Valve (via CEVA Logistics)
European logistics partner breached; customer names, addresses, and order data exposed for Steam hardware customers
2026 continues the year-over-year growth trend in confirmed disclosures. The list below updates as new breaches are reported by Verizon DBIR partners and major security news outlets.
European logistics partner breached; customer names, addresses, and order data exposed for Steam hardware customers
Hacking group claimed mass data theft via software vulnerability exploitation
Hacking group claimed mass data theft via software vulnerability exploitation
Hacking group claimed mass data theft via software vulnerability exploitation
3.7M patients' medical records stolen in cyberattack, one of largest healthcare breaches this year
Hacking group claimed mass data theft via software vulnerability exploitation
CEVA Logistics breach exposes names and addresses of European Steam hardware buyers
Suspicious activity detected on servers, Diligence, Metabase API, and Newsdesk services taken offline
200 accounts compromised in hacking incident, SharePoint vulnerabilities suspected
Patient information exposed in data breach
Large-scale data theft claimed by hacking group exploiting software vulnerabilities across multiple targets
6000 diplomat records stolen over 10 months
Cyberattack exposed personal information of Xfinity customers; $117.5 million settlement reached
Private equity firm confirms data breach amid hacking wave targeting financial companies
3.7 million patients' medical records stolen in data breach, one of largest healthcare breaches this year
39,798 customers exposed with names, addresses, and phone numbers leaked
200 accounts compromised after anomalies detected in on-premises Microsoft servers
135,000 contact records of police and government officials leaked on dark web by ExfilSquad
Third-party breach exposed shipping addresses of 14,000 hardware wallet buyers in seven countries
At least 1.2 million individuals impacted; names, addresses, phone numbers, Social Security numbers and financial information stolen
221 million exposed login records from state systems identified, MFA mandate sought