#SEC disclosure
28 stories taggedSEC disclosure.

CenterPoint Energy Confirms Customer Data Stolen After Hacker Posts 7.5 Million Records Online
A Houston electricity and gas supplier serving 7 million households has told federal regulators that an outsider broke into one of its internet-facing systems and walked off with customer personal information.

Thomson Reuters Says Court Records Software Breached, 11 States Affected
West Publishing's C-Track platform, used by courts across the U.S. and beyond, had files taken by an unauthorized party in March. Thomson Reuters only spotted the activity three months later.

Six things MSPs should actually test before the next ransomware hit
Acronis lays out a practical checklist for managed service providers, moving the conversation past backups and antivirus to the full arc of prevention, detection and recovery.

Novocure Says Cancer Patient Data Exposed in August Break-In
The oncology device maker told the SEC that intruders reached records for more than 1,400 U.S. patients, though treatment devices were untouched.

Ransomware group falcon claims attack on Globus Medical
A criminal group has listed the US medical-device maker on its dark-web extortion site, claiming nearly 3 terabytes of sensitive company data. Globus Medical has not publicly confirmed any incident.

Hasbro Tells Massachusetts Regulators Employee Data Was Stolen in Breach
The toy giant filed notification letters flagging exposed Social Security numbers, bank details and driver's licence data for 436 workers in the state, months after a separate March cyberattack cost it roughly $25 million in lost revenue.

Boston Scientific Hit By Cyberattack, Global Order Shipments Disrupted
The medical device maker says it detected an intrusion on August 25 that knocked out business systems and stopped some customer orders from going out.

Nutex Health Tells the SEC Hackers Walked Off With Data From Its Servers
The Nasdaq-listed hospital operator, which runs 28 facilities across 12 states, says the stolen files may include private information but has not yet pinned down whose.

CareCloud tells 3.7 million patients their data was taken in March breach
The healthcare IT firm's SEC filing pointed to an eight-hour outage. The full patient count only landed with regulators months later.

From Coder to Chief: How Standard Chartered's Security Boss Runs Defence at a Global Bank
The bank's top security executive explains how the job has changed, why security leaders must speak business rather than just tech, and what AI means for attackers and defenders alike.

Contractor Jailed Two Years After $2.5M Extortion Attempt Against Brightly Software
Cameron Curry stole payroll data on his way out the door, then threatened to report his ex-employer to the SEC unless it paid up.

Hackers Exploit Patched VMware vCenter Flaw as Regulators Watch Disclosure Clocks
A directory-traversal bug rated 9.8 out of 10 is under active attack, and SEC and EU disclosure duties now sit squarely on affected firms.

Levi's Says Hackers Talked Three Staff Into Handing Over Access
The denim giant told the SEC that attackers used social engineering on three employees to break into company laptops and steal corporate files. No customer data hit, Levi's says.

River Bank Paid Hackers to Delete Stolen Data After June Ransomware Attack
Alabama's River Bank & Trust was hit by ransomware in June. The bank appears to have paid the criminals to destroy what they took, but still can't confirm whether customer data was exposed.

Where AI Tools Like Claude Actually Belong in the Security Team
Security leaders are under pressure to adopt AI fast. Here is a plain-English look at what platforms like Claude, Codex and Cursor actually do inside a security operations centre, and the policy questions that follow.