Coverage
Data Breaches
482 articles on breaches and ransomware
Advertisement
Microsoft Disrupts Fox Tempest Malware Signing Service
Microsoft dismantled the Fox Tempest (Storm-1152) malware signing service, which issued over 10,000 fraudulent certificates to mask ransomware and other malware.
CISA Contractor Leaked AWS GovCloud Keys on GitHub: Critical Exposure
A CISA contractor publicly exposed highly privileged AWS GovCloud and internal system credentials on GitHub, detailing CISA's software development.
US Healthcare Data Breaches: Millions Impacted via Tracking Pixels
Millions of patient records were exposed in major healthcare breaches at Kaiser Permanente, City of Hope, and HealthEC due to tracking pixels and system access.
Grafana Labs Breach: Coinbase Cartel Claims Data Theft — Analysis
Grafana confirms a security breach after the Coinbase Cartel group claimed to have stolen sensitive data, including customer and infrastructure information.
Grafana GitHub Token Leak: Codebase Access and Extortion Attempt
Grafana discloses a security incident where an unauthorized party used a GitHub token to download source code, leading to a failed extortion attempt.
BlackFile: Analyzing UNC6671 Vishing & Cloud Data Extortion
Examines UNC6671's BlackFile vishing, AiTM, and cloud data exfiltration tactics against Microsoft 365 & Okta. Actionable mitigations included.
Security Brief: Data Breaches, ShinyHunters Activity, and App Flaws
Analyzes recent security events: Nvidia cloud gaming data breach, FBI warning on ShinyHunters hacking Canvas, and critical flaws in Audi mobile applications.
American Lending Center Data Breach: 123,000 Impacted by Ransomware
American Lending Center confirms a June 2023 ransomware attack compromised sensitive data of 123,000 individuals, highlighting long-term forensic challenges.
TeamPCP Threatens Sale of Mistral AI Source Code Repositories
TeamPCP hackers claim to have exfiltrated 22GB of source code from Mistral AI. This report analyzes the breach impact and API key security risks.
Nitrogen Ransomware Hits Foxconn: Manufacturing Cyber Crisis
Nitrogen ransomware targets Foxconn's North American plants, highlighting a critical trend of cyberattacks against the manufacturing sector's low downtime tolerance.
West Pharmaceutical Breach: Analysis of System Encryption
West Pharmaceutical Services confirms data exfiltration and system encryption in a major cyberattack. Learn about the impact and defense strategies.
Foxconn North America Ransomware Attack: Nitrogen Group Data Theft
Foxconn's North American operations confirm a ransomware attack by Nitrogen group, resulting in 8TB of data theft, including confidential documents.
716,000 Impacted by OpenLoop Health Data Breach — Impact Analysis
OpenLoop Health reports a significant data breach affecting 716,000 patients. Attackers exfiltrated SSNs and medical records during the January incident.
US Government Scrutinizes Instructure Canvas Breach and Outage
US Committee on Homeland Security investigates Instructure following a Canvas LMS data breach and service disruption affecting educational institutions.
Foxconn North American Factories Targeted by Nitrogen Ransomware
Foxconn confirms a cyberattack impacting North American production facilities. Analyze Nitrogen ransomware TTPs and learn critical mitigation strategies.
US House Committee Probes Instructure Following Canvas Cyberattacks
The House Committee on Homeland Security seeks testimony from Instructure after the ShinyHunters group targeted the Canvas LMS, compromising student data.
South Staffordshire Water Fined £1.3M Over Clop Ransomware Breach
The UK ICO fined South Staffordshire Water £963,900 for a 2022 data breach exposing 664,000 records due to MFA failures and end-of-life software.
ShinyHunters Extorts Instructure: 3.65TB Canvas LMS Data Breach Analysis
Instructure reaches an agreement with ShinyHunters after a massive 3.65TB data breach affecting Canvas LMS users across thousands of educational institutions.
Skoda Online Shop Data Breach: Portal Vulnerability Analysis
Skoda Auto confirms a data breach affecting online shop customers. Attackers exploited a portal vulnerability to access PII including names and addresses.
ShinyHunters Claims Second Attack Against Instructure: PII at Risk
The threat actor ShinyHunters has launched a second attack against Instructure, putting the PII of hundreds of millions of EdTech users at immediate risk.
NVIDIA GeForce NOW Data Breach Impacts Armenian Users via GFN.AM
NVIDIA confirms a data breach affecting GeForce NOW users in Armenia via partner GFN.AM, exposing emails and partial payment data. Learn how to respond.
Braintrust AWS Breach: Immediate AI Provider API Key Rotation Required
Braintrust prompts users to rotate API keys after unauthorized AWS account access compromised AI provider secrets. Learn about the impact and mitigation.
Zara Data Breach: 197,000 Customer Records Leaked on Hacking Forum
Spanish fashion retailer Zara suffers a significant data breach exposing PII for 197,000 customers, fueling concerns over targeted phishing and identity theft.
RansomHouse Claims Trellix Breach: Internal Data Leak Analysis
The RansomHouse extortion group claims to have breached Trellix internal systems. Analyze the potential impact of this security vendor compromise and mitigation steps.