

Blood center attack details emerge, Electoral Commission recovers, Plex suffers password breach
16 snips Sep 10, 2025
A ransomware attack recently leaked data of thousands from a UK blood center. The UK Electoral Commission has finally recovered from a major hack that occurred three years ago. In a shocking revelation, Npm packages, with 2 billion weekly downloads, fell victim to a supply chain attack. The discussion delves into critical vulnerabilities identified in systems from Adobe and Microsoft, highlighting the menace of exposed Docker APIs and the risks of remote code execution and DDoS attacks.
AI Snips
Chapters
Transcript
Episode notes
Blood Center Breach Scale And Delay
- A January ransomware attack exposed names, health records, test results, and in some cases SSNs for thousands tied to a New York blood center.
- Regulators said at least 10,557 Texas residents were affected and notifications came months after the investigation closed.
Long, Costly Recovery From Voter Data Hack
- The UK Electoral Commission took three years and over £250,000 to recover from a 2021 hack that exposed 40 million voter records.
- Root causes included an unpatched Exchange flaw and basic security failures like poor password practices and ignored warnings.
NPM Supply-Chain Crypto Hijack
- Attackers injected malware into 18 popular NPM packages, affecting packages with over 2.6 billion weekly downloads.
- The malicious code intercepted browser crypto wallet APIs to replace destination addresses during a narrow installation window.