Fortinet
FortiBleed campaign exposed valid admin and VPN credentials for 73,932 FortiGate firewalls
Law firms hold the most sensitive corporate data outside the client itself — M&A, IP, litigation, settlements. They are systematically targeted by both criminal and state actors. Below is every law-firm breach LeakTrace has indexed.
FortiBleed campaign exposed valid admin and VPN credentials for 73,932 FortiGate firewalls
Cyberattack resulted in incorrect water bill charges up to $1,800
24 million individuals' personal and financial data compromised in October 2024 breach; €42 million fine
October 2024 breach compromised personal data of over 24 million individuals including sensitive financial information due to security vulnerabilities
Cyberattack resulted in incorrect water billing charges to residents
October 2024 data breach leveraging VPN and Microsoft 365 security holes, attributed to Chinese state actors
Sensitive customer data from thousands of online stores stolen via CosmicSting exploitation
October 2024 breach compromised personal data of over 24 million individuals, including sensitive financial information
October 2024 breach compromised personal data of over 24 million individuals including sensitive financial information
Breach in Oct 2024 compromised personal data of over 24 million individuals including financial data
Unauthorized access to systems, attack leveraged VPN and Microsoft 365 security holes, attributed to Chinese state actors
October 2024 breach compromising personal data of 24+ million individuals including sensitive financial information; GDPR violations
Unauthorized access to systems exploiting VPN and Microsoft 365 vulnerabilities, attributed to Chinese state actors
Hackers breached facility supplying heat to 50,000 residents via private APN access point
53,070 passwords associated with U.S. government email domains exposed in public sources since early 2024, including White House credentials
Data breach in October 2024 compromised personal data of over 24 million individuals including sensitive financial information
GDPR data breach in October 2024 compromised personal data of over 24 million individuals including sensitive financial information.
October 2024 breach compromised 24+ million individuals' personal and financial data; fined €42M for GDPR violations
Thousands of civil servants' passwords and White House-linked credentials exposed since early 2024
October data breach leveraging VPN and Microsoft 365 security holes, attributed to Chinese state actors
French ISP hacked; threat actor claimed to have sold customer data; breach confirmed October 2024
GDPR breach in October 2024 compromised personal data of over 24 million individuals including financial data; fined €42 million
722,860 records exposed — Device information, Email addresses, IP addresses, Names and 3 more
1,369,485 records exposed — Email addresses, IP addresses, Passwords, Usernames