit card information was affected.”

LNRS says it immediately sent letters to affected customers to inform them of the breach, while offering free identity monitoring services to affected individuals for two years.

LNRS also says it has not yet detected any instance involving the misuse of the stolen customer data.

The firm is urging customers to stay vigilant and report any suspicious activity related to their financial accounts.

LNRS says it has “launched an investigation with the assistance of leading external cybersecurity experts, notified law enforcement and took steps to review and further enhance our security controls.”

Follow us on X, Facebook and Telegram

Don’t Miss a Beat – Subscribe to get email alerts delivered directly to your inbox

Check Price Action

Surf The Daily Hodl Mix

&nbsp

Disclaimer: Opinions expressed at The Daily Hodl are not investment advice. Investors should do their due diligence before making any high-risk investments in Bitcoin, cryptocurrency or digital assets. Please be advised that your transfers and trades are at your own risk, and any losses you may incur are your responsibility. The Daily Hodl does not recommend the buying or selling of any cryptocurrencies or digital assets, nor is The Daily Hodl an investment advisor. Please note that The Daily Hodl participates in affiliate marketing.

Generated Image: Midjourney

]]>
https://earlybirdsinvest.com/364333-americans-at-risk-as-data-giant-discovers-breach-social-security-numbers-names-and-other-sensitive-info-stolen/feed/ 0 39114