#data-breach

[ follow ]
Information security
fromDataBreaches.Net
9 hours ago

ShinyHunters claims to have compromised Resecurity, but it looks like they fell for a honeypot - DataBreaches.Net

Threat actors claim full access to REsecurity systems, exfiltrating internal chats, employee data, client lists, and plans; REsecurity says data were honeypots, no customer impact.
Privacy technologies
fromDataBreaches.Net
1 day ago

European Space Agency confirms breach of "external servers" - DataBreaches.Net

Attackers breached ESA servers outside its corporate network, exposing unclassified collaborative engineering information.
Privacy professionals
fromDataBreaches.Net
1 day ago

NZ: ManageMyHealth data breach: More than 108k users potentially affected - DataBreaches.Net

A data breach at ManageMyHealth likely affected between 108,000 and 126,000 registered users of the patient portal.
fromTheregister
1 day ago

Cybercrook claims to sell critical info about utilities

The crim says the haul spans more than 800 classified raw LiDAR point cloud files in .las format ranging from 100 MB to 2 GB each; full coverage of transmission line corridors and substations, which includes layers for bare earth, vegetation, conductors, and structures; high-resolution orthophotos in .ecw format; MicroStation design files and PTC settings; large vegetation feature files in .xyz format; and other files from active projects.
US news
#cyberattack
fromIT Pro
1 month ago
Information security

Impact of Asahi cyber attack laid bare as company confirms 1.5 million customers exposed

fromIT Pro
1 month ago
Information security

Impact of Asahi cyber attack laid bare as company confirms 1.5 million customers exposed

#cybersecurity
fromDataBreaches.Net
3 days ago
Privacy professionals

Attorney General James Secures $500,000 from Capital Region Health Care Provider for Failing to Protect Patients' Information - DataBreaches.Net

OrthopedicsNY paid $500,000 in penalties after a cyberattack exposed sensitive data of about 656,000 patients and employees due to inadequate security.
#ransomware
fromZDNET
4 days ago
Information security

Massive Aflac breach exposed millions of SSNs and other data - get free protection today

fromTechCrunch
1 month ago
Information security

Fintech firm Marquis alerts dozens of US banks and credit unions of a data breach after ransomware attack | TechCrunch

fromZDNET
4 days ago
Information security

Massive Aflac breach exposed millions of SSNs and other data - get free protection today

fromTechCrunch
1 month ago
Information security

Fintech firm Marquis alerts dozens of US banks and credit unions of a data breach after ransomware attack | TechCrunch

Law
fromDataBreaches.Net
4 days ago

Software company lacked 'downstream' liability for data breach - DataBreaches.Net

Barracuda cannot be held downstreamly liable for Zoll's data-breach-related class-action settlement; equitable indemnification failed without a derivative or vicarious relationship.
EU data protection
fromDataBreaches.Net
4 days ago

French software company fined $2 million for cyber failings leading to data breach - DataBreaches.Net

Nexpublica France was fined €1.7 million by CNIL for inadequate cybersecurity after a portal exposed third-party documents and sensitive data.
Information security
fromTheregister
5 days ago

Crims punish Wired subscribers by publishing personal info

Conde Nast subscriber data was leaked after a criminal group published millions of email addresses and threatened to release 40+ million more.
#coupang
fromDataBreaches.Net
5 days ago
E-Commerce

South Korean retail giant Coupang to compensate $1.1 billion to affected users over data breach - DataBreaches.Net

fromTechCrunch
3 weeks ago
Information security

CEO of South Korean retail giant Coupang resigns after massive data breach | TechCrunch

fromTechCrunch
1 month ago
Information security

Korea's Coupang says data breach exposed nearly 34M customers' personal information | TechCrunch

fromDataBreaches.Net
5 days ago
E-Commerce

South Korean retail giant Coupang to compensate $1.1 billion to affected users over data breach - DataBreaches.Net

fromTechCrunch
3 weeks ago
Information security

CEO of South Korean retail giant Coupang resigns after massive data breach | TechCrunch

fromTechCrunch
1 month ago
Information security

Korea's Coupang says data breach exposed nearly 34M customers' personal information | TechCrunch

Information security
fromTechzine Global
5 days ago

Dataset containing data from Wired circulating on hacker forums

Claimed theft of over 2.36 million Wired subscription records and additional Condé Nast publication data was offered on hacker forums and appears authentic.
#supply-chain-attack
fromWIRED
5 days ago
Information security

The Worst Hacks of 2025

Breaches exploited third-party Salesforce integrations and exposed millions of records, driven by consolidated threat actors like Scattered Lapsus$ Hunters.
fromZDNET
3 weeks ago
Artificial intelligence

OpenAI user data was breached, but changing your password won't help - here's why

Customer data from OpenAI was exfiltrated via a Mixpanel supply-chain breach that affected API documentation visitors, causing minimal but notable impact.
fromZDNET
3 weeks ago
Artificial intelligence

OpenAI user data was breached, but changing your password won't help - here's why

Video games
fromGadgets 360
6 days ago

Rainbow Six Siege Servers Still Down as Ubisoft Performs Rollback

Ubisoft is rolling back player data after a large-scale breach in Rainbow Six Siege but provides no timeline for full server restoration.
Video games
fromThe Verge
6 days ago

Ubisoft shuts down 'Rainbow Six Siege' servers following hack

Hackers gained control of Rainbow Six Siege systems, granted players 2 billion R6 Credits, and Ubisoft shut down servers and marketplace while addressing the breach.
Information security
fromDataBreaches.Net
6 days ago

Coinbase Discloses Arrest Of Former Customer Agent Over Data Breach - Report - DataBreaches.Net

A former Coinbase customer service contractor was arrested in India after hackers bribed representatives or contractors to access customer data, prompting layoffs and disclosure criticism.
Information security
fromTheregister
1 week ago

21K Nissan customers' data stolen in Red Hat raid

About 21,000 Nissan customers had personal data exposed after unauthorized access to a Red Hat-managed server, including names, addresses, phone numbers, and partial emails.
fromTechCrunch
1 week ago

US insurance giant Aflac says hackers stole personal and health data of 22.6 million | TechCrunch

On Tuesday, the company confirmed it has begun notifying around 22.65 million whose data was stolen during the cyberattack. In a filing with the Texas attorney general, Aflac said that the stolen data includes customer names, dates of birth, home addresses; government-issued ID numbers (such as passports and state ID cards) and driver's license numbers, and Social Security numbers; as well as medical and health insurance information.
Information security
#soundcloud
Privacy professionals
fromTechzine Global
1 week ago

Data of 21,000 Nissan customers leaked via Red Hat

Nissan customer data for about 21,000 people was exposed due to a Red Hat breach, revealing names, addresses, phones, and emails; no financial data exposed.
Privacy professionals
fromBloomberglaw
1 week ago

Horizontal Integration Evades Worker's Lawsuit Over Data Breach

A former Horizontal Integration employee lacked legal standing to sue after failing to allege that his personal information was compromised in the July 2024 data breach.
France news
fromwww.theguardian.com
1 week ago

France's national post office hit by suspected cyberattack

France's national post office and its banking service suffered a DDoS attack that disrupted online services, deliveries, and banking access ahead of Christmas.
Information security
fromTheregister
1 week ago

South Korea to require face scans to buy a SIM

South Korea will require facial-recognition verification for new mobile subscribers to prevent account registration with stolen data and reduce phone-based scams.
Information security
fromWIRED
2 weeks ago

Hackers Stole Millions of PornHub Users' Data for Extortion

US border and law-enforcement agencies are expanding surveillance capabilities while AI tools enable sophisticated scams and a major breach exposed PornHub user data.
fromwww.theguardian.com
2 weeks ago

The Com: the growing cybercrime network behind recent Pornhub hack

Ransomware hacks, data theft, crypto scams and sextortion cover a broad range of cybercrimes carried out by an equally varied list of assailants. But there is also an English-speaking criminal ecosystem carrying out these activities that defies conventional categorisation. Nonetheless, it does have a name: the Com. Short for community, the Com is a loose affiliation of cyber-criminals, largely native English language speakers typically aged from 16 to 25.
Information security
Information security
fromSecuritymagazine
2 weeks ago

630M Passwords Stolen, FBI Reveals: What This Says About Credential Value

A seized dataset of 630 million stolen credentials added to Have I Been Pwned included 46 million previously unseen vulnerable passwords, highlighting persistent credential risk.
#cyber-attack
#pornhub
#mixpanel
fromTechCrunch
2 weeks ago
Information security

Hacking group says it's extorting Pornhub after stealing users' viewing data | TechCrunch

fromTechCrunch
1 month ago
Information security

A data breach at analytics giant Mixpanel leaves a lot of open questions | TechCrunch

fromTechCrunch
2 weeks ago
Information security

Hacking group says it's extorting Pornhub after stealing users' viewing data | TechCrunch

fromTechCrunch
1 month ago
Information security

A data breach at analytics giant Mixpanel leaves a lot of open questions | TechCrunch

Information security
fromTheregister
2 weeks ago

Trio of breaches spills data belonging to millions

Multiple major services experienced data exposures through a third-party analytics provider and other breaches, affecting millions while claiming no passwords or payment information were leaked.
Business
fromZDNET
2 weeks ago

You have days left to claim your AT&T data breach settlement of up to $7,500 - here's how

Current or former AT&T customers can file claims by Dec. 18, 2025 to receive up to $5,000 (2019 breach) and $2,500 (2024 Snowflake hack).
Information security
fromForbes
3 weeks ago

4.3 Billion Work Profiles Exposed: Scammers Now Know Where You Work

A 16TB unsecured MongoDB exposed nearly 4.3 billion professional records, enabling large-scale, AI-driven social engineering and identity-targeted scams.
Privacy professionals
fromTechCrunch
3 weeks ago

Data breach at credit check giant 700Credit affects at least 5.6 million | TechCrunch

A 700Credit data breach exposed names, addresses, birthdates, and Social Security numbers of at least 5.6 million people, with stolen data collected May–October 2025.
Information security
fromTechCrunch
3 weeks ago

Flaw in photo booth maker's website exposes customers' pictures | TechCrunch

A photo-booth company exposes customers' photos and videos online due to a website storage vulnerability, allowing easy mass download.
fromwww.standard.co.uk
3 weeks ago

London cinema chain Curzon warns customer data including card digits may have been exposed in technical glitch

Curzon cinema has admitted a major app failure that left dozens of customers' personal details exposed to complete strangers. The upmarket cinema chain which runs 10 venues across London plus its Curzon Home Cinema streaming service said the error meant other users could see people's names, emails, phone numbers, dates of birth, profile photos and membership tiers. In some cases, even the last four digits of saved bank cards were visible.
Information security
#lastpass
fromwww.itpro.com
3 weeks ago
Information security

LastPass hit with ICO fine after 2022 data breach exposed 1.6 million users here's how the incident unfolded

fromwww.itpro.com
3 weeks ago
Information security

LastPass hit with ICO fine after 2022 data breach exposed 1.6 million users here's how the incident unfolded

#security-misconfiguration
Information security
fromTechCrunch
3 weeks ago

Exclusive: Petco takes down Vetco website after exposing customers' personal information

A Petco veterinary site exposed extensive customer and pet medical records and personal data accessible without login, with at least one record indexed by Google.
fromTechCrunch
3 weeks ago

FTC upholds ban on stalkerware founder Scott Zuckerman | TechCrunch

A stalkerware maker who was banned from the surveillance industry after a data breach that exposed the personal information of its customers, as well as the people they were spying on, will not be able to go back to selling the invasive software, according the U.S. Federal Trade Commission. The FTC denied a request to cancel that ban made by Scott Zuckerman, the founder of consumer spyware company Support King and its subsidiaries SpyFone and OneClickMonitor.
Privacy technologies
fromTechCrunch
3 weeks ago

Petco's security lapse affected customers' SSNs, drivers' licenses and more | TechCrunch

Last week, pet products and services giant Petco confirmed that it experienced a data breach involving customers' personal information, without specifying what type of data was affected. On Friday, in a legally required filing with Texas' attorney general's office, Petco reported that the affected data included: names, Social Security numbers, driver's license numbers, financial information such as account numbers, credit or debit card numbers, and dates of birth.
Privacy professionals
Information security
fromTheregister
3 weeks ago

Barts Health seeks legal block after Clop steals NHS data

Barts Health had patient and staff data stolen via Clop's exploitation of Oracle EBS and is seeking a High Court order to block publication.
fromWIRED
4 weeks ago

Security News This Week: Oh Crap, Kohler's Toilet Cameras Aren't Really End-to-End Encrypted

An AI image creator startup left its database unsecured, exposing more than a million images and videos its users had created-the "overwhelming majority" of which depicted nudes and even nude images of children. A US inspector general report released its official determination that Defense Secretary Pete Hegseth put military personnel at risk through his negligence in the SignalGate scandal, but recommended only a compliance review and consideration of new regulations.
Privacy technologies
Artificial intelligence
fromWIRED
1 month ago

Huge Trove of Nude Images Leaked by AI Image Generator Startup's Exposed Database

An AI image generator startup left over one million images and videos publicly accessible, exposing nonconsensual nudified images including minors' faces swapped onto adult bodies.
#clop
Privacy professionals
fromTheregister
1 month ago

Kensington and Chelsea Council confirms data breach

Kensington and Chelsea Council confirmed attackers copied and removed data during a cyber incident, prompting residents to monitor accounts and communications closely.
Privacy professionals
fromTheregister
1 month ago

FTC slaps edtech vendor after breach exposes 10M students

Illuminate Education failed to secure cloud-stored records, exposing sensitive data of 10.1 million students due to lax controls, plaintext storage, and delayed breach notifications.
UK politics
fromwww.theguardian.com
1 month ago

Taliban used discarded UK kit to track down Afghans who worked with west, inquiry hears

The UK left sensitive technology and data in Afghanistan, enabling the Taliban to trace and endanger Afghans who assisted Western forces.
Information security
fromTheregister
1 month ago

Brsk confirms breach as bidding begins for 230K+ records

British telco Brsk is investigating an unauthorized database breach exposing basic customer contact information for over 230,000 records, with affected customers offered protections.
Information security
fromIT Pro
1 month ago

OpenAI hailed for 'swift move' in terminating Mixpanel ties after data breach hits developers

A Mixpanel security breach exposed OpenAI developer account names, emails, location details, and limited analytics; OpenAI removed Mixpanel and is notifying affected developers.
Information security
fromTheregister
1 month ago

OpenAI dumps Mixpanel after analytics breach hits API users

OpenAI API platform users had profile-related account data exposed in a Mixpanel breach; ChatGPT-only users are generally unaffected unless they use the API.
Information security
fromBusiness Insider
1 month ago

OpenAI says hackers stole data from its analytics partner

Hackers stole some developer profile data from Mixpanel, exposing names, emails, and approximate locations of certain OpenAI API users and prompting phishing warnings.
Information security
fromTheregister
1 month ago

US emergency alert systems down after cyberattack

A cyberattack on Crisis24's CodeRED emergency-alert platform disrupted alerts nationwide, exposed personal data, and prompted municipalities to seek replacements or temporary communication methods.
fromTheregister
1 month ago

Calls grow for inquiry into UK data watchdog after MoD leak

Their demand lands amid fierce criticism of the regulator's decision not to formally investigate the Ministry of Defence over what has been described as the most serious data breach in British history: the leaking of a spreadsheet revealing the identities and locations of more than 19,000 Afghans fleeing the Taliban. Information Commissioner John Edwards defended his stance at a DSIT-hosted hearing last month, insisting the incident was a "one-off" error rather than evidence of systemic non-compliance inside the MoD.
EU data protection
Information security
fromwww.bbc.com
1 month ago

Scammers hacked her phone and stole thousands - so how did they get her details?

Data breaches increase risk of targeted fraud such as SIM-swap attacks that let criminals control phones and seize online accounts.
#situsamc
fromTechCrunch
1 month ago
Information security

US banks scramble to assess data theft after hackers breach financial tech firm | TechCrunch

fromTechCrunch
1 month ago
Information security

US banks scramble to assess data theft after hackers breach financial tech firm | TechCrunch

Information security
fromComputerworld
1 month ago

How has cloud flipped the regular security narrative?

In cloud environments, compromised identity credentials and excessive permissions allow attackers to bypass defenses and exfiltrate massive sensitive data across interconnected services.
Information security
fromTechCrunch
1 month ago

Google says hackers stole data from 200 companies following Gainsight breach | TechCrunch

Hackers stole Salesforce-stored data from over 200 company instances via Gainsight apps in a large-scale supply-chain breach.
fromwww.bbc.com
1 month ago

Teens plead not guilty over TfL cyber attack

Thalha Jubair 19, from East London, and Owen Flowers, 18, from Walsall in the West Midlands spoke only to confirm their names and enter pleas at the brief hearing. They are both charged with conspiring to commit unauthorised acts against Transport for London (TfL) under the Computer Misuse Act. In addition, Mr Flowers is accused of attempting to hack computer systems belonging to California-based Sutter Health and another US company, SSM Healthcare Corporation. Mr Jubair has also been charged with failing to provide passwords for his devices.
UK news
Information security
fromSecuritymagazine
1 month ago

Logitech Confirms Data Breach, Security Leaders Respond

Logitech experienced a data breach via a third-party zero-day exploit; stolen data likely included limited employee, consumer, customer, and supplier information without sensitive financial identifiers.
Information security
fromTechCrunch
1 month ago

Salesforce says some of its customers' data was accessed after Gainsight breach | TechCrunch

Customer data in Salesforce connected through Gainsight-published applications was compromised, prompting investigations and a claim of responsibility by the ShinyHunters hacking group.
[ Load more ]