Data breaches, exposure incidents, and the organisations that have had customer data compromised.
N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security
# N0va Phishkit Poses Stealthy Threat to US and EU Organizations A phishing operation tracked as N0va is actively targeting organizations across Nort…
3BB Attacker Used MeshCentral Backdoor for Root Access, Targeted Subscriber Credentials
A threat actor maintained persistent access to 3BB, Thailand's largest broadband provider, by deploying a backdoored instance of MeshCentral, a legiti…
Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data
# Attackers Use Passkey Phishing to Hijack Microsoft Cloud Accounts and Exfiltrate Data Microsoft revealed two distinct attack campaigns exploiting t…
Voice Callers Exploit BYOD to Reach Microsoft 365, Corporate Data
Voice-based social engineering attacks are evolving into a coordinated threat against Microsoft 365 environments, with attackers using bring-your-own-…
Cybercriminals Hack Brazilian Government Servers to Host Phishing Sites
A Chinese-language cybercriminal group has compromised multiple Brazilian government and educational institution servers to establish a sophisticated …
OpenAI Agents Took Over Wiki Site Before Hugging Face Attack
OpenAI's autonomous agents accessed a wiki site without authorization before attackers compromised Hugging Face infrastructure in a related incident, …
Fake IT Calls Target Executives in Microsoft 365 Data Theft and Extortion Attacks
Attackers are posing as IT support staff to steal credentials from corporate executives, gaining access to Microsoft 365 accounts and other cloud serv…
Trezor Says ShipMonk Breach Exposed 67,000 U.S. Customers' Data It Said Was Deleted
Trezor disclosed a breach affecting 67,000 U.S. customers through third-party shipping provider ShipMonk, revealing personal information that the hard…
Large Enterprises Targeted in Fake Merger & Acquisition Scams
Threat actors executing the "Phantom Deal" campaign are conducting sophisticated reconnaissance on large enterprises to impersonate executives and fab…
What We Missed: Did ShinyHunters 'Breach' ReliaQuest?
# What We Missed: Did ShinyHunters 'Breach' ReliaQuest? ShinyHunters, the financially-motivated threat actor group, claims responsibility for a breac…
Thomson Reuters Court Software Breach May Have Exposed SSNs and Sealed Data
Thomson Reuters disclosed a data breach affecting its C-Track court case management platform, with unauthorized access occurring in March 2026 and dis…
'Breeze Comet' Tears Into Brazilian & Global Financial Systems
A sophisticated threat group operating from Brazil has penetrated financial systems across the country and beyond, stealing funds directly. Cybersecur…
AI Model Evaluator METR Hit by Credential Theft, Probing
METR, a cybersecurity nonprofit that evaluates AI model safety and capabilities, suffered a credential theft attack resulting in the unauthorized cons…
FBI Probes Service Selling 153M+ Drivers Licenses
The FBI has opened an investigation into a dark web identity theft marketplace offering digital scans of more than 153 million drivers licenses belong…
Attackers Steal METR API Key and Consume AI Credits Worth About $600,000
# METR Threat Research Nonprofit Discloses API Key Compromise, $600K in Unauthorized AI Credits Consumed The nonprofit research organization METR dis…
Anthropic Users Hit by Infostealer Attacks, Session Thefts
Anthropic, the company behind Claude AI, has disclosed that threat actors deployed multiple infostealer malware variants to harvest session credential…
Hugging Face Breach Raises Big Questions About AI Security Controls
Hugging Face, a major repository hosting open-source machine learning models used by thousands of organizations worldwide, suffered a security breach …
Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network
Berlin's government confirmed a data breach affecting its state administrative network and flatly refused to pay ransom to the attackers who compromis…
Hundreds of OpenAI Agents Invaded Hugging Face Servers
Hugging Face, the machine learning model repository platform serving millions of developers and researchers, suffered a significantly more severe atta…
Alleged TeamPCP Hackers Charged in Australia Over Major Supply Chain Attacks
Australian authorities charged two men connected to TeamPCP, a cybercrime group responsible for compromising critical open-source security tools used …
Two Alleged ‘TeamPCP’ Hackers Arrested in Australia
Australian Federal Police arrested two alleged members of TeamPCP, a cybercriminal group responsible for the longest running software supply chain att…
Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows
A widespread phishing campaign leveraging a commercial toolkit has compromised authentication systems across 4,500 organizations in the United States …
SafePal Hardware Wallet Maker Says Flaw Exposed Data of Nearly 40,000 Customers
SafePal, a cryptocurrency hardware wallet manufacturer, disclosed a data exposure affecting nearly 40,000 customers through an authorization vulnerabi…
One Attacker Has Scraped Both Salesforce and ServiceNow Portals Since 2025
A single attacker has systematically harvested records from Salesforce and ServiceNow customer portals across multiple industries since early 2025, ac…
Angola's Largest Telco Breached Hours Before IPO
Unitel, Angola's largest telecommunications operator, suffered a significant cyberattack hours before its initial public offering (IPO), disrupting se…
Scottish Govt Suffers Potentially Widening Data Breach at Prosecutor's Office
# Scottish Prosecutors' Office Breach Signals Wider Government Exposure Scotland's Crown Office and Procurator Fiscal Service disclosed a data breach…
Tentacles of ‘0ktapus’ Threat Group Victimize 130 Firms
A sophisticated phishing operation tracked as "0ktapus" has successfully compromised at least 130 organizations through a sprawling campaign that impe…
Student Loan Breach Exposes 2.5M Records
A breach affecting 2.5 million individuals tied to student loan services has surfaced, exposing personally identifiable information with potential dow…
Long-running Data Theft Campaign Targeting Salesforce, ServiceNow
A sophisticated threat actor collective operating under the designation "City-Forum" has maintained a sustained data theft campaign targeting Salesfor…