Last Update: 08/01/2026 at 1:00 PM EST

Morning Briefing: Privacy

Friday, July 10, 2026

July 10, 2026

Identity Attacks Put Data Custodians on Notice

Yesterday was not a regulatory turning point. The clearest privacy movement came instead from large disclosures, a public-sector data exposure and new evidence that attackers are concentrating on the people and authentication workflows already trusted to reach sensitive records.

What became clearer is that privacy risk increasingly sits between the login screen and the data itself. MFA can be manipulated, legitimate sessions can be captured, and an apparently obscure download path can expose records without compromising the public-facing interface. The practical question is no longer only whether data is encrypted or an account is protected, but whether every route to the data is governed and monitored.

AssuranceAmerica disclosed that attackers copied files affecting 6,998,886 drivers. The exposed material included driver and vehicle information, insurance policy or account details, claims data, contact information and driver's license numbers. The scale made this the day's clearest concrete development, while the timeline—from suspicious activity in March to completion of the affected-file review in June—illustrated how long breach scoping can take before individual impact is known.

More revealing was ProPublica and Centro de Periodismo Investigativo's report that Puerto Rico property-tax agency CRIM exposed Social Security numbers for approximately 1 million people through its Catastro Digital mapping system. The sensitive fields were not visible in an ordinary search, but could be downloaded without authentication by understanding the system's request patterns. CRIM patched the weaknesses after being contacted while continuing to deny that a breach requiring notification had occurred.

Three reports converged on trusted access as the immediate threat. The IRS warned that scammers are targeting tax professionals because they hold unusually rich collections of taxpayer data. BleepingComputer separately described Helix using vishing, device-code phishing and MFA abuse to reach SharePoint data, and Forg365 packaging Microsoft 365 phishing, OAuth configuration, session-cookie theft and AI-assisted lures as a service.

A reported breach of Madison Square Garden systems exposed a different kind of privacy liability: data allegedly containing LGBTQIA labels, identity notes and risk ratings for public figures and other individuals. The Washington Times reported that multiple federal class-action complaints have followed. The significance lies not only in the intrusion, but in the sensitivity of the classifications the organization reportedly chose to create and retain.

Key Points

  • Attackers are prioritizing intermediaries that aggregate other people's information. Tax professionals are valuable not because they are unusually prominent targets, but because one successful compromise can reveal identity, income, banking, dependent and authorization data across many clients. The IRS campaign reflects a defensive shift toward protecting custodians rather than warning only the individuals whose data they hold.
  • MFA is becoming a workflow to exploit rather than a control attackers must defeat outright. Helix reportedly persuades employees to authorize attacker-controlled devices, while Forg365 supports both device-code phishing and authentication proxies that capture session cookies. AI helps produce credible lures, but the more consequential adaptation is the use of legitimate authentication paths to obtain durable access.
  • Institutional responses remain heavily weighted toward technical containment. AssuranceAmerica disabled credentials, terminated sessions, reset passwords and added monitoring; CRIM patched the reported weaknesses. Those measures matter, but yesterday's reporting also exposed a separate governance question: whether organizations recognize exposure and notify affected people when confirmed theft is disputed or difficult to establish.
  • Privacy International's testing of Manatal and Talenteria shifted attention from abstract AI hiring bias to reproducibility. Identical candidate materials reportedly produced inconsistent scores, sometimes enough to change an outcome from rejection to an interview, while AI-written CVs often outperformed human-written ones despite obvious artifacts. This was an advocacy investigation, not a regulatory finding, but it identified a concrete compliance weakness: candidates cannot meaningfully challenge a decision when neither the score nor its variability is adequately explained.

Implications

Microsoft 365 defenses need to extend beyond password strength and MFA enrollment. Restricting device-code authentication where possible, reviewing OAuth grants, monitoring unusual SharePoint enumeration and bulk downloads, and revoking tokens and sessions after suspected compromise are increasingly core privacy controls.

Organizations should treat sensitive labels, inferred traits and internal risk scores as liabilities even when they are not legally required records. The Madison Square Garden reporting shows how a breach can expose not just personal data, but the institution's own judgments about people—creating litigation, discrimination and reputational exposure that ordinary breach response cannot easily contain.

The CRIM case highlights why exposure assessment and notification analysis cannot depend solely on evidence that an attacker removed data. If sensitive records were available without authentication, organizations still need a defensible account of who could access them, what logs exist and why affected people are or are not being informed.

Employers using AI recruitment tools have a practical reason to test repeatability before deployment. Human review, documented override procedures and explanations that candidates can understand are not merely fairness safeguards; they are necessary if an organization is expected to defend how personal data produced a consequential decision.

Watchpoints

Watch

Whether AssuranceAmerica faces regulatory inquiries or litigation as notification proceeds, and whether the affected data categories are further refined.

Watch

Whether CRIM changes its notification position or Puerto Rico authorities review the exposure under the government's cybersecurity requirements.

Watch

Whether additional organizations confirm Helix-related SharePoint theft and whether Microsoft 365 administrators move to restrict device-code authentication more broadly.

Watch

What the Madison Square Garden lawsuits reveal about how identity labels, facial-recognition information, social media activity and risk ratings were created, used and retained.

Watch

Whether Manatal, Talenteria or regulators respond to the reported variability and transparency problems in AI-assisted hiring.

Fallout

Meaningful movement was concentrated in three long-running areas: identity-centered data theft, accountability for large or publicly accessible data exposures, and the risks created when organizations classify people through sensitive labels or opaque scores. The first two produced concrete operational developments; the AI hiring story added scrutiny rather than a new legal obligation.

Identity-Centered Data Theft

Enterprise privacy incidents increasingly begin with manipulation of employees, authentication flows and active sessions rather than a direct technical attack on a database. Once trusted access is obtained, collaboration platforms can become efficient channels for bulk data theft.

Fresh developments

Helix reportedly combined manager impersonation, caller ID spoofing, device-code phishing and MFA abuse to enter SharePoint environments. Forg365 offered a more industrialized version of the same model for Microsoft 365, including AI-assisted lures, OAuth tooling and session-cookie capture. The IRS warning to tax professionals showed why these methods matter beyond large enterprises: attackers are selecting targets according to the concentration and sensitivity of the client data they can reach.

Why we noticed

The defensive boundary is moving inward. An approved MFA prompt or valid session can look legitimate while enabling unauthorized access, so privacy protection increasingly depends on authentication-policy design, token governance, behavioral monitoring and rapid session revocation—not merely on whether MFA is enabled.

Watch for:

  • Further confirmation of organizations affected by Helix data theft.
  • Broader restrictions on device-code authentication and closer review of OAuth grants.
  • Evidence that tax and professional-services firms are adopting the IRS campaign's recommended reporting and security measures.

Breach Disclosure and Data Stewardship

Recent privacy accountability has been driven less by new national rules than by incident disclosures, technical remediation, notification decisions and follow-on litigation. Yesterday extended that pattern across private insurance records and a government property system.

Fresh developments

AssuranceAmerica's filing put nearly 7 million drivers within the scope of a breach involving insurance, claims and driver's license information. In Puerto Rico, reporting showed that approximately 1 million Social Security numbers could be retrieved from CRIM's online system without a username or password, even though the agency disputed that the incident constituted a breach requiring notice.

Why we noticed

The contrast captures a persistent compliance problem. Organizations can patch a weakness or complete a file review, but those actions do not by themselves resolve what affected people should be told. Publicly reachable data is especially difficult because the absence of confirmed exfiltration may reflect limited logging rather than proof that no one accessed it.

Watch for:

  • Regulatory or legal follow-through involving AssuranceAmerica.
  • Any independent review of CRIM's access controls, logs and notification decision.
  • Whether Puerto Rico agencies adopt stronger authentication and cybersecurity controls under existing requirements.

Sensitive Profiling and Automated Decisions

Privacy risk begins before data is stolen. It also arises when institutions create sensitive classifications, inferred traits or automated scores that shape how individuals are assessed and treated.

Fresh developments

The reported Madison Square Garden data included identity-related labels and risk ratings, turning an intrusion into scrutiny of the underlying profiling practices. Separately, Privacy International found inconsistent AI recruitment scores across repeated submissions of identical materials, including variations that could change whether a candidate was rejected or invited to interview.

Why we noticed

Both developments show that an organization's derived data can be more consequential than the information originally supplied by an individual. Labels and scores can expose sensitive judgments, affect opportunities and prove difficult to contest. That makes data minimization, reproducibility and meaningful explanation operational requirements rather than abstract ethical preferences.

Watch for:

  • Discovery or rulings in the Madison Square Garden class actions.
  • Changes to explanation, testing or human-review practices at AI recruitment vendors.
  • Regulatory attention to inconsistent automated hiring outcomes or insufficient candidate disclosures.

Final Thought

Yesterday's common thread was not a novel privacy technology, but the consequences of ordinary institutional choices: who receives trusted access, which data routes remain exposed, and what judgments about people are retained. Increasingly, those choices determine the scale of harm before an intrusion ever begins.