<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Data Leak</title><description>Cybersecurity articles tagged #Data Leak on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>ShinyHunters Breaches Brinks Home, Threatens Data Leak</title><link>https://runtimerebel.com/blog/shinyhunters-breaches-brinks-home-threatens-data-leak</link><guid isPermaLink="true">https://runtimerebel.com/blog/shinyhunters-breaches-brinks-home-threatens-data-leak</guid><description>ShinyHunters claims a breach of Brinks Home systems, threatening to leak stolen data. This analysis covers the threat actor, potential impact, and mitigation.</description><pubDate>Thu, 30 Jul 2026 17:31:04 GMT</pubDate><category>ShinyHunters</category><category>Brinks Home</category><category>Data Breach</category><category>Data Leak</category><category>Extortion</category><category>Cybercrime</category></item><item><title>RabbitMQ Flaws: OAuth Secret Leak &amp; Cross-Tenant Data Exposure</title><link>https://runtimerebel.com/blog/rabbitmq-flaws-oauth-secret-leak-cross-tenant-data-exposure</link><guid isPermaLink="true">https://runtimerebel.com/blog/rabbitmq-flaws-oauth-secret-leak-cross-tenant-data-exposure</guid><description>Two RabbitMQ access control flaws enable OAuth secret leakage, cross-tenant data exposure, and potential messaging infrastructure takeover risks.</description><pubDate>Tue, 14 Jul 2026 17:20:57 GMT</pubDate><category>RabbitMQ</category><category>OAuth</category><category>Access Control</category><category>Message Broker</category><category>Data Leak</category><category>Security Flaw</category><category>Cross Tenant</category></item><item><title>CISA GitHub Leak: Lessons from AWS Govcloud Credential Exposure</title><link>https://runtimerebel.com/blog/cisa-github-leak-lessons-from-aws-govcloud-credential-exposure</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-github-leak-lessons-from-aws-govcloud-credential-exposure</guid><description>Analysis of CISA&apos;s recent GitHub leak, detailing the exposure of AWS Govcloud keys and internal credentials, and providing critical lessons for cloud security.</description><pubDate>Mon, 13 Jul 2026 17:59:58 GMT</pubDate><category>CISA</category><category>GitHub</category><category>AWS GovCloud</category><category>Data Leak</category><category>Cloud Security</category><category>Credential Exposure</category><category>Secrets Management</category></item><item><title>Squidbleed: 29-Year-Old Squid Proxy Bug Leaks Cleartext HTTP Requests</title><link>https://runtimerebel.com/blog/squidbleed-29-year-old-squid-proxy-bug-leaks-cleartext-http-requests</link><guid isPermaLink="true">https://runtimerebel.com/blog/squidbleed-29-year-old-squid-proxy-bug-leaks-cleartext-http-requests</guid><description>A 29-year-old heap over-read vulnerability, dubbed &apos;Squidbleed,&apos; in Squid web proxy&apos;s default configuration can leak cleartext HTTP requests and credentials.</description><pubDate>Mon, 22 Jun 2026 17:36:48 GMT</pubDate><category>Squidbleed</category><category>Squid Proxy</category><category>Heap Over Read</category><category>HTTP Request Leak</category><category>Data Leak</category><category>Authentication Bypass</category></item><item><title>FortiBleed: 73,000 Fortinet VPN Credentials Exposed</title><link>https://runtimerebel.com/blog/fortibleed-73000-fortinet-vpn-credentials-exposed</link><guid isPermaLink="true">https://runtimerebel.com/blog/fortibleed-73000-fortinet-vpn-credentials-exposed</guid><description>FortiBleed leak compromises Fortinet and FortiGate VPN credentials for over 73,000 firewall URLs globally, posing significant access risks.</description><pubDate>Thu, 18 Jun 2026 01:08:29 GMT</pubDate><category>FortiBleed</category><category>Fortinet</category><category>FortiGate</category><category>VPN</category><category>Credentials</category><category>Data Leak</category></item><item><title>Tchap Messenger Breach: 73,000 French Government Accounts Exposed</title><link>https://runtimerebel.com/blog/tchap-messenger-breach-73000-french-government-accounts-exposed</link><guid isPermaLink="true">https://runtimerebel.com/blog/tchap-messenger-breach-73000-french-government-accounts-exposed</guid><description>Analysis of the security breach affecting the French Tchap messaging platform, exposing 73,000 government accounts and increasing phishing risks.</description><pubDate>Fri, 12 Jun 2026 09:35:13 GMT</pubDate><category>Tchap</category><category>French Government</category><category>Data Leak</category><category>Dinum</category><category>Encrypted Messaging</category></item><item><title>ShinyHunters Leak 234 GB of DentaQuest Data Impacting 2.6 Million</title><link>https://runtimerebel.com/blog/shinyhunters-leak-234-gb-of-dentaquest-data-impacting-2-6-million</link><guid isPermaLink="true">https://runtimerebel.com/blog/shinyhunters-leak-234-gb-of-dentaquest-data-impacting-2-6-million</guid><description>The ShinyHunters extortion group leaked 234 GB of data from DentaQuest, impacting 2.6 million individuals. Learn about the risks and how to protect PHI.</description><pubDate>Fri, 05 Jun 2026 13:14:00 GMT</pubDate><category>ShinyHunters</category><category>DentaQuest</category><category>Data Leak</category><category>Extortion</category><category>Healthcare Security</category></item><item><title>Charter Communications Data Breach: Millions of Records Exposed</title><link>https://runtimerebel.com/blog/charter-communications-data-breach-millions-of-records-exposed</link><guid isPermaLink="true">https://runtimerebel.com/blog/charter-communications-data-breach-millions-of-records-exposed</guid><description>ShinyHunters leaked data allegedly from Charter Communications, potentially exposing nearly 5 million customer records. Organizations must assess third-party risk.</description><pubDate>Fri, 29 May 2026 17:20:56 GMT</pubDate><category>ShinyHunters</category><category>Charter Communications</category><category>Data Breach</category><category>Extortion</category><category>Data Leak</category></item><item><title>CISA Contractor Leaked AWS GovCloud Keys on GitHub: Critical Exposure</title><link>https://runtimerebel.com/blog/cisa-contractor-leaked-aws-govcloud-keys-on-github-critical-exposure</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-contractor-leaked-aws-govcloud-keys-on-github-critical-exposure</guid><description>A CISA contractor publicly exposed highly privileged AWS GovCloud and internal system credentials on GitHub, detailing CISA&apos;s software development.</description><pubDate>Tue, 19 May 2026 00:57:26 GMT</pubDate><category>CISA</category><category>AWS GovCloud</category><category>GitHub</category><category>Data Leak</category><category>Credentials</category><category>Government Security</category><category>Supply Chain</category></item><item><title>Checkmarx GitHub Repository Data Leaked Following Supply Chain Attack</title><link>https://runtimerebel.com/blog/checkmarx-github-repository-data-leaked-following-supply-chain-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/checkmarx-github-repository-data-leaked-following-supply-chain-attack</guid><description>Checkmarx confirms internal GitHub repository data was published on the dark web following a March 2026 supply chain incident. Learn the impact and TTPs.</description><pubDate>Mon, 27 Apr 2026 16:37:34 GMT</pubDate><category>Checkmarx</category><category>GitHub</category><category>Supply Chain Attack</category><category>Data Leak</category><category>DevSecOps</category></item><item><title>Vercel Data Breach: Third-Party Service Exposure Analysis</title><link>https://runtimerebel.com/blog/vercel-data-breach-third-party-service-exposure-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/vercel-data-breach-third-party-service-exposure-analysis</guid><description>Vercel confirms a security breach involving a third-party provider after hackers claim to sell customer data. Learn the impact and mitigation steps.</description><pubDate>Sun, 19 Apr 2026 20:14:32 GMT</pubDate><category>Vercel</category><category>Third Party Risk</category><category>Data Leak</category><category>IntelBroker</category></item><item><title>McGraw Hill Data Breach: 13.5 Million Accounts Leaked by ShinyHunters</title><link>https://runtimerebel.com/blog/mcgraw-hill-data-breach-13-5-million-accounts-leaked-by-shinyhunters</link><guid isPermaLink="true">https://runtimerebel.com/blog/mcgraw-hill-data-breach-13-5-million-accounts-leaked-by-shinyhunters</guid><description>Threat actor ShinyHunters leaks 13.5 million McGraw Hill user records following a Salesforce environment breach. Includes password hashes and PII.</description><pubDate>Thu, 16 Apr 2026 12:33:08 GMT</pubDate><category>McGraw Hill</category><category>ShinyHunters</category><category>Salesforce Breach</category><category>Data Leak</category><category>Credential Harvesting</category></item><item><title>Rockstar Games Analytics Data Leaked via ShinyHunters Extortion</title><link>https://runtimerebel.com/blog/rockstar-games-analytics-data-leaked-via-shinyhunters-extortion</link><guid isPermaLink="true">https://runtimerebel.com/blog/rockstar-games-analytics-data-leaked-via-shinyhunters-extortion</guid><description>Rockstar Games analytics data has been leaked by the ShinyHunters group following a breach at third-party provider Anodot. Analysis of the supply chain risk.</description><pubDate>Mon, 13 Apr 2026 20:25:13 GMT</pubDate><category>Rockstar Games</category><category>ShinyHunters</category><category>Anodot</category><category>Data Leak</category><category>Supply Chain</category></item><item><title>Grafana AI Assistant Flaw Exposes User Data — Immediate Patch Required</title><link>https://runtimerebel.com/blog/grafana-ai-assistant-flaw-exposes-user-data-immediate-patch-required</link><guid isPermaLink="true">https://runtimerebel.com/blog/grafana-ai-assistant-flaw-exposes-user-data-immediate-patch-required</guid><description>Grafana patched an AI vulnerability where malicious instructions on web pages could trick its AI assistant into leaking sensitive user data. Immediate action needed.</description><pubDate>Tue, 07 Apr 2026 20:20:18 GMT</pubDate><category>Grafana</category><category>AI</category><category>Data Leak</category><category>Vulnerability</category><category>Information Disclosure</category><category>Instruction Injection</category></item><item><title>Claude Code Source Leaked via npm Packaging Error</title><link>https://runtimerebel.com/blog/claude-code-source-leaked-via-npm-packaging-error</link><guid isPermaLink="true">https://runtimerebel.com/blog/claude-code-source-leaked-via-npm-packaging-error</guid><description>Anthropic confirms internal Claude Code source code was leaked due to an npm packaging error. Analysis of supply chain risks and mitigation strategies.</description><pubDate>Wed, 01 Apr 2026 08:37:04 GMT</pubDate><category>Anthropic</category><category>Npm Registry</category><category>Data Leak</category><category>Supply Chain Security</category><category>Claude Code</category></item><item><title>Citrix NetScaler CVE-2026-3055: Critical Data Leak Patch Guidance</title><link>https://runtimerebel.com/blog/citrix-netscaler-cve-2026-3055-critical-data-leak-patch-guidance</link><guid isPermaLink="true">https://runtimerebel.com/blog/citrix-netscaler-cve-2026-3055-critical-data-leak-patch-guidance</guid><description>Citrix releases critical security updates for NetScaler ADC and Gateway to address CVE-2026-3055, an unauthenticated memory overread and data leak flaw.</description><pubDate>Tue, 24 Mar 2026 08:21:05 GMT</pubDate><category>Citrix NetScaler</category><category>CVE-2026-3055</category><category>CVE-2026-4368</category><category>Memory Overread</category><category>Data Leak</category></item><item><title>LexisNexis Data Breach Confirmed: 400,000 Records Leaked</title><link>https://runtimerebel.com/blog/lexisnexis-data-breach-confirmed-400000-records-leaked</link><guid isPermaLink="true">https://runtimerebel.com/blog/lexisnexis-data-breach-confirmed-400000-records-leaked</guid><description>LexisNexis confirms data breach following hackers&apos; leak of 2GB of files, impacting 400,000 personal information records. Understand the implications.</description><pubDate>Wed, 04 Mar 2026 20:15:54 GMT</pubDate><category>LexisNexis</category><category>Data Breach</category><category>Personal Information</category><category>Data Leak</category><category>Identity Theft</category></item><item><title>Olympique Marseille Confirms Data Leak Following Heller Cyberattack</title><link>https://runtimerebel.com/blog/olympique-marseille-confirms-data-leak-following-heller-cyberattack</link><guid isPermaLink="true">https://runtimerebel.com/blog/olympique-marseille-confirms-data-leak-following-heller-cyberattack</guid><description>French football club Olympique de Marseille investigates a data breach after the Heller extortion group leaked 3.5 GB of sensitive player and staff records.</description><pubDate>Thu, 26 Feb 2026 16:24:27 GMT</pubDate><category>Olympique De Marseille</category><category>Heller Group</category><category>Data Leak</category><category>Sports Industry</category><category>Extortion</category><category>France</category></item></channel></rss>