Vercel
OAuth supply chain compromise exposing environment variables through trusted third-party apps
SaaS platforms, cloud providers, developer tooling, and app-layer infrastructure are concentrated attack surfaces. One tech vendor breach can expose thousands of downstream customers. Below is every tech-sector breach LeakTrace has indexed.
OAuth supply chain compromise exposing environment variables through trusted third-party apps
1,525 individuals affected; SSNs and medical records exposed
US agency breached through Cisco vulnerability, FIRESTARTER backdoor allowed access through March
Google Dawn Use-After-Free Vulnerability — Google Dawn contains an use-after-free vulnerability that could allow a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML pag
Ransomware attack disabled county systems for over a week; $250K restoration
Data breach on April 21, 2026; personal information exposed; company offers $1 million identity theft cover
73,932 FortiGate firewall systems exposed with valid administrative and VPN credentials
Cyberattack exposed 19 million records containing personal data linked to national identity
Single hacker exploited Claude Code and OpenAI platforms to breach 9 Mexican government agencies
75,000 firewalls compromised exposing global enterprises
Cyberattack exposed approximately 607,000 records
Unnamed US department breached via Cisco vulnerability, FIRESTARTER backdoor allowed persistent access
2025 ransomware attack stole 672,000 records including names, addresses and card numbers
Cyberattack exposed 19 million records from French national identity agency
Confidential health records from 500k Britons exposed and offered for sale on Chinese website
Unnamed U.S. department breached through Cisco vulnerability; FIRESTARTER backdoor provided persistent access through March 2026
US federal department breached through Cisco vulnerability allowing FIRESTARTER backdoor malware access through March 2026
Breach through compromised Anodot Snowflake access by ShinyHunters group; 165 organizations affected in cascading attack.
US agency breached through Cisco vulnerability; FIRESTARTER backdoor allowed access through March
Data breach involving information held by third-party vendor
Single hacker compromised 9 government agencies using Claude Code and OpenAI tools
Major cyberattack on France's identity agency exposed 19 million personal records
ShinyHunters breached Rockstar Games via Snowflake; 165 organizations affected in supply chain attack
Insider incident data breach with limited impact