Fortinet
FortiBleed campaign exposing valid administrative and VPN credentials for 73,932 FortiGate firewalls
Universities, K-12 districts, and ed-tech vendors hold massive student-record databases that attract identity-theft operations and ransomware groups. Below is every education-sector breach LeakTrace has indexed.
FortiBleed campaign exposing valid administrative and VPN credentials for 73,932 FortiGate firewalls
Thousands of NHS patient records confirmed stolen during major ransomware attack disrupting healthcare
Customer records allegedly breached by threat actors operating on underground forums
Credential exposure campaign compromised verified admin credentials for 73,000+ FortiGate devices
Thousands of patient records stolen in ransomware cyberattack affecting Essex NHS trust
Ransomware attack exposed protected health data of 1.3 million people to dark web
Cyber attack exposed 607,000 records
Cyberattack exposed 12 million customer email accounts and webmail services
Ransomware attack stole thousands of NHS patient records from Essex NHS trust
Thousands of NHS patient records stolen during ransomware attack
135,000 contact records and police/government data leaked on dark web
Ransomware attack stole thousands of NHS patient records from Mid South Essex Foundation Trust
63,926 records exposed — Email addresses, IP addresses, Passwords, Support tickets and 1 more
Palo Alto Networks PAN-OS Authentication Bypass Vulnerability — Palo Alto Networks PAN-OS contains an authentication bypass vulnerability that allows attackers to bypass security restrictions and establish an unauthorize
Sloppy AI-generated npm infostealer leaked its own GitHub token, exposing the operator
269,299 records exposed — Email addresses, Names, Partial credit card data, Phone numbers and 2 more
4,851,517 records exposed — Email addresses, Job titles, Names, Phone numbers and 1 more
Nx Console Embedded Malicious Code Vulnerability — Nx Console contains an embedded malicious code vulnerability that allowed a malicious version of Nx Console to be published. The compromised extension fetched an obfusca
84,108 records exposed — Email addresses, Names, Partial credit card data, Phone numbers and 3 more
All Major LLMs Exposed to Multi-Turn Manipulation, Warn Researchers
Daemon Tools Lite Embedded Malicious Code Vulnerability — Daemon Tools contains an unspecified vulnerability that has a high impact on confidentiality, integrity, and availability.
TanStack Unspecified Vulnerability — TanStack contains an unspecified vulnerability that allowed malicious versions of the product to be published to the npm registry to publish credential-stealing malware under a truste
CERT-In urges 12-hour patching of exposed flaws as AI compresses exploitation timelines
502,597 records exposed — Email addresses, Employers, Financial transactions, Job titles and 3 more