Coverage
Data Breaches
482 articles on breaches and ransomware
Advertisement
CVE-2023-46604: Apache ActiveMQ RCE Exploited by HelloKitty - Patch Now
Over 6,400 Apache ActiveMQ servers are exposed to RCE via CVE-2023-46604. Threat actors like HelloKitty are actively exploiting this high-severity flaw.
WhatsApp Metadata Leak: Exposure Risks and Mitigation Strategies
WhatsApp's metadata leakage allows strangers to infer limited user information without interaction, potentially aiding targeted social engineering or other malicious…
Beyond Backups: Essential BCDR for Ransomware & Operational Resilience
Learn why traditional data backups are insufficient for business continuity. This analysis highlights the critical role of BCDR in mitigating ransomware and outage…
Vercel Data Breach: ShinyHunters Claim Theft of Next.js Creator Data
Vercel confirms a security incident following claims by ShinyHunters to sell stolen data for $2 million. Analyze the impact on Next.js and supply chains.
Vercel Data Breach: Third-Party Service Exposure Analysis
Vercel confirms a security breach involving a third-party provider after hackers claim to sell customer data. Learn the impact and mitigation steps.
Grinex Crypto Exchange Suffers $13.7M Hack, Blames Intelligence
Kyrgyzstan's Grinex crypto exchange suspended operations after a $13.7M hack. The exchange attributes the breach to Western intelligence agencies, highlighting sector…
Payouts King Ransomware Deploys QEMU VMs to Evade EDR Solutions
Payouts King ransomware leverages QEMU virtualization and reverse SSH tunnels to bypass endpoint security and encrypt MSSQL servers on corporate networks.
CVE-2023-46604: Apache ActiveMQ RCE Exploited in the Wild
CISA warns of active exploitation for CVE-2023-46604, a critical RCE flaw in Apache ActiveMQ used by ransomware groups. Update to version 5.18.3 or later.
McGraw Hill Data Breach: 13.5 Million Accounts Leaked by ShinyHunters
Threat actor ShinyHunters leaks 13.5 million McGraw Hill user records following a Salesforce environment breach. Includes password hashes and PII.
Germany Ransomware Surge: How SafePay and Qilin Target Mittelstand
Germany sees a 92% surge in data leaks as ransomware actors like SafePay and Qilin pivot toward the Mittelstand and professional services sectors.
6-Year Ransomware Campaign Targets Turkish SMBs: An Analysis
A persistent six-year ransomware operation has targeted Turkish home users and SMBs, exploiting under-reporting to maintain operational longevity.
Kraken Extorted by Hackers Following Insider Account Breach
Kraken faces extortion after a social engineering attack on a support agent led to unauthorized internal system access and threatened customer data exposure.
McGraw-Hill Data Breach: Salesforce Misconfiguration Exploited
McGraw-Hill confirms a data breach after threat actors exploited a Salesforce misconfiguration, exposing internal records and student information.
Basic-Fit Data Breach: 1 Million Members Impacted by Credential Theft
Europe's largest gym chain, Basic-Fit, confirms a data breach impacting 1 million members. Attackers accessed names, DOBs, and IBANs via automated scripts.
Cisco FMC Zero-Day Exploited by Interlock Ransomware: March 2026 CVEs
Runtime Rebel analyzes March 2026's significant rise in high-impact CVEs, including a Cisco FMC zero-day actively exploited by Interlock Ransomware.
Basic-Fit Data Breach Exposes 1M Members' PII & IBANs
Dutch fitness giant Basic-Fit confirms data breach affecting 1 million members in France, Spain, and Belgium, exposing PII and bank account numbers.
Rockstar Games Analytics Data Leaked via ShinyHunters Extortion
Rockstar Games analytics data has been leaked by the ShinyHunters group following a breach at third-party provider Anodot. Analysis of the supply chain risk.
Booking.com Data Breach: Unauthorized Access to Customer Information
Booking.com confirms unauthorized access to customer booking data. Analyze the breach impact, TTPs used against travel platforms, and mitigation strategies.
Hims Data Breach Exposes Patient PHI — Technical Impact Analysis
Analysis of the Hims & Hers Health data breach exposing sensitive PHI. Learn how threat actors use health data for targeted extortion and phishing campaigns.
Eurail Data Breach: 300,000 Individuals' Data Compromised
Eurail B.V. disclosed a December 2023 data breach affecting 300,000 individuals, leading to the theft of personal information. Learn about the impact and mitigation.
Bitcoin Depot Credential Theft: $3.6M Stolen from Hot Wallets
Bitcoin Depot reports a $3.6 million loss after attackers compromised administrative credentials to drain corporate hot wallets. Analyze the breach and TTPs.
Eurail Data Breach: 300,000 Travelers' Passport Data Stolen
Eurail discloses a data breach impacting 300,000 individuals. Stolen names and passport numbers pose significant risks for identity theft and phishing.
Bitcoin Depot Breach: $3.6M Exfiltrated from Crypto Wallet Systems
Bitcoin Depot reports a $3.6 million theft following a breach of internal systems. Analyze the impact and learn how to mitigate cryptocurrency ATM breaches.
OpenSSL: Data Leakage & DoS Vulnerabilities Patched
OpenSSL patches seven vulnerabilities, including a data leakage flaw and multiple denial-of-service risks. Update immediately to secure cryptographic communications.