Advertisement
ShinyHunters Breaches Brinks Home, Threatens Data Leak
ShinyHunters claims a breach of Brinks Home systems, threatening to leak stolen data. This analysis covers the threat actor, potential impact, and mitigation.
RabbitMQ Flaws: OAuth Secret Leak & Cross-Tenant Data Exposure
Two RabbitMQ access control flaws enable OAuth secret leakage, cross-tenant data exposure, and potential messaging infrastructure takeover risks.
CISA GitHub Leak: Lessons from AWS Govcloud Credential Exposure
Analysis of CISA's recent GitHub leak, detailing the exposure of AWS Govcloud keys and internal credentials, and providing critical lessons for cloud security.
Squidbleed: 29-Year-Old Squid Proxy Bug Leaks Cleartext HTTP Requests
A 29-year-old heap over-read vulnerability, dubbed 'Squidbleed,' in Squid web proxy's default configuration can leak cleartext HTTP requests and credentials.
FortiBleed: 73,000 Fortinet VPN Credentials Exposed
FortiBleed leak compromises Fortinet and FortiGate VPN credentials for over 73,000 firewall URLs globally, posing significant access risks.
Tchap Messenger Breach: 73,000 French Government Accounts Exposed
Analysis of the security breach affecting the French Tchap messaging platform, exposing 73,000 government accounts and increasing phishing risks.
Advertisement
ShinyHunters Leak 234 GB of DentaQuest Data Impacting 2.6 Million
The ShinyHunters extortion group leaked 234 GB of data from DentaQuest, impacting 2.6 million individuals. Learn about the risks and how to protect PHI.
Charter Communications Data Breach: Millions of Records Exposed
ShinyHunters leaked data allegedly from Charter Communications, potentially exposing nearly 5 million customer records. Organizations must assess third-party risk.
CISA Contractor Leaked AWS GovCloud Keys on GitHub: Critical Exposure
A CISA contractor publicly exposed highly privileged AWS GovCloud and internal system credentials on GitHub, detailing CISA's software development.
Checkmarx GitHub Repository Data Leaked Following Supply Chain Attack
Checkmarx confirms internal GitHub repository data was published on the dark web following a March 2026 supply chain incident. Learn the impact and TTPs.
Vercel Data Breach: Third-Party Service Exposure Analysis
Vercel confirms a security breach involving a third-party provider after hackers claim to sell customer data. Learn the impact and mitigation steps.
McGraw Hill Data Breach: 13.5 Million Accounts Leaked by ShinyHunters
Threat actor ShinyHunters leaks 13.5 million McGraw Hill user records following a Salesforce environment breach. Includes password hashes and PII.
Rockstar Games Analytics Data Leaked via ShinyHunters Extortion
Rockstar Games analytics data has been leaked by the ShinyHunters group following a breach at third-party provider Anodot. Analysis of the supply chain risk.
Grafana AI Assistant Flaw Exposes User Data — Immediate Patch Required
Grafana patched an AI vulnerability where malicious instructions on web pages could trick its AI assistant into leaking sensitive user data. Immediate action needed.
Claude Code Source Leaked via npm Packaging Error
Anthropic confirms internal Claude Code source code was leaked due to an npm packaging error. Analysis of supply chain risks and mitigation strategies.
Citrix NetScaler CVE-2026-3055: Critical Data Leak Patch Guidance
Citrix releases critical security updates for NetScaler ADC and Gateway to address CVE-2026-3055, an unauthenticated memory overread and data leak flaw.
LexisNexis Data Breach Confirmed: 400,000 Records Leaked
LexisNexis confirms data breach following hackers' leak of 2GB of files, impacting 400,000 personal information records. Understand the implications.
Olympique Marseille Confirms Data Leak Following Heller Cyberattack
French football club Olympique de Marseille investigates a data breach after the Heller extortion group leaked 3.5 GB of sensitive player and staff records.