Advertisement
CISA Data Leak: AWS GovCloud Keys Exposed via Public GitHub Repo
Lawmakers demand answers from CISA after a contractor leaked AWS GovCloud keys and internal secrets on GitHub, prompting urgent credential rotation.
GitHub Data Breach: Analysis of TeamPCP Internal Repository Theft
GitHub confirms the theft of 4,000 internal repositories by threat actor TeamPCP. Learn the technical implications and defense strategies for security teams.
Grafana Breach After TanStack Attack: Token Rotation Failure
Grafana suffered a data breach due to a GitHub workflow token not rotated after the TanStack npm supply-chain attack, impacting user data. Learn the details.
GitHub Internal Repo Breach Claimed by TeamPCP – Code at Risk
GitHub investigates TeamPCP's claim of breaching internal repositories, potentially exposing 4,000 private codebases. Defenders must secure supply chains.
GitHub Investigates Claimed TeamPCP Breach of 4,000 Internal Repos
GitHub is investigating a potential breach of 4,000 internal repositories claimed by TeamPCP, highlighting the risk of source code leaks for enterprises.
US Healthcare Data Breaches: Millions Impacted via Tracking Pixels
Millions of patient records were exposed in major healthcare breaches at Kaiser Permanente, City of Hope, and HealthEC due to tracking pixels and system access.
Grafana Labs Breach: Coinbase Cartel Claims Data Theft — Analysis
Grafana confirms a security breach after the Coinbase Cartel group claimed to have stolen sensitive data, including customer and infrastructure information.
American Lending Center Data Breach: 123,000 Impacted by Ransomware
American Lending Center confirms a June 2023 ransomware attack compromised sensitive data of 123,000 individuals, highlighting long-term forensic challenges.
TeamPCP Threatens Sale of Mistral AI Source Code Repositories
TeamPCP hackers claim to have exfiltrated 22GB of source code from Mistral AI. This report analyzes the breach impact and API key security risks.
West Pharmaceutical Breach: Analysis of System Encryption
West Pharmaceutical Services confirms data exfiltration and system encryption in a major cyberattack. Learn about the impact and defense strategies.
Foxconn North America Ransomware Attack: Nitrogen Group Data Theft
Foxconn's North American operations confirm a ransomware attack by Nitrogen group, resulting in 8TB of data theft, including confidential documents.
716,000 Impacted by OpenLoop Health Data Breach — Impact Analysis
OpenLoop Health reports a significant data breach affecting 716,000 patients. Attackers exfiltrated SSNs and medical records during the January incident.
US Government Scrutinizes Instructure Canvas Breach and Outage
US Committee on Homeland Security investigates Instructure following a Canvas LMS data breach and service disruption affecting educational institutions.
US House Committee Probes Instructure Following Canvas Cyberattacks
The House Committee on Homeland Security seeks testimony from Instructure after the ShinyHunters group targeted the Canvas LMS, compromising student data.
South Staffordshire Water Fined £1.3M Over Clop Ransomware Breach
The UK ICO fined South Staffordshire Water £963,900 for a 2022 data breach exposing 664,000 records due to MFA failures and end-of-life software.
ShinyHunters Extorts Instructure: 3.65TB Canvas LMS Data Breach Analysis
Instructure reaches an agreement with ShinyHunters after a massive 3.65TB data breach affecting Canvas LMS users across thousands of educational institutions.
Skoda Online Shop Data Breach: Portal Vulnerability Analysis
Skoda Auto confirms a data breach affecting online shop customers. Attackers exploited a portal vulnerability to access PII including names and addresses.
NVIDIA GeForce NOW Data Breach Impacts Armenian Users via GFN.AM
NVIDIA confirms a data breach affecting GeForce NOW users in Armenia via partner GFN.AM, exposing emails and partial payment data. Learn how to respond.
Braintrust AWS Breach: Immediate AI Provider API Key Rotation Required
Braintrust prompts users to rotate API keys after unauthorized AWS account access compromised AI provider secrets. Learn about the impact and mitigation.
Zara Data Breach: 197,000 Customer Records Leaked on Hacking Forum
Spanish fashion retailer Zara suffers a significant data breach exposing PII for 197,000 customers, fueling concerns over targeted phishing and identity theft.
RansomHouse Claims Trellix Breach: Internal Data Leak Analysis
The RansomHouse extortion group claims to have breached Trellix internal systems. Analyze the potential impact of this security vendor compromise and mitigation steps.
Canvas Platform Breach: Extortion Threatens 275M Student Data
A cybercrime group's data extortion attack on the Canvas education platform disrupted services and threatens to leak data from 275 million students and faculty.
Instructure Data Breach: ShinyHunters Exposes Education Sector Vendor Risk
Analysis of the Instructure data breach by ShinyHunters, impacting educational institutions using Canvas LMS and highlighting critical third-party vendor dependencies.
Instructure Data Theft Claim: 280 Million Records from 8,800+ Schools
A hacker claims to have stolen 280 million student and staff data records from 8,809 educational institutions impacted by a breach at Instructure.