Technology
HR firm confirms 4M records exposed in major hack
Data breaches have become alarmingly common and costly, putting sensitive information at risk. In fact, the number of data breaches in the United States jumped from 447 in 2012 to over 3,200 in 2023.
Even firms entrusted with managing personal information are not immune. The latest example is VeriSource Services, a Texas-based employee benefits and HR administration provider that experienced a major data breach.
The personal information of about 4 million people was exposed in this incident, and it took the company over a year to fully assess its impact, a critical failure for an organization specializing in data management, employee enrollment and HR support services that clients rely on to safeguard their most sensitive information.
Join The FREE CyberGuy Report: Get my expert tech tips, critical security alerts and exclusive deals — plus instant access to my free Ultimate Scam Survival Guide when you sign up!
An illustration of a hacker at work (Kurt “CyberGuy” Knutsson)
What happened at VeriSource?
VeriSource discovered the breach Feb. 28, 2024, when it noticed unusual activity disrupting some of its systems. The company later determined an unknown attacker had gained unauthorized access around Feb. 27, 2024, stealing data on or about that date.
Somehow, it took VeriSource over a year to determine the full scope of the breach, including the identification all individuals who had their information exposed.
According to the investigation, this was a criminal cyberattack carried out by external threat actors (hackers), as opposed to an insider mishandling data. The perpetrators accessed sensitive personal records stored by VeriSource. In a sample notice filed with state authorities, VeriSource reported that the compromised information included individuals’ full names, mailing addresses, dates of birth, gender and Social Security numbers (via BleepingComputer).
A person working on their laptop (Kurt “CyberGuy” Knutsson)
200 MILLION SOCIAL MEDIA RECORDS LEAKED IN MAJOR X DATA BREACH
Impact on affected individuals
For individuals whose data was exposed, this breach poses real risks. Information like your Social Security number, birth date and address can be misused for identity theft, such as opening fraudulent accounts or filing false tax returns in your name. Even beyond financial fraud, having such personal data in the wrong hands can lead to targeted phishing scams.
What worries me the most is the delay in fully notifying everyone affected. VeriSource had sent out preliminary breach notices to about 55,000 people in May 2024 and then to another 112,000 people in September 2024. However, those early notifications covered only a small fraction of the approximately 4 million victims eventually identified. This means the majority of affected individuals did not learn of the breach until the final notification wave in April 2025, more than a year after the data was actually compromised.
We reached out to VeriSource for a comment but did not hear back before our deadline.
WHAT IS ARTIFICIAL INTELLIGENCE (AI)?
A person working on a laptop (Kurt “CyberGuy” Knutsson)
HERTZ DATA BREACH EXPOSES CUSTOMER INFORMATION
5 ways to protect yourself after the VeriSource data breach
If you think you were affected by the VeriSource data breach or just want to be cautious, here are some steps you can take right now to stay safe from the data breach:
1. Consider a personal data removal service: VeriSource hackers have access to your name, Social Security number, mailing address and more, which they can easily use against you. The more exposed your personal information is online, the easier it is for scammers to scam you. After the VeriSource breach, consider removing your information from public databases and people-search sites. Check out my top picks for data removal services here.
2. Safeguard against identity theft and use identity theft protection: Hackers now have access to high-value information from the VeriSource breach, including Social Security numbers. This makes you a prime target for identity theft. You can freeze your bank and credit card accounts to prevent further unauthorized use by criminals. Signing up for identity theft protection gives you 24/7 monitoring, alerts for unusual activity and support if your identity is stolen. See my tips and best picks on how to protect yourself from identity theft.
3. Set up fraud alerts: Requesting fraud alerts notifies creditors that they need extra verification before issuing credit in your name. You can request fraud alerts through any one of the three major credit bureaus. They’ll notify the others. This adds another layer of protection without completely freezing access to credit.
4. Monitor your credit reports: Check your credit reports regularly through AnnualCreditReport.com, where you can access free reports from each bureau once per yearor more frequently if you’re concerned about fraud. Spotting unauthorized accounts early can prevent larger financial damage.
5. Be wary of social engineering attacks and use strong antivirus software: Hackers may use stolen details like names or birthdates from breaches in phone scams or fake customer service calls designed to trick you into revealing more sensitive info. Never share personal details over unsolicited calls or emails. Also, never click on unexpected links or attachments in emails, texts or messages because they may contain malware or lead to phishing sites designed to steal your information.
The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe. Get my picks for the best 2025 antivirus protection winners for your Windows, Mac, Android and iOS devices.
HACKERS USING MALWARE TO STEAL DATA FROM USB FLASH DRIVES
Kurt’s key takeaway
What stands out in the VeriSource breach isn’t just the scale, but the silence. When a company sits on breach data for over a year, regardless of intent, it erodes trust in systems designed to protect workers. These aren’t just compliance failures. They’re human ones. Four million people had their most sensitive information exposed, and for many of them, the warning came far too late. This should be a moment of reckoning for how organizations define responsibility after a breach. A timely response isn’t just good PR. It’s a baseline expectation. And if it takes over a year to realize the full scope of a cyberattack, maybe the incident isn’t the only vulnerability worth addressing.
Should companies face stricter penalties for delayed breach notifications? Let us know by writing us at Cyberguy.com/Contact
For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter
Ask Kurt a question or let us know what stories you’d like us to cover
Follow Kurt on his social channels
Answers to the most asked CyberGuy questions:
New from Kurt:
Copyright 2025 CyberGuy.com. All rights reserved.
Technology
Iran networks suffer losses amid airstrikes, showing digital evolution of conflicts
NEWYou can now listen to Fox News articles!
When missiles fly, we expect explosions. We expect smoke, sirens and satellite images. What we do not expect is silence.
On February 28, 2026, as fighter jets and cruise missiles struck Iranian Revolutionary Guard command centers during Operation Roar of the Lion, a parallel assault reportedly unfolded in cyberspace.
Official news sites and key media platforms went offline, government digital services and local apps failed across major cities, and security communications systems reportedly stopped functioning, plunging Iran into a near-total digital blackout.
According to NetBlocks, a global internet monitoring organization that tracks connectivity disruptions, nationwide internet traffic in Iran plunged to just 4 percent of normal levels.
That level of collapse suggests either a deliberate state-ordered shutdown or a large-scale cyberattack designed to paralyze critical infrastructure. Western intelligence sources later indicated the digital offensive aimed to disrupt IRGC command and control systems and limit coordination of counterattacks.
For the United States and its allies, the episode offers a stark reminder that modern conflict now blends airstrikes with digital warfare in ways that can ripple far beyond the battlefield.
In a matter of hours, modern conflict looked less like tanks and more like a blinking cursor.
Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts, and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter
Iran’s national symbols stand in contrast to reports of a sweeping digital blackout that reportedly disrupted communications and critical systems across the country. (Kurt “CyberGuy” Knutsson)
Iran internet shutdown: A country offline in real time
Reports described widespread outages across Iran. Official news sites stopped functioning. IRNA, Iran’s state-run news agency, went offline.
Tasnim, a semi-official news outlet closely aligned with the Islamic Revolutionary Guard Corps, reportedly displayed subversive messages targeting Supreme Leader Ali Khamenei.
THINK YOUR NEW YEAR’S PRIVACY RESET WORKED? THINK AGAIN
The IRGC, Iran’s powerful military and intelligence force, plays a central role in national security and regional operations. At the same time, local apps and government digital services failed in cities like Tehran, Isfahan and Shiraz.
This was not one website defaced for headlines. It appeared systemic. Electronic warfare reportedly disrupted navigation and communications systems.
Distributed denial of service attacks, often called DDoS attacks, flooded networks with traffic to overwhelm and disable them.
Deep intrusions targeted energy and aviation systems. Even Iran’s isolated national internet struggled under pressure.
CHINA VS SPACEX IN RACE FOR SPACE AI DATA CENTERS
For a regime that tightly controls information, losing digital command creates both operational and political risk.
Why cyber warfare matters in the Iran conflict
Cyber operations offer something missiles cannot. They disrupt without always killing. They send a signal without immediately triggering full-scale war. That matters in a region where escalation can spiral fast.
History shows Iran understands this logic. Between 2012 and 2014, Iranian actors targeted U.S. financial institutions in Operation Ababil. Saudi Aramco also suffered a major cyberattack.
ARTIFICIAL INTELLIGENCE HELPS FUEL NEW ENERGY SOURCES
After Israeli strikes in 2025, cyberattacks targeting Israel surged dramatically within days.
Cyber retaliation lets leaders respond while limiting direct military confrontation. It buys leverage in negotiations. It creates pressure without necessarily crossing a red line.
But there is a catch. Every cyber strike risks miscalculation. And digital damage can spill into the real world fast if critical infrastructure is hit.
As military strikes targeted IRGC command centers, internet traffic inside Iran reportedly plunged to just 4 percent of normal levels. (Kurt “CyberGuy” Knutsson)
If the blackout and strikes mark a turning point, Tehran has options. None are simple.
1) Cyberattacks against U.S. or allied infrastructure
Cyber retaliation remains one of Iran’s most flexible tools. It can range from disruptive attacks and influence campaigns to more targeted intrusions that pressure critical services. Recent expert commentary warns that U.S. cyber defenses and the private sector could face sustained testing.
2) Targeting U.S. drones and unmanned systems
Iran has used drones and electronic interference as signals before. Analysts continue to flag jamming, spoofing and harassment of unmanned systems as a way to raise costs without immediately striking large numbers of personnel.
3) Maritime attacks in the Strait of Hormuz
This risk is rising fast. An EU naval mission official reportedly said IRGC radio transmissions warned ships that passage through Hormuz was “not allowed”. Greece has also urged ships to avoid high-risk routes and warned about electronic interference that can disrupt navigation. Insurers are already repricing the danger, with reports of war-risk policies being canceled or sharply increased.
4) Support for allied or informal armed groups
Iran has long worked with allied forces and militias in the region, and some of those groups could step up attacks on U.S. interests or allied partners in retaliation, widening the clash without direct state-to-state engagement.
5) Limited ballistic missile strikes
Missile strikes remain a high-impact option, but they raise the odds of rapid escalation. Recent expert analysis continues to frame them as a tool Iran may use for signaling, especially if leadership feels cornered.
Tehran’s skyline, including the Azadi Tower, became the backdrop to a crisis shaped as much by cyber disruption as by missiles in the sky. (Kurt “CyberGuy” Knutsson)
The escalation risk between the U.S. and Iran
Here is the uncomfortable truth. Neither Washington nor Tehran likely wants a full-scale regional war. In moments like this, military strikes rarely stand alone.
They often move alongside diplomacy. Leaders send signals. They apply pressure. At the same time, they try to leave room for talks.
But escalation has momentum. Each missile changes the equation. Each casualty raises the stakes. The more damage done, the harder it becomes to step back.
5 SIMPLE TECH TIPS TO IMPROVE DIGITAL PRIVACY
Fear plays a role. So does pride. Domestic audiences demand strength. Leaders feel pressure to respond in kind. That is how limited strikes can spiral into something much larger.
What the Iran cyberattack blackout means for global cybersecurity
This episode highlights something bigger than regional tension. Nation-states now pair kinetic strikes with digital offensives.
Cyberattacks can blind communications, freeze infrastructure and disrupt financial systems before the world even processes the first explosion.
TRUMP TELLS IRANIANS THE ‘HOUR OF YOUR FREEDOM IS AT HAND’ AS US-ISRAEL LAUNCH STRIKES AGAINST IRAN
For businesses and individuals, that reality matters. Modern conflict no longer stays confined to battlefields.
Supply chains, energy grids and online platforms can feel the ripple effects. The blackout in Iran serves as a reminder that digital resilience is now a national security issue.
How to stay safe during rising cyber tensions
When a country’s internet can plunge to just 4 percent of normal traffic in hours, it is a reminder that cyber conflict can escalate quickly.
Even if the disruption happens overseas, global networks are interconnected. Financial systems, supply chains and online platforms can feel the ripple effects.
You cannot control geopolitics. You can control your digital hygiene. Here are practical steps to reduce your personal risk during periods of heightened cyber activity:
Install strong antivirus software to guard against state-linked phishing and malware campaigns that often spike during geopolitical conflicts.
Nation-state actors frequently exploit breaking news and global instability to spread malicious links and ransomware. Get my picks for the best 2026 antivirus protection winners for your Windows, Mac, Android & iOS devices at Cyberguy.com
Keep devices updated so security patches close vulnerabilities that attackers often exploit during global cyber spikes.
WORLD LEADERS SPLIT OVER MILITARY ACTION AS US-ISRAEL STRIKE IRAN IN COORDINATED OPERATION
Use strong, unique passwords stored in a reputable password manager to protect your accounts if cyber retaliation campaigns expand beyond government targets. Check out the best expert-reviewed password managers of 2026 at Cyberguy.com
Enable two-factor authentication (2FA) on financial, email and social accounts to safeguard access in case stolen credentials circulate during heightened cyber conflict.
Be cautious with urgent headlines or alerts about international conflict, since attackers frequently mimic breaking news.
Monitor financial accounts for unusual activity in case broader disruptions spill into banking systems.
When tensions rise, phishing campaigns often rise with them. Threat actors exploit fear and confusion. Staying disciplined with basic security habits makes you a harder target if malicious traffic increases.
Take my quiz: How safe is your online security?
Think your devices and data are truly protected? Take this quick quiz to see where your digital habits stand. From passwords to Wi-Fi settings, you’ll get a personalized breakdown of what you’re doing right and what needs improvement. Take my Quiz here: Cyberguy.com
Kurt’s key takeaways
The reported cyber blackout inside Iran may signal a new chapter in modern conflict. Jets and missiles still matter. But so do servers, satellites and code. Leaders may try to contain the damage while showing strength.
Still, history shows how quickly careful plans can unravel once pressure builds. War today runs on electricity and bandwidth as much as fuel and ammunition.
When networks go dark, the impact does not stay on a battlefield. It spills into banking systems, airports, hospitals and the phones in our pockets. That is what makes this moment different.
If an entire nation’s digital systems can be disrupted in hours, how prepared is your community if something similar ever hits closer to home? Let us know by writing to us at Cyberguy.com
CLICK HERE TO DOWNLOAD THE FOX NEWS APP
Sign up for my FREE CyberGuy Report Get my best tech tips, urgent security alerts, and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter
Copyright 2026 CyberGuy.com. All rights reserved.
Technology
Soundcore new Space 2 promise improved ANC and sound
We finally have an update to the Soundcore Space One that launched two and a half years ago. At MWC 2026, Soundcore has announced the Space 2, which will be available in the US on April 21st in three colors — linen white, jet black, and seafoam green — for $129.99. That’s $30 more than the Space One’s original price.
According to Soundcore, the Space 2 have had a full-band noise cancellation upgrade with the focus of those improvements on the low-frequency sounds we all generally use ANC headphones to block — things like airplane, train, and bus engine sounds while traveling. The Space 2 use the same number of microphones as the Space One for noise canceling, instead relying on optimized mic placement and structure and materials improvements for the boost in performance.
Redesigned 40mm drivers incorporate dual layers in their design. There’s a silk diaphragm with metal ceramic that supposedly results in faster transient response — the driver’s ability to respond to sudden sound quickly and accurately — with better balanced sound reproduction. The Space One had great sound performance for the price, but I’m all for any improvement to sound performance accuracy. Like the Space One, the Space 2 will support LDAC high-res audio.
The headphones connect wirelessly over Bluetooth 6.1, although they do not support Auracast transmissions — an unfortunate exclusion. There’s also a 3.5mm jack for a wired connection.
Battery life has been increased to up to 50 hours with ANC and 70 hours with ANC off. This is up from 40 hours with ANC and 55 hours without ANC with the Space One headphones. With a five-minute charge the Space 2 get an additional four hours of listening.
The Space 2 will include many of the features found on the Space One. You can use HearID 3.0 to go through a series of sound samples to tune the headphones’ sound to your preferences. It worked well for me on the Space One to get them closer to a sound I liked, with a bit of the edge taken off the higher frequencies. There’s also a sensor that detects when you remove the headphones and stops playback so you don’t miss any of your music or podcast. They once again come with a cloth bag that matches the color of the headphones instead of a case, which is one change I wish Soundcore had made, as the cloth bag doesn’t offer as much protection if you tend to throw your headphones into your backpack or bag.
The Soundcore Space One were among the best budget ANC headphones when they came out, and still hold up to more recent releases. But with the bump in price to over $100 for the Space 2, there’s a bit more expectation on them. ANC performance continues to improve — and products get cheaper — across manufacturers, so the Soundcore Space 2 has some competition from companies like Sony, EarFun, and JLab. If the ANC on the Space 2 stands up to current budget headphones and they still sound as good and are as comfortable as the Space One, you can expect to see the new Soundcore Space 2 on many recommendation lists.
Technology
Tired of websites blocking your VPN? A dedicated IP fixes that
NEWYou can now listen to Fox News articles!
If you have ever turned on your VPN and suddenly could not log in to your bank, email, streaming service or work portal, you are not imagining things. In fact, this is one of the most common frustrations VPN users face today.
However, the issue is not that VPNs stopped working. Instead, websites have become far more aggressive about blocking traffic that looks suspicious.
As a result, the way your VPN is built now matters just as much as whether you use one at all.
Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts, and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter
Shared VPN IPs often trigger red flags, which is why banks, email providers and streaming sites sometimes block access. (Kurt “CyberGuy” Knutsson)
Why websites block many VPN connections
Most VPNs give you a shared IP address. As a result, hundreds or even thousands of people can appear online from the same address at the same time. From a website’s perspective, that traffic pattern raises red flags. When platforms detect too many logins, rapid location changes or unusual activity tied to one IP, they step in quickly. In many cases, they respond by:
- Blocking access
- Triggering captchas
- Requiring extra verification codes
- Temporarily locking accounts
Meanwhile, you did nothing wrong. Instead, you end up dealing with restrictions caused by other users sharing that same IP address.
What a dedicated IP does differently
With a dedicated IP, you get an address that belongs only to you. Unlike shared VPN connections, no one else uses it.
Each time you connect, you use the same IP address. As a result, you avoid sharing traffic, rotating locations or competing with random users whose activity could trigger blocks.
Because of that consistency, your connection looks much more like a typical home or office internet setup. And that simple difference can dramatically reduce website suspicion and login headaches.
NEW YORK HALTS ROBOTAXI EXPANSION PLAN
A dedicated IP gives you a consistent address that looks more like a normal home connection, reducing captchas and login alerts. (Kurt “CyberGuy” Knutsson)
What a dedicated IP can do that shared VPN IPs usually can’t
That consistency does more than reduce suspicion; it improves how smoothly you access the sites and services you use every day.
Access more websites without blocks
Banks, government portals, healthcare sites, and streaming services are far less likely to block a dedicated IP because it does not show heavy or erratic traffic patterns.
Reduce captchas and security challenges
Those endless “prove you’re human” messages are usually triggered by shared IP abuse. A dedicated IP dramatically reduces them.
Make banking and email logins smoother
Financial institutions and email providers often flag constantly changing IP addresses as suspicious. A dedicated IP stays consistent, so login alerts and lockouts happen far less often.
Support remote work and secure systems
Some employers only allow access from approved IP addresses. Shared VPN IPs cannot be approved. Dedicated IPs can.
Improve streaming reliability
Shared VPN IPs are often the first to get blocked when streaming services crack down. Dedicated IPs are less likely to be flagged because traffic looks normal and predictable.
What a dedicated IP does not do
A dedicated IP:
- Does not remove encryption
- Does not expose your identity
- Does not weaken your privacy
Your traffic remains encrypted, and your real location stays hidden. You simply get a connection that websites trust more.
Who benefits most from a dedicated IP
A dedicated IP is especially helpful if you:
- Use online banking regularly
- Travel and access sites from different locations
- Work remotely
- Stream often
- Get tired of captchas and blocked pages
- Want a VPN that feels normal to use
GOOGLE DISMANTLES 9M-DEVICE ANDROID HIJACK NETWORK
With fewer blocks and smoother logins, a dedicated IP helps your VPN work quietly in the background instead of getting in your way. (Kurt “CyberGuy” Knutsson)
How to choose a VPN that offers a dedicated IP
If you want these benefits, look for a VPN provider that offers a dedicated IP option built directly into its service. Some providers include it in premium plans, while others offer it as an add-on. Either way, the process should be simple. You should be able to select your dedicated IP inside the app without advanced setup or manual configuration. Before signing up, check that the provider also offers strong speeds, reliable uptime and clear privacy policies. A dedicated IP improves access, but overall performance still matters.
What to look for beyond a dedicated IP
A dedicated IP reduces blocks. However, a quality VPN should also deliver strong security and smooth performance.
Fast, stable connections: Speed matters for streaming, video calls and everyday browsing. Look for providers known for consistent performance.
Wide server coverage: More server locations give you flexibility when traveling and help reduce location errors.
Clear privacy practices: Choose a VPN with a strict no-logs policy and independent audits when possible.
Secure server technology: Modern VPNs often use RAM-based servers that automatically wipe data on reboot.
Easy-to-use apps: Protection should feel simple, not technical. Clean apps across major devices make daily use effortless.
For the best VPN software, see my expert review of the best VPNs for browsing the web privately on your Windows, Mac, Android & iOS devices at Cyberguy.com
Kurt’s key takeaway
If your VPN keeps getting blocked, the problem may not be the VPN itself. It may be the shared IP address behind it. Websites are increasingly aggressive about suspicious traffic. When hundreds of users share the same IP, banks, email providers and streaming platforms take notice. That is when the captchas, verification codes and account lockouts start. A dedicated IP changes that experience. You still get encryption. You still protect your real location. But your connection looks stable and predictable, which helps you avoid constant interruptions.
CLICK HERE TO DOWNLOAD THE FOX NEWS APP
Should protecting your privacy really mean fighting with your bank, email, and streaming apps? Let us know by writing to us at Cyberguy.com
Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts, and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter
Copyright 2026 CyberGuy.com. All rights reserved.
-
World4 days agoExclusive: DeepSeek withholds latest AI model from US chipmakers including Nvidia, sources say
-
Massachusetts4 days agoMother and daughter injured in Taunton house explosion
-
Montana1 week ago2026 MHSA Montana Wrestling State Championship Brackets And Results – FloWrestling
-
Denver, CO4 days ago10 acres charred, 5 injured in Thornton grass fire, evacuation orders lifted
-
Louisiana7 days agoWildfire near Gum Swamp Road in Livingston Parish now under control; more than 200 acres burned
-
Technology1 week agoYouTube TV billing scam emails are hitting inboxes
-
Technology1 week agoStellantis is in a crisis of its own making
-
Politics1 week agoOpenAI didn’t contact police despite employees flagging mass shooter’s concerning chatbot interactions: REPORT