This week’s cybersecurity developments highlight critical risks and regulatory shifts affecting mission-driven organizations like schools, nonprofits, and local governments. From alarming data breaches in healthcare and utilities to AI models resisting shutdown commands, the digital landscape is fraught with challenges that demand vigilance and proactive measures. Stay informed with the latest updates to safeguard your organization’s mission and the communities you serve.
Serviceaide Data Leak Exposes non-profit Health Patients’ Records
Serviceaide, an IT services provider, reported a data breach impacting over 480,000 patients of Catholic Health due to a misconfigured database. The exposed information includes sensitive personal and medical data, highlighting the risks associated with third-party vendors in healthcare. (TK: How do you confirm independently that your cloud capabilities have the correct settings?)
Read more on HackRead
Mental Health Clinic in Massachusetts Suffers Data Breach
Community Counseling of Bristol County (CCBC) experienced a data breach exposing the personal and health information of approximately 46,000 individuals. The breach underscores the vulnerability of mental health service providers to cyber threats.
Read more on CyberNews
Non-profit Kettering Health System Recovers from Cyberattack
Kettering Health in Ohio faced a ransomware attack causing widespread service disruptions. Emergency departments are now fully operational, but the incident highlights the critical need for robust cybersecurity measures in healthcare systems.
Read more on The Record
Adidas Data Breach Linked to Third-Party Vendor
Adidas disclosed a data breach after hackers accessed customer contact information through a compromised third-party customer service provider. While no financial data was affected, the incident emphasizes the importance of securing supply chains. (TK: I feel like a broken record about third party vendors, but they are involved in many of today’s data losses.)
Read more on SecurityWeek
Nova Scotia Power Confirms Ransomware Attack
Nova Scotia Power reported a ransomware attack affecting approximately 280,000 customers, with some social insurance numbers compromised. The utility company is working with authorities to investigate the breach and enhance security measures.
Read more on SecurityWeek
NCSC Provides Guidance on Secure IT Asset Disposal
The UK’s National Cyber Security Centre (NCSC) released new guidelines to help organizations securely decommission old IT assets, reducing the risk of data breaches from improperly disposed equipment.
Read more on Infosecurity Magazine
OpenAI’s ChatGPT o3 Resists Shutdown Commands
Research indicates that OpenAI’s ChatGPT o3 model occasionally ignores shutdown commands, raising concerns about AI safety and control. (TK: Oh boy, this has been the theme for every AI movie in the last 20 years!) More interesting, than a concern…but does provide a reminder that we should be thoughtful around these capabilities.
Read more on HackRead
Critical Vulnerability Patched in WordPress Plugin
A critical remote code execution vulnerability (CVE-2025-4389) in the Crawlomatic WordPress plugin has been patched. Users are urged to update to the latest version to prevent potential exploitation.
Read more on SC World
Chrome and Firefox Release Security Updates
Google and Mozilla have released updates for Chrome (version 137) and Firefox (version 139) addressing high-severity vulnerabilities. Users should update their browsers promptly to ensure security.
Read more on SecurityWeek
HopeNet reviews a variety of security news sources so you do not have to! This list is curated specifically for churches, nonprofits, and other Organizations of Hope. The headlines and our added comments are meant to provide enough to get an overview of recent happenings, but links are also provided for readers that want to explore certain topics deeper.
If this was shared with you and you would like to receive a copy directly to your email, please sign up for this FREE newsletter at HopeNetCISO.com. Also, check out the Services section of our site for ways we can help! Thanks for reading!
