<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Third Party Risk</title><description>Cybersecurity articles tagged #Third Party Risk on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Scottish Government Data Breach at Prosecutor&apos;s Office via Third Party</title><link>https://runtimerebel.com/blog/scottish-government-data-breach-at-prosecutor-s-office-via-third-party</link><guid isPermaLink="true">https://runtimerebel.com/blog/scottish-government-data-breach-at-prosecutor-s-office-via-third-party</guid><description>The Scottish Crown Office and Procurator Fiscal Service (COPFS) suffered a data breach linked to a third-party supplier, risking sensitive personal data.</description><pubDate>Sat, 15 Aug 2026 16:15:22 GMT</pubDate><category>Data Breach</category><category>Third Party Risk</category><category>Supply Chain Attack</category><category>Personal Data</category><category>Scottish Government</category></item><item><title>Amgen Cloud Data Breach: Patient Health and Proprietary Data Exposed</title><link>https://runtimerebel.com/blog/amgen-cloud-data-breach-patient-health-and-proprietary-data-exposed</link><guid isPermaLink="true">https://runtimerebel.com/blog/amgen-cloud-data-breach-patient-health-and-proprietary-data-exposed</guid><description>Amgen confirms a data breach exposed patient health and corporate data stored in third-party cloud systems. Understand the impact and mitigation.</description><pubDate>Sat, 01 Aug 2026 06:30:31 GMT</pubDate><category>Amgen</category><category>Data Breach</category><category>Cloud Security</category><category>Healthcare</category><category>Pharmaceutical</category><category>Patient Data</category><category>Third Party Risk</category></item><item><title>ShinyHunters Claims Ernst &amp; Young Hack: Analysis of Third-Party Risks</title><link>https://runtimerebel.com/blog/shinyhunters-claims-ernst-young-hack-analysis-of-third-party-risks</link><guid isPermaLink="true">https://runtimerebel.com/blog/shinyhunters-claims-ernst-young-hack-analysis-of-third-party-risks</guid><description>Ernst &amp; Young faces data theft claims from ShinyHunters following a breach of a third-party platform. Learn about the impact and vendor security mitigation.</description><pubDate>Wed, 29 Jul 2026 06:32:39 GMT</pubDate><category>ShinyHunters</category><category>Ernst Young</category><category>Third Party Risk</category><category>Data Exfiltration</category><category>Financial Services</category></item><item><title>Coca-Cola Subsidiary Fairlife Impacted by Ransomware Data Theft</title><link>https://runtimerebel.com/blog/coca-cola-subsidiary-fairlife-impacted-by-ransomware-data-theft</link><guid isPermaLink="true">https://runtimerebel.com/blog/coca-cola-subsidiary-fairlife-impacted-by-ransomware-data-theft</guid><description>The Coca-Cola Company confirms a data breach at subsidiary Fairlife following a ransomware attack. Learn about the impact and mitigation strategies.</description><pubDate>Mon, 27 Jul 2026 17:43:54 GMT</pubDate><category>Fairlife</category><category>Coca Cola</category><category>Ransomware</category><category>Data Exfiltration</category><category>Third Party Risk</category></item><item><title>EY Data Breach: Third-Party Support System Exposes Client Data</title><link>https://runtimerebel.com/blog/ey-data-breach-third-party-support-system-exposes-client-data</link><guid isPermaLink="true">https://runtimerebel.com/blog/ey-data-breach-third-party-support-system-exposes-client-data</guid><description>Ernst &amp; Young (EY) disclosed a data breach stemming from a compromise of a third-party IT support system, potentially exposing customer information.</description><pubDate>Fri, 17 Jul 2026 17:14:18 GMT</pubDate><category>Ernst Young</category><category>EY</category><category>Data Breach</category><category>Supply Chain Attack</category><category>Third Party Risk</category></item><item><title>Lidl Data Breach: Service Provider Hack Exposes Customer Info</title><link>https://runtimerebel.com/blog/lidl-data-breach-service-provider-hack-exposes-customer-info</link><guid isPermaLink="true">https://runtimerebel.com/blog/lidl-data-breach-service-provider-hack-exposes-customer-info</guid><description>Lidl notifies customers in Germany, Belgium, and Netherlands after a third-party service provider breach exposed personal data and order histories.</description><pubDate>Mon, 13 Jul 2026 14:40:17 GMT</pubDate><category>Lidl Breach</category><category>Third Party Risk</category><category>Supply Chain Attack</category><category>Retail Security</category><category>Data Exfiltration</category></item><item><title>Education Sector Third-Party Risk: Protecting Student Data</title><link>https://runtimerebel.com/blog/education-sector-third-party-risk-protecting-student-data</link><guid isPermaLink="true">https://runtimerebel.com/blog/education-sector-third-party-risk-protecting-student-data</guid><description>The education sector confronts growing third-party breach threats, endangering student data.</description><pubDate>Sat, 27 Jun 2026 16:29:33 GMT</pubDate><category>Education Sector</category><category>Third Party Risk</category><category>Vendor Risk Management</category><category>Student Data Protection</category><category>Ransomware</category><category>Data Breach</category></item><item><title>Millions of Passports Leaked via Low-Value Identity Verification Breach</title><link>https://runtimerebel.com/blog/millions-of-passports-leaked-via-low-value-identity-verification-breach</link><guid isPermaLink="true">https://runtimerebel.com/blog/millions-of-passports-leaked-via-low-value-identity-verification-breach</guid><description>A database of nearly a million passports globally was leaked online, originating from a breach in a low-value ID verification system, exposing high-value credentials.</description><pubDate>Fri, 26 Jun 2026 12:52:34 GMT</pubDate><category>Passport</category><category>Data Breach</category><category>Identity Verification</category><category>Cannabis Dispensary</category><category>Credential Compromise</category><category>Third Party Risk</category></item><item><title>Texas Data Breach Exposes 3M Driver&apos;s Licenses via Vendor</title><link>https://runtimerebel.com/blog/texas-data-breach-exposes-3m-driver-s-licenses-via-vendor</link><guid isPermaLink="true">https://runtimerebel.com/blog/texas-data-breach-exposes-3m-driver-s-licenses-via-vendor</guid><description>A data breach at a third-party vendor of the Texas Parks and Wildlife Department exposed over 3 million driver&apos;s licenses, impacting Texans&apos; PII.</description><pubDate>Fri, 19 Jun 2026 16:54:19 GMT</pubDate><category>Texas</category><category>Data Breach</category><category>TPWD</category><category>Third Party Risk</category><category>Driver S Licenses</category><category>PII Exposure</category><category>Identity Theft</category></item><item><title>Klue Security Incident: Mitigating Third-Party Risk in Intelligence</title><link>https://runtimerebel.com/blog/klue-security-incident-mitigating-third-party-risk-in-intelligence</link><guid isPermaLink="true">https://runtimerebel.com/blog/klue-security-incident-mitigating-third-party-risk-in-intelligence</guid><description>Analyze the impact of the Klue security incident on Recorded Future. Learn how to secure SaaS integrations and improve third-party vendor risk management.</description><pubDate>Fri, 19 Jun 2026 09:54:33 GMT</pubDate><category>Klue</category><category>Recorded Future</category><category>Supply Chain Attack</category><category>Third Party Risk</category><category>Data Breach</category></item><item><title>Nintendo Confirms Third-Party TinyPulse Data Breach — Supply Chain Risks</title><link>https://runtimerebel.com/blog/nintendo-confirms-third-party-tinypulse-data-breach-supply-chain-risks</link><guid isPermaLink="true">https://runtimerebel.com/blog/nintendo-confirms-third-party-tinypulse-data-breach-supply-chain-risks</guid><description>Nintendo confirms employee survey data was stolen via a breach at TinyPulse, a third-party vendor owned by WebMD subsidiary Internet Brands.</description><pubDate>Fri, 19 Jun 2026 05:49:46 GMT</pubDate><category>Nintendo</category><category>TinyPulse</category><category>WebMD</category><category>Data Breach</category><category>Third Party Risk</category><category>Supply Chain Attack</category></item><item><title>SoFi Hong Kong Data Breach via Third-Party Vendor Compromise</title><link>https://runtimerebel.com/blog/sofi-hong-kong-data-breach-via-third-party-vendor-compromise</link><guid isPermaLink="true">https://runtimerebel.com/blog/sofi-hong-kong-data-breach-via-third-party-vendor-compromise</guid><description>Analysis of the SoFi Hong Kong data breach impacting customer information, stemming from a third-party vendor compromise. Includes mitigation strategies.</description><pubDate>Tue, 09 Jun 2026 00:56:25 GMT</pubDate><category>SoFi Hong Kong</category><category>Data Breach</category><category>Third Party Risk</category><category>Supply Chain Security</category><category>Customer Data</category><category>Financial Services</category></item><item><title>Oxford University Data Breach: CareerConnect Compromise Analysis</title><link>https://runtimerebel.com/blog/oxford-university-data-breach-careerconnect-compromise-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/oxford-university-data-breach-careerconnect-compromise-analysis</guid><description>Oxford University warns of a data breach affecting CareerConnect, a platform managed by Group GTI. Personal data of students and alumni was compromised.</description><pubDate>Mon, 08 Jun 2026 13:36:38 GMT</pubDate><category>Oxford University</category><category>Group GTI</category><category>CareerConnect</category><category>Data Breach</category><category>Third Party Risk</category></item><item><title>Charter Communications Data Breach: 4.9 Million Accounts Exposed</title><link>https://runtimerebel.com/blog/charter-communications-data-breach-4-9-million-accounts-exposed</link><guid isPermaLink="true">https://runtimerebel.com/blog/charter-communications-data-breach-4-9-million-accounts-exposed</guid><description>Charter Communications confirms a data breach affecting 4.9 million customer accounts after an extortion group targeted a third-party vendor&apos;s environment.</description><pubDate>Fri, 29 May 2026 09:18:18 GMT</pubDate><category>Charter Communications</category><category>Spectrum</category><category>ShinyHunters</category><category>Data Breach</category><category>Third Party Risk</category></item><item><title>Charter Data Breach Confirmed: ShinyHunters Extortion Threat</title><link>https://runtimerebel.com/blog/charter-data-breach-confirmed-shinyhunters-extortion-threat</link><guid isPermaLink="true">https://runtimerebel.com/blog/charter-data-breach-confirmed-shinyhunters-extortion-threat</guid><description>Charter Communications confirms a data breach following an extortion threat by ShinyHunters.</description><pubDate>Tue, 26 May 2026 20:46:11 GMT</pubDate><category>Charter Communications</category><category>ShinyHunters</category><category>Data Breach</category><category>Extortion</category><category>Telecommunications</category><category>Third Party Risk</category></item><item><title>Oncology Institute Discloses Third-Party Data Breach via Vendor</title><link>https://runtimerebel.com/blog/oncology-institute-discloses-third-party-data-breach-via-vendor</link><guid isPermaLink="true">https://runtimerebel.com/blog/oncology-institute-discloses-third-party-data-breach-via-vendor</guid><description>The Oncology Institute reports a data breach involving a third-party vendor, potentially TriZetto, exposing patient PHI and sensitive healthcare data.</description><pubDate>Mon, 25 May 2026 13:19:14 GMT</pubDate><category>Oncology Institute</category><category>TriZetto</category><category>PHI</category><category>Third Party Risk</category><category>Healthcare Security</category></item><item><title>Typosquatting Evolution: How AI Lookalike Domains Target Supply Chains</title><link>https://runtimerebel.com/blog/typosquatting-evolution-how-ai-lookalike-domains-target-supply-chains</link><guid isPermaLink="true">https://runtimerebel.com/blog/typosquatting-evolution-how-ai-lookalike-domains-target-supply-chains</guid><description>Attackers are weaponizing AI-generated lookalike domains within third-party scripts, turning typosquatting into a sophisticated supply chain threat for enterprises.</description><pubDate>Wed, 20 May 2026 13:00:44 GMT</pubDate><category>Typosquatting</category><category>Third Party Risk</category><category>AI Threats</category><category>Web Security</category></item><item><title>SecurityScorecard Acquires Driftnet: Boosting Supply Chain Threat Intelligence</title><link>https://runtimerebel.com/blog/securityscorecard-acquires-driftnet-boosting-supply-chain-threat-intelligence</link><guid isPermaLink="true">https://runtimerebel.com/blog/securityscorecard-acquires-driftnet-boosting-supply-chain-threat-intelligence</guid><description>SecurityScorecard&apos;s acquisition of Driftnet aims to enhance third-party ecosystem visibility, strengthening defenses against supply chain attack vectors.</description><pubDate>Fri, 15 May 2026 05:24:00 GMT</pubDate><category>Threat Intelligence</category><category>Supply Chain Attack</category><category>Third Party Risk</category><category>SecurityScorecard</category><category>Driftnet</category><category>Acquisition</category></item><item><title>NVIDIA GeForce NOW Data Breach Impacts Armenian Users via GFN.AM</title><link>https://runtimerebel.com/blog/nvidia-geforce-now-data-breach-impacts-armenian-users-via-gfn-am</link><guid isPermaLink="true">https://runtimerebel.com/blog/nvidia-geforce-now-data-breach-impacts-armenian-users-via-gfn-am</guid><description>NVIDIA confirms a data breach affecting GeForce NOW users in Armenia via partner GFN.AM, exposing emails and partial payment data. Learn how to respond.</description><pubDate>Fri, 08 May 2026 16:36:49 GMT</pubDate><category>NVIDIA</category><category>GeForce NOW</category><category>GFN AM</category><category>Armenia</category><category>Data Breach</category><category>Third Party Risk</category></item><item><title>Instructure Data Breach: ShinyHunters Exposes Education Sector Vendor Risk</title><link>https://runtimerebel.com/blog/instructure-data-breach-shinyhunters-exposes-education-sector-vendor-risk</link><guid isPermaLink="true">https://runtimerebel.com/blog/instructure-data-breach-shinyhunters-exposes-education-sector-vendor-risk</guid><description>Analysis of the Instructure data breach by ShinyHunters, impacting educational institutions using Canvas LMS and highlighting critical third-party vendor dependencies.</description><pubDate>Thu, 07 May 2026 00:51:22 GMT</pubDate><category>Instructure</category><category>Canvas LMS</category><category>ShinyHunters</category><category>Education Sector</category><category>Data Breach</category><category>Third Party Risk</category><category>Vendor Security</category></item><item><title>Vercel Data Breach: Third-Party Service Exposure Analysis</title><link>https://runtimerebel.com/blog/vercel-data-breach-third-party-service-exposure-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/vercel-data-breach-third-party-service-exposure-analysis</guid><description>Vercel confirms a security breach involving a third-party provider after hackers claim to sell customer data. Learn the impact and mitigation steps.</description><pubDate>Sun, 19 Apr 2026 20:14:32 GMT</pubDate><category>Vercel</category><category>Third Party Risk</category><category>Data Leak</category><category>IntelBroker</category></item><item><title>Hims &amp; Hers Data Breach via Zendesk: Support Ticket Compromise</title><link>https://runtimerebel.com/blog/hims-hers-data-breach-via-zendesk-support-ticket-compromise</link><guid isPermaLink="true">https://runtimerebel.com/blog/hims-hers-data-breach-via-zendesk-support-ticket-compromise</guid><description>Telehealth provider Hims &amp; Hers discloses a data breach impacting customer support tickets, stemming from a compromise of their Zendesk platform.</description><pubDate>Sat, 04 Apr 2026 04:40:22 GMT</pubDate><category>Hims Hers</category><category>Zendesk</category><category>Data Breach</category><category>Telehealth</category><category>Third Party Risk</category><category>Support Ticket Security</category></item><item><title>Third-Party Risk: The Growing Supply Chain Security Gap</title><link>https://runtimerebel.com/blog/third-party-risk-the-growing-supply-chain-security-gap</link><guid isPermaLink="true">https://runtimerebel.com/blog/third-party-risk-the-growing-supply-chain-security-gap</guid><description>Organizations face increasing breach risks through trusted vendors, SaaS tools, and subcontractors.</description><pubDate>Fri, 03 Apr 2026 16:16:28 GMT</pubDate><category>Third Party Risk</category><category>Supply Chain Security</category><category>Vendor Risk Management</category><category>SaaS Security</category><category>Cybersecurity Gaps</category></item><item><title>Ericsson US Data Breach via Service Provider: Employee &amp; Customer Data Compromised</title><link>https://runtimerebel.com/blog/ericsson-us-data-breach-via-service-provider-employee-customer-data-compromised</link><guid isPermaLink="true">https://runtimerebel.com/blog/ericsson-us-data-breach-via-service-provider-employee-customer-data-compromised</guid><description>Ericsson US discloses a significant data breach impacting employee and customer information, stemming from a security incident at a third-party service provider.</description><pubDate>Mon, 09 Mar 2026 20:12:24 GMT</pubDate><category>Ericsson</category><category>Data Breach</category><category>Supply Chain Attack</category><category>Third Party Risk</category><category>Employee Data</category><category>Customer Data</category></item><item><title>Cognizant TriZetto Breach: 3.4M Patient Health Records Exposed</title><link>https://runtimerebel.com/blog/cognizant-trizetto-breach-3-4m-patient-health-records-exposed</link><guid isPermaLink="true">https://runtimerebel.com/blog/cognizant-trizetto-breach-3-4m-patient-health-records-exposed</guid><description>Analysis of the Cognizant TriZetto data breach impacting 3.4 million patients. Understand the risks and strategies for protecting sensitive health data.</description><pubDate>Fri, 06 Mar 2026 20:11:58 GMT</pubDate><category>TriZetto</category><category>Cognizant</category><category>Data Breach</category><category>Healthcare</category><category>Patient Data</category><category>Third Party Risk</category></item><item><title>Addressing Enterprise Risk in Third-Party Software Patching</title><link>https://runtimerebel.com/blog/addressing-enterprise-risk-in-third-party-software-patching</link><guid isPermaLink="true">https://runtimerebel.com/blog/addressing-enterprise-risk-in-third-party-software-patching</guid><description>Analyze the security risks of third-party software drift and learn why automated patch management is essential for reducing the modern attack surface.</description><pubDate>Fri, 27 Feb 2026 16:16:06 GMT</pubDate><category>Patch Management</category><category>Vulnerability Management</category><category>Third Party Risk</category><category>Endpoint Security</category><category>Shadow IT</category></item><item><title>FinTech Breach: SonicWall Lawsuit &amp; Vendor Liability</title><link>https://runtimerebel.com/blog/fintech-breach-sonicwall-lawsuit-vendor-liability</link><guid isPermaLink="true">https://runtimerebel.com/blog/fintech-breach-sonicwall-lawsuit-vendor-liability</guid><description>A FinTech company&apos;s lawsuit against SonicWall raises critical questions about responsibility when a data breach occurs via a third-party security vendor&apos;s product.</description><pubDate>Fri, 27 Feb 2026 00:35:49 GMT</pubDate><category>SonicWall</category><category>Marquis</category><category>Third Party Risk</category><category>Vendor Liability</category><category>Data Breach</category><category>Cybersecurity Lawsuit</category></item><item><title>ManoMano Data Breach: Third-Party Compromise Impacts 3.8M Customers</title><link>https://runtimerebel.com/blog/manomano-data-breach-third-party-compromise-impacts-3-8m-customers</link><guid isPermaLink="true">https://runtimerebel.com/blog/manomano-data-breach-third-party-compromise-impacts-3-8m-customers</guid><description>European DIY giant ManoMano suffers a supply chain data breach affecting 3.8 million customers after an unauthorized access to a third-party service provider.</description><pubDate>Thu, 26 Feb 2026 20:15:25 GMT</pubDate><category>ManoMano</category><category>Data Breach</category><category>Supply Chain</category><category>PII</category><category>Third Party Risk</category><category>E Commerce Security</category></item><item><title>Marquis Sues SonicWall Over Ransomware Breach Impacting 74 Banks</title><link>https://runtimerebel.com/blog/marquis-sues-sonicwall-over-ransomware-breach-impacting-74-banks</link><guid isPermaLink="true">https://runtimerebel.com/blog/marquis-sues-sonicwall-over-ransomware-breach-impacting-74-banks</guid><description>Marquis Software Solutions alleges SonicWall&apos;s gross negligence in securing cloud backups led to a ransomware attack affecting 74 U.S. financial institutions.</description><pubDate>Wed, 25 Feb 2026 16:32:21 GMT</pubDate><category>SonicWall</category><category>Marquis Software Solutions</category><category>Ransomware</category><category>Third Party Risk</category><category>Financial Sector</category><category>Cloud Security</category></item></channel></rss>