Back to Feed

Tag

Breaches

50 items tagged #breaches

Articles

‼️🇺🇸 Threat actor TRD is allegedly selling two databases containing 2.1 million New York/Brookl...

Threat actor TRD selling databases of 2.1M NY residents and 918K Binance US users.

‼️ Gunra Ransomware Claims 16 Victims 🇰🇷 KUKJE PHARM CO.,LTD. 🇹🇭 bkksky[.com 🇸🇬 triotech[....

Gunra ransomware gang claims 16 victims across multiple countries.

tl;dr North Korean state-sponsored hacker accidentally detonates information stealer malware. St...

North Korean state-sponsored hacker accidentally exposes stolen data and credentials.

Garante per la protezione dei dati personali (Italy) - 10234984

Italian DPA fines Intesa Sanpaolo €31.8M for inadequate safeguards allowing employee unauthorized financial data access.

Garante per la protezione dei dati personali (Italy) - 10234984

Italian DPA fines Intesa Sanpaolo €31.8M for data breach affecting 3,500+ customers and delayed notification.

‼️🇺🇸 A well-known initial access broker is selling root-level remote code execution access to a...

Initial access broker sells root RCE access to US aerospace/defense firewall for $1,000.

‼️ ChipSoft, a Dutch company that develops electronic patient record (EPR) software, is dealing w...

Dutch healthcare software vendor ChipSoft hit by ransomware attack.

Daily Dose of Dark Web Informer - April 7th, 2026

Daily dark web threat intelligence digest covering breaches, CVEs, and threat actor activity.

Snowflake customers hit in data theft attacks after SaaS integrator breach

Snowflake customers targeted in data theft after SaaS integrator Anodot breached and tokens stolen.

This Hacker (IntelBroker) Kept Embarrassing the FBI https://t.co/G1aTTQ1Tgo

IntelBroker threat actor repeatedly compromised FBI systems and leaked sensitive data.

‼️ Threat actor JINKUSU advertises OMNITRIX IMAP service offering email account monitoring, attac...

Threat actor JINKUSU advertises OMNITRIX IMAP service for unauthorized email monitoring and manipulation.

Garante per la protezione dei dati personali (Italy) - 10234984

Italy's DPA fines Intesa Sanpaolo €31.8M for inadequate security and delayed breach notification.

‼️🇺🇸 A SQL database dump from https://t.co/tqMyU2yACY containing 30,000 user records with usern...

SQL database dump exposes 30,000 user records and 14,600 transit pass records on unsecured server.

Alleged Breach of KBank Vietnam Exposes 10.1 Million Credit Registration Records With National IDs, Salaries, Credit Scores, and Employer Details

KBank Vietnam breach exposes 10.1M credit records with national IDs, salaries, and credit scores.

North Korean Hackers Pose as Trading Firm to Steal $285M from Drift

North Korean hackers (UNC4736) stole $285M from Drift Protocol after six-month social engineering campaign.

Germany Doxes “UNKN,” Head of RU Ransomware Gangs REvil, GandCrab

Germany identifies Daniil Maksimovich Shchukin as UNKN, leader of GandCrab and REvil ransomware gangs.

$285 Million Drift Hack Traced to Six-Month DPRK Social Engineering Operation

DPRK-linked UNC4736 stole $285M from Drift via six-month social engineering operation.

‼️ New BreachForums-like clone: Clearnet: pwnforums[.]st Dark Web: http://pwnfrm7rbf6kyerigxi...

BreachForums clone 'pwnforums' launched on clearnet and dark web.

European Commission Confirms Data Breach Linked to Trivy Supply Chain Attack

European Commission confirms 300GB data theft via compromised Trivy vulnerability scanner supply chain attack.

Hackers Are Posting the Claude Code Leak With Bonus Malware

Hackers posting Claude Code leak on GitHub with embedded infostealer malware.

2/2‼️🇮🇶🇨🇳 Alleged sale of initial access to: ▪️An Iraq Higher Education Platform ▪️An Africa...

Threat actor allegedly offers initial access to Iraqi education platform, African government system, and Chinese

1/2‼️🇺🇸🇸🇦🌏Alleged sale of initial access to: ▪️A USA Managed Services Provider ▪️A US gover...

Threat actor allegedly offers initial access to US MSP, government contractor, Saudi ministry, and Asian POS provider.

Meta Pauses Work With Mercor After Data Breach Puts AI Industry Secrets at Risk

Meta pauses Mercor work after supply chain breach exposes AI training data secrets.

‼️🇳🇱 RDWEB access to an unnamed Netherlands-based software company is allegedly being sold on a...

Threat actor AckLine sells RDWeb access to unnamed Netherlands software company on cybercrime forum.

Die Linke German political party confirms data stolen by Qilin ransomware

Qilin ransomware group claims attack on Die Linke German political party, threatens data leak.

AI Firm Mercor Confirms Breach as Hackers Claim 4TB of Stolen Data

AI firm Mercor confirms breach linked to LiteLLM supply chain attack; Lapsus$ claims 4TB stolen data.

Blast Radius of TeamPCP Attacks Expands Amid Hacker Infighting

TeamPCP supply chain attacks expand as ShinyHunters and Lapsus$ claim involvement.

In Other News: ChatGPT Data Leak, Android Rootkit, Water Facility Hit by Ransomware

SecurityWeek roundup: Android rootkit, ChatGPT data leak, water facility ransomware, FBI breach.

North Korean Hackers Drain $285 Million From Drift in 10 Seconds

North Korean hackers steal $285 million from DeFi platform Drift in 10-second heist.

Man admits to locking thousands of Windows devices in extortion plot

Former infrastructure engineer pleads guilty to locking 254 servers in failed extortion plot.

‼️ FBI declares suspected Chinese hack of US surveillance system a ‘major cyber incident’ via Po...

FBI declares suspected Chinese hack of US surveillance system a major cyber incident.

‼️🇺🇸 Faulkner County Sheriff's Office has been claimed a victim to Qilin Ransomware The Faulkn...

Faulkner County Sheriff's Office claimed as Qilin ransomware victim.

Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials

Hackers exploit CVE-2025-55182 in Next.js to breach 766 hosts and steal credentials via NEXUS Listener.

Drift loses $280 million North Korean hackers seize Security Council powers

North Korean hackers steal $280M from Drift Protocol via Security Council compromise.

‼️ A threat actor leaked a 1.4TB "private" combolist containing URL-LOG-PASS credential data. htt...

Threat actor leaks 1.4TB combolist with URL-username-password credential data.

Medtech giant Stryker says it’s back up after Iranian cyberattack

Stryker medtech firm recovers from March wiper attack by Iranian Handala group.

Medtech giant Stryker fully operational after data-wiping attack

Stryker fully operational three weeks after Iranian-linked Handala wiper attack.

250,000 Affected by Data Breach at Nacogdoches Memorial Hospital

Nacogdoches Memorial Hospital confirms 250,000 patient records stolen in January breach.

Mercor Hit by LiteLLM Supply Chain Attack

Mercor impacted by LiteLLM supply chain attack; Lapsus$ claims 4TB data theft.

‼️Airbus allegedly has Artifactory/DevOps data leaked on a popular cybercrime forum. Threat Acto...

Threat actor AckLine claims to have leaked Airbus Artifactory/DevOps data on cybercrime forum.

Alleged Breach of Smarteez Exposes Full Production Database for L'Oreal Morocco Including 296 Pharmacies, 361K Sales Records, OAuth Secrets, and Competitive Intelligence Across Four L'Oreal Brands

Smarteez production database for L'Oreal Morocco breached, exposing 361K sales records, 296 pharmacies, OAuth secrets.

‼️ New credential lookup service "Vulta Intelligence" spotted, offers stolen login data via Teleg...

Vulta Intelligence credential lookup service offers 14.2B stolen logins via Telegram bot for $0.50 per 1,000 records.

Claude Code Source Leaked via npm Packaging Error, Anthropic Confirms

Anthropic's Claude Code source leaked via npm packaging error, triggering typosquat attacks.

‼️🇯🇵 Nissan GCSSD Breach has been claimed by Everest Ransomware. https://t.co/tURFjQ6CYR

Everest ransomware gang claims breach of Nissan's Global Connected Services and Security Division.

‼️ A threat actor shared a 1.3TB collection of URL-login-password credentials described as privat...

Threat actor shares 1.3TB credential collection with URLs, logins, and passwords from 2025.

1. This isn't fake. 2. Credentials are stored as hashes. It should be literally, with no exagger...

HSBC India allegedly storing customer credentials in plaintext instead of hashes.

Cisco source code stolen in Trivy-linked dev environment breach

Cisco source code stolen via Trivy supply chain attack credentials in dev environment breach.

‼️ Genesis Ransomware claims 8 victims. 🇺🇸 Secure Health 🇺🇸 Modern Advanced Print Solutions...

Genesis ransomware gang claims eight new victims across healthcare, printing, and manufacturing sectors.

Iran Deploys 'Pseudo-Ransomware,' Revives Pay2Key Operations

Iranian APTs deploy pseudo-ransomware targeting US orgs via revived Pay2Key operations.

ShinyHunters is ransoming ... HALLMARK CARDS Those fucking shitty birthday cards you pick up at...

ShinyHunters claims to be ransoming Hallmark Cards customer data.