GM agrees to $12.75M California settlement over sale of drivers’ data

2026-05-12T07:23:29Z6b79e61d113619cc1f3a87aed4bd746fff6405530a55ff47344b8cde84a7711b
ai-generated-exploitandroid-bankercanvasccpaclaude-aidata-breachdata-privacyfake-repogeforce-now-breach','source-code-leak','ransomhouse','crimenetw0ghostlockgoogle-adshuggingfaceinfostealerjdownloaderjenkins-pluginmalvertisingnvidiapython-ratsmbsupply-chain-compromiseton-blockchaintrickmoweb-vulnerabilitywindows-api-abusezero-day

What happened

A batch of BleepingComputer security stories covering multiple high-impact incidents: GM agreed to a $12.75M proposed CCPA settlement over alleged sale of drivers’ data; a rogue Checkmarx Jenkins Marketplace plugin delivered an infostealer (supply-chain/plugin compromise); a proof‑of‑concept 'GhostLock' demonstrates abusing a legitimate Windows file API to block local/SMB file access; Instructure confirmed exploitation of a Canvas vulnerability used to deface portals; Google GTIG attributes a recently exploited zero‑day against a web admin tool to likely AI‑assisted development. Additional key

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
6b79e61d113619cc1f3a87aed4bd746fff6405530a55ff47344b8cde84a7711b
Enrichment time
2026-05-12T07:23:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.