Personal Health Records Are the Most Valuable Stolen Data at $300 Per Record, Study Finds
By
@cyberresearch.bsky.social
Hand-rolled, kettle-boiled, baked to perfection. Worth every minute at the bakery.
Summary
Security researchers analyzed 348 real data breach listings from dark and clear web marketplaces (2008-2026) to determine the most valuable types of stolen data. Personal health records are the most valuable at approximately $300 per record, followed by PINs at $196. Surprisingly, credit card numbers rank only eighth at $17 per record, despite receiving disproportionate attention from both the public and organizational security investments.
Key quotes
· 3 pulledWe actually found that personal health records are the most valuable to threat actors, commanding approximately $300 per record.
Credit card numbers, which occupy an outsized share of both public attention and organizational security investment, rank eighth at just $17.
What is the most valuable type of data to threat actors? To answer this question, we analyzed 348 real data breach listings spanning from 2008 to 2026 from dark and clear web marketplaces.
You might also wanna read
Security Flaw in ChatGPT for Google Sheets Enables Data Exfiltration via Prompt Injection
OpenAI's ChatGPT extension for Google Sheets, which has over 185,000 downloads in less than a month, is vulnerable to indirect prompt inject
promptarmor.com·11h agoPrompt Injection Attacks: The Top Security Threat Hijacking AI Chatbots
Prompt injection attacks are a critical security vulnerability in AI systems where hidden instructions within user data (like emails or docu
Quantum computing's security threats demand urgent preparation from IT professionals
The article discusses the impending quantum computing revolution and its dual nature: promising transformative advances while simultaneously
zdnet.com·15h agoCISA warns security teams of wave of attacks targeting software supply chain credentials
CISA has issued a warning urging security teams to check for software development compromises, specifically regarding a wave of attacks targ
Security Researchers Expose Weak Encryption in Canon Enterprise Printers
During a network security assessment, security researchers discovered that Canon enterprise printers configured with default administrator c
securityboulevard.com·1d agoNew browser-based side-channel attack uses SSD activity analysis to spy on users
Researchers have discovered a new browser-based side-channel attack that can spy on users by analyzing SSD (Solid State Drive) activity thro
arstechnica.com·1d ago