Latest Disclosures
HSIN security network
HSIN security network breached, data exfiltrated
Nissan North America
Employee SSNs and bank data stolen via PeopleSoft
Tchap French Gov Messenger
73K government accounts and 643K messages stolen
One Medical Seniors
Clinical and demographic records of 830K patients exposed
NYC Health and Hospitals
1.8M records with biometrics and SSNs breached
Chemco Calgary
Ransomware attack by Qilin group ongoing
Cyber threat actors are infecting victims with the Vidar stealer and the XMRig
Cyber threat actors are infecting victims with the Vidar stealer and the XMRig cryptocurrency miner in a new malicious campaign
For years, account takeover (ATO) followed a predictable script. Attackers bought stolen
For years, account takeover (ATO) followed a predictable script. Attackers bought stolen credentials in bulk, ran them through automated tools, and waited for matches. Credential stuffing was cheap, scalable, and for def
KDDI Corporation
14.2M email credentials exposed across 6 ISPs
Telco giant KDDI
Japanese telecommunications giant KDDI says that millions of people had their email addresses and passwords exposed after attackers breached an email platform used by five internet service providers (ISPs) in the country
GitHub continues to be a scintillating target for attackers because it sits in the
GitHub continues to be a scintillating target for attackers because it sits in the middle of the software supply chain and gives threat actors three things they crave: source code, secrets, and automated pipelines to run
HSIN security platform
HSIN security platform breached by unauthorized party
A financially motivated operation uses lures of cracked or pirated software to deliver a
A financially motivated operation uses lures of cracked or pirated software to deliver a malware two-for-one combo for data theft and cryptomining.
The threat actor claiming responsibility
The threat actor claiming responsibility says they stole source code, encryption keys and more.
The professional services giant
The professional services giant says it contained the incident, remediated its source, and experienced no operational or service delivery impact. The post Accenture Confirms Data Breach After Hacker Claims Source Code Th
Aesthetic Surgical Images
Patient records stolen by INC_RANSOM
Chisholm Persson Ball PC
US law firm hit by Akira ransomware
Chase Jordan
Chase Jordan reports an update in the litigation stemming from a 2024 breach by Hunters International. This case has raised a number of issues about standing and negligence and has been up and down in the courts, with pl
The Gentlemen ransomware underscores a challenge many CISOs face: stopping attackers
The Gentlemen ransomware underscores a challenge many CISOs face: stopping attackers after they gain an initial foothold. Researchers say the malware can spread across enterprise networks using legitimate Windows managem