Zoom Communications (2026)
780K enterprise meeting recordings and transcripts accessed via compromised admin portal
2026 continues the year-over-year growth trend in confirmed disclosures. The list below updates as new breaches are reported by Verizon DBIR partners and major security news outlets.
780K enterprise meeting recordings and transcripts accessed via compromised admin portal
780K customer records from wealth management division exposed via insider threat
480K investor records from Canadian asset manager exposed via compromised fund admin portal
BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA) OS Command Injection Vulnerability — BeyondTrust Remote Support (RS) and Privileged Remote Access (PRA)contain an OS command injection vulnerability. Suc
6.2M customer records including passport and bank account numbers leaked by ShinyHunters
Hundreds of thousands of users have downloaded malicious AI extensions masquerading as ChatGPT, Gemini, Grok and others, warn cybersecurity researchers at LayerX
Defense subcontractor breach exposes classified program metadata and personnel clearance records
Notepad++ Download of Code Without Integrity Check Vulnerability — Notepad++ when using the WinGUp updater, contains a download of code without integrity check vulnerability that could allow an attacker to intercept or r
Accenture Cybersecurity warns over difficult to detect, “sophisticated toolset” being deployed as part of extortion campaigns
870K SkyMiles member records and passport data exposed via compromised CrowdStrike integration
Microsoft Configuration Manager SQL Injection Vulnerability — Microsoft Configuration Manager contains an SQL injection vulnerability. An unauthenticated attacker could exploit this vulnerability by sending specially cra
890K unemployment claimant records exposed via compromised benefits administration portal
290K driver and rider records exposed via compromised third-party background check vendor
SolarWinds Web Help Desk Security Control Bypass Vulnerability — SolarWinds Web Help Desk contains a security control bypass vulnerability that could allow an unauthenticated attacker to gain access to certain restricted
Apple Multiple Buffer Overflow Vulnerability — Apple iOS, macOS, tvOS, watchOS, and visionOS contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow an attacker w
5.9M patient records exposed after legacy Cerner migration database left unsecured on Oracle Cloud
Campaign combines stolen Telegram accounts, fake Zoom calls and ClickFix attacks to deploy infostealer malware
2.1M pharmacy patient records exposed via compromised health services vendor
680K European cardholder records exposed via compromised transaction processing node
1,017 records exposed — Chat logs, Email addresses, IP addresses, Usernames
Picus Security warns of the increasingly sophisticated ways malicious activity is staying hidden
5,600 records exposed — Dates of birth, Email addresses, Names, Places of birth and 1 more
190K student records exposed
450K patient records exposed in POS breach