Resource center
Data protection and cybersecurity for MSPs. Recovery you can prove.
All breach reports
144,000 Canadians’ Personal Info Mishandled by Federal Departments
800 page report shows 144,000 Canadians may have had their personal information mishandled by federal departments and agencies.
1st Source Bank reports about 450,000 records exposed in MOVEit hack
1st Source Corporation said roughly 450,000 records belonging to bank clients were exposed after attackers exploited the MOVEit Transfer zero day.
23andMe user profiles scraped after credential stuffing attack
23andMe said in October 2023 that attackers reused credentials leaked from other breaches to log into customer accounts, then scraped profile data through the…
Scotiabank's Major Security Breach: 25 Million Scotiabank Customers’ Data Left Exposed
Discover how Scotiabank's recent major security breach, exposing personal and financial information of millions of customers, sheds light on the urgent need…
30,000 University Students Potentially Impacted By 3rd Party Data Breach
A cyber attack on 3rd party services potentially compromised personal details of 30,000 current & former students of the University of Colorado Boulder.
30K Healthcare Workers’ Info Found On Unprotected Database
Ethical hackers found exposed personal information of more than 30,000 healthcare workers due to a non-password-protected database.
3.1 Million Users’ Email Addresses Leaked In Data Breach
Crypto price tracking site, CoinMarketCap, sees 3.1 million user email addresses leaked on the dark web after data leak.
329,000 Affected By CPA Canada Phishing Attack
CPA Canada announces personal information of their 329K members and users of their website has been compromised in phishing attack.
360,000 Quebec Teachers Affected By Data Breach
After hackers accessed a database holding personal information for people working or having worked as teachers in Quebec, fears are that nearly 360,00 people…
37,000 Potentially Affected By TransUnion Data Breach
Hackers used compromised user credentials to access 37,000 TransUnion customer’s personal information. The breach raises concern to the company’s current…
3rd Party Data Breach Affects Ontario Science Centre
Ontario Science Centre warns newsletter subscribers after 3rd party contractor downloads personal data without authorization.
400 Local Governments Forced to Resort to Manual Processes as a Result of Cott Systems Cyber Attack
Cott Systems, a company that handles records management for over 400 U.S. local and regional governments, has experienced a cyber attack that resulted in the…
400,000 Patients’ Information Compromised In Ransomware Attack
An estimated 400,000 patients of Planned Parenthood had their information compromised by cybercriminals in what looks to be a ransomware attack.
450 Active WHO Email Credentials Leaked Online
Amidst the COVID-19 pandemic, cyber security experts and government agencies have been engaged in efforts trying to combat the alarming growth of…
4.9 Million Affected by Retail Giant Neiman Marcus Data Breach
Retail giant Neiman Marcus is working with law enforcement and 3rd-party cyber security experts to investigate a recently discovered data breach from May 2020.
14.8 Million Accounts Exposed In 500px Data Breach
Over half a year later, online photo sharing platform, 500px, has reported that their servers were hacked in July 2018. At first glance, the extreme delay in…
5,600 Construction Employees Potentially Impacted By Phishing Scam
A company wide data breach has reportedly impacted all North American employees at Turner Construction Co. Although the company has a global reach, only the…
Privacy Breach Could Affect 650K Canadians Using COVID-19 Passport App
Hundreds of thousands of registered users of the Canadian proof-of-vaccination app Portpass may have had their personal data exposed as the app’s website was…
Canadian Government's Internal Data Breach: 69,000 Federal Workers' Information Compromised
Discover the shocking incident of an internal data breach within the Canadian Government, exposing sensitive information of over 69,000 federal workers.
7 Million Users Affected In Robinhood Data Breach
An investigation is underway after a vishing attack was used to expose info of 7 million users of the financial services platform Robinhood.
$900,000 In Costs For PEI Taxpayers After Ransomware Attack (Update)
After a successful ransomware attack struck P.E.I. government servers earlier this year, ongoing investigations are slowly revealing the total costs of the…
Cyberattack on vendor Intrado knocked out 988 Lifeline calls for nearly a day
Federal officials confirmed that a cybersecurity incident at telecommunications vendor Intrado caused a nearly day-long outage of voice calling on the U.S.
Black Basta ransomware hits Swiss automation giant ABB
Swiss automation group ABB confirmed an IT security incident on May 7, 2023 that BleepingComputer and The Record attributed to Black Basta ransomware.
Accenture disputed a BreachForums claim of 32,000 leaked employee records
A BreachForums user going by 888 posted a file on 19 June 2024 said to hold names and email addresses for 32,826 current and former Accenture employees.
Access Sports Medicine breach exposed data on about 88,000 patients
Access Sports Medicine and Orthopaedics notified 88,044 people that names, Social Security numbers, medical and insurance information were taken in a May 2024…
Ace Hardware cyberattack downs 1,202 devices and halts online orders
A cyberattack on October 29, 2023 knocked out 1,202 of Ace Hardware's networked devices, including 196 servers, suspending online ordering, warehouse…
Acer confirms breach of repair technician document server
Acer confirmed unauthorised access to a document server used by repair technicians in mid-February 2023 after a seller using the alias Kernelware advertised…
UK's ACRO Criminal Records Office pulled portal offline after cyber incident
ACRO, the UK police body that issues police certificates, confirmed on April 6, 2023 that a cyber security incident running from January 17 to March 21 was…
Activision warns players after infostealer malware harvested gaming logins
Activision urged players to reset passwords and enable two-factor authentication in March 2024 after a credential database assembled by infostealer malware…
Adidas discloses customer data breach at third-party service provider
Adidas said on 23 May 2025 that an unauthorized party obtained customer contact information via a third-party customer service provider.
ADT discloses second breach in two months after partner credentials stolen
ADT disclosed in an October 2024 SEC filing that an attacker used credentials stolen from a third-party business partner to access its network and exfiltrate…
Advance Auto Parts notifies 2.3 million after Snowflake-linked breach
Advance Auto Parts told the Maine Attorney General that 2,316,591 people had personal data taken from its Snowflake cloud environment between 14 April and 24…
Advanced Medical Management breach exposed data on 319,485 people
Advanced Medical Management, a Baltimore healthcare services firm, detected an intrusion on May 11, 2023 and later notified 319,485 individuals.
German pharmaceutical wholesaler AEP hit by ransomware attack
AEP GmbH, a Bavarian pharmaceutical wholesaler supplying over 6,000 German pharmacies, detected a targeted cyberattack on 28 October 2024 that partially…
Affiliated Dermatologists breach hit about 380,000 patients and staff
Affiliated Dermatologists & Dermatologic Surgeons found a ransom note on 5 March 2024. Investigators determined an intruder had been in the network since 2…
Aflac discloses network intrusion tied to insurance sector campaign
Aflac said it detected suspicious activity on its U.S. network on June 12, 2025 and contained the intrusion within hours.
Agence France-Presse reported potential data breach after cyberattack
Agence France-Presse notified France's regulator CNIL of a potential personal data breach after a late September 2024 cyberattack disrupted part of its…
LockBit claimed a ransomware attack on Porto's municipal water utility
LockBit added the Portuguese municipal utility Aguas e Energia do Porto to its dark web leak site on 18 February 2023, setting a 7 March deadline to publish…
Ahold Delhaize cyberattack disrupted US grocery pharmacies and online orders
Ahold Delhaize said on November 8, 2024 that it had detected a cybersecurity issue in its US network and taken systems offline.
Air Canada says internal system breached, limited employee data accessed
Air Canada disclosed on 20 September 2023 that an unauthorised group briefly obtained limited access to an internal system containing limited employee…
Air Europa told customers passport and ID data was exposed in 2023 breach
Air Europa notified customers on March 21, 2024 that names, ID card or passport numbers, frequent flyer codes, addresses, dates of birth and contact details…
airBaltic sent booking details to the wrong passengers after email system error
Latvian carrier airBaltic said an internal technical error on May 12, 2023 caused its email system to send flight reservation confirmations to the wrong…
Airbus supplier data leaked after credentials stolen from airline employee
Airbus investigated a BreachForums post exposing contact details for about 3,200 suppliers. The actor USDoD said access came through a Turkish airline…
Akira ransomware attack disrupts flights at Croatia's Split Airport
Split Airport in Croatia lost its IT infrastructure to a cyberattack on the evening of July 22, 2024, cancelling and delaying flights and forcing staff to…
Alabama State Department of Education breached in a halted ransomware attack
The Alabama State Department of Education disclosed on 3 July 2024 that its systems were attacked on 17 June. IT staff halted the intrusion before encryption…
Albany County, New York investigates possible cybersecurity breach
Albany County, New York disclosed on 24 May 2024 that it was investigating a possible cybersecurity breach of county networks ahead of the Memorial Day weekend.
Ransomware at Alberta Dental Service Corporation hit 1.47 million people
Alberta Dental Service Corporation disclosed on 10 August 2023 that a ransomware attack compromised personal information on roughly 1.47 million Albertans in…
Alberta Innovates confirmed unauthorized access to its network
Alberta Innovates, the provincially funded Crown corporation that backs research and early-stage companies in Alberta, confirmed in November 2024 that a third…
INC Ransom published data stolen from Alder Hey Children's NHS trust
INC Ransom published a sample of data on November 28, 2024 that it said came from Alder Hey Children's NHS Foundation Trust, including patient and donor…
Cyber Av3ngers hijacked a controller at Aliquippa's water authority
An Iran-linked group calling itself Cyber Av3ngers seized a Unitronics programmable logic controller at a booster station run by the Municipal Water Authority…
Allegheny County MOVEit breach exposed data on more than 950,000 people
Allegheny County, Pennsylvania disclosed in August 2023 that attackers accessed files on its MOVEit Transfer server on May 28 and 29, exposing names, Social…
Cyberattack on Alliance Healthcare Espana disrupts Spanish medicine distribution
Alliance Healthcare Espana, Spain's fourth largest medicines wholesaler, was hit by a cyberattack on 17 March 2023 that blocked its servers, website, billing…
Ransomware hits Allied Pilots Association, the American Airlines pilots union
The Allied Pilots Association, the union representing about 15,000 American Airlines pilots, was hit by ransomware on October 30, 2023.
ALN Medical Management discloses 2024 breach of third-party hosted systems
ALN Medical Management, a Nebraska medical billing and revenue cycle firm owned by Health Prime International, said an unauthorized actor accessed files in a…
Amazon employee contact data surfaced in MOVEit leak from a vendor
A forum user calling themselves Nam3L3ss posted roughly 2.8 million lines of Amazon employee data in November 2024, drawn from the 2023 mass exploitation of…
Ambulance Victoria exposed paramedic drug and alcohol test results on staff intranet
Confidential pre-employment drug and alcohol test results for Ambulance Victoria graduate paramedics, from 2017 and 2018, were left readable by all staff on…
Embargo ransomware group claimed attack on American Associated Pharmacies
The Embargo ransomware group listed American Associated Pharmacies on its leak site on November 13, 2024, claiming roughly 1.5 TB of stolen data, a $1.3…
American Bar Association breach exposed credentials of 1.4 million members
The American Bar Association notified about 1.47 million members that an intruder took usernames and hashed and salted passwords from legacy website and…
American Express warns cardholders of breach at third-party merchant processor
American Express notified cardholders in March 2024 that a service provider used by merchants suffered unauthorized access, potentially exposing card account…
American Family Insurance confirmed a cyberattack behind week-long outages
American Family Insurance said it detected unusual activity in part of its network and shut down several business systems, causing about a week of outages in…
American Water pauses billing after cyberattack on internal systems
American Water detected unauthorized activity on its network on October 3, 2024 and disclosed it to the SEC on October 7.
Americold network breach shut down cold storage operations
Americold began receiving evidence of a network intrusion on 26 April 2023, took operations offline and told customers to cancel inbound deliveries while it…
Amnesty International Australia disclosed a December 2022 hack four months later
Amnesty International Australia said an unauthorized third party gained temporary access to its IT environment, detected on 3 December 2022.
Ampersand confirmed ransomware attack claimed by Black Basta
Ampersand, the TV advertising sales and data firm owned by Comcast, Charter and Cox, confirmed in October 2023 that a ransomware incident briefly interrupted…
Anne Arundel County closed buildings after ransomware attack on its network
Anne Arundel County, Maryland, closed government buildings on February 24, 2025 while responding to a cyberattack it later confirmed as ransomware.
AnyDesk confirms attackers breached its production systems
AnyDesk Software GmbH disclosed on February 2, 2024 that attackers had compromised its production systems and obtained code signing material.
Clinical trials registry ANZCTR taken offline after University of Sydney breach
The University of Sydney took the Australian New Zealand Clinical Trials Registry and the Australian Cancer Trials site offline on 28 February 2025 after a…
Approximately 28,000 GoDaddy Users Affected by Data Breach
GoDaddy reported suspicious activity on company servers resulting in a data breach that potentially affects 28,000 users.
Apria Healthcare disclosed 2019 and 2021 breaches affecting 1.87 million people
Apria Healthcare notified roughly 1.87 million patients and employees about intrusions spanning 2019 and 2021, some 20 months after discovery.
Aramark employees phished through fake myPay site in payroll diversion scheme
Aramark said an attacker built a lookalike myPay portal to steal employee logins and reroute direct deposits. Names, addresses and Social Security numbers may…
Ardent Health Services ransomware attack diverted ambulances at US hospitals
A ransomware attack detected on Thanksgiving Day 2023 forced Ardent Health Services to take its network offline, putting emergency departments in several…
Medusa ransomware group claims attack on ARDEX Australia
The Medusa ransomware group listed the Australian tiling and waterproofing manufacturer ARDEX Australia on its dark web leak site in late January 2025…
Argentina's airport security police hit by payroll data breach
Argentina's airport security police force was reported in early January 2025 to have had payroll data compromised, with deductions of 2,000 to 5,000 pesos…
Arietis Health reported a MOVEit breach affecting nearly 2 million patients
Arietis Health told regulators that the MOVEit Transfer zero-day exposed records for 1,975,066 people across 54 anesthesia and gastroenterology practices it…
Aristocrat Leisure confirmed employee data stolen through MOVEit flaw
Aristocrat Leisure confirmed in August 2023 that an attacker exploited a zero-day flaw in the MOVEit file transfer product around 1 June, extracting data from…
Vendor breach at Healthmine exposed Arkansas Blue Cross member data
Healthmine, the vendor hosting Arkansas Blue Cross and Blue Shield's Blue Wellness Rewards portal, found on August 26, 2024 that an unknown party had reached…
Arkansas City, Kansas water plant switches to manual after cyberattack
Arkansas City, Kansas moved its water treatment plant to manual operation after detecting a cybersecurity incident on September 22, 2024.
ARRL cyberattack takes Logbook of The World offline
The American Radio Relay League disclosed on 16 May 2024 that a network intrusion had disrupted email and member services including Logbook of The World.
Artivion tells SEC cyberattack disrupted order and shipping processes
Artivion, an Atlanta-area maker of heart valves, aortic stent grafts and implantable tissue, disclosed in a December 9, 2024 Form 8-K that attackers acquired…
Ascension Seton disclosed breach of two legacy websites run by vendor Vertex
Ascension Seton disclosed in June 2023 that Seton.net and DellChildrens.net, two legacy sites operated by third-party vendor Vertex, were accessed on March 1…
Asper Biogene breach exposed genetic and health data of 10,000 in Estonia
Genetic testing company Asper Biogene of Tartu, Estonia had roughly 100,000 files and 33 gigabytes copied from its database, affecting an estimated 10,000…
Ateam Google Drive misconfiguration exposed data on 935,779 people
Ateam Inc. disclosed in December 2023 that a Google Drive folder had been set to 'anyone with the link can view' since March 2017.
Maryland’s Atlantic General Hospital hit by Ransomware: Patient Care Impacted
Atlantic General Hospital in Maryland has suffered a significant ransomware attack, resulting in network disruptions and outages, causing limited patient…
Trello data on 15 million users leaked after an open API was scraped
More than 15 million Trello account records, including 15.1 million email addresses, were dumped on the Breached hacking forum in July 2024.
AT&T confirmed data on 73 million current and former customers leaked online
AT&T said on March 30, 2024 that a dataset posted to the dark web contained information on about 73 million current and former account holders, including…
AT&T reversed course and said most FirstNet numbers were in the breached data
AT&T reversed its initial assessment on July 19, 2024 and said the share of FirstNet numbers in the call and text metadata stolen from its Snowflake workspace…
AT&T notifies about 9 million customers after marketing vendor breach
AT&T notified roughly 9 million wireless customers in March 2023 that Customer Proprietary Network Information was exposed when an unnamed marketing vendor…
AT&T discloses theft of call and text records for nearly all wireless customers
AT&T disclosed in a July 2024 SEC filing that attackers downloaded call and text metadata for roughly 110 million customers from its Snowflake cloud workspace.
Auckland Transport ticketing systems disrupted by ransomware attack
A suspected ransomware attack disrupted Auckland Transport's AT HOP ticketing and fares systems in September 2023, stopping online top-ups, card payments at…
Auckland University of Technology hit by cyberattack claimed by Monti ransomware
Auckland University of Technology, New Zealand's third largest university, confirmed a cyber incident involving unauthorised access to its IT environment by…
auDA finds no evidence of breach after NoEscape claimed to hold its data
auDA, the administrator of Australia's .au domain space, was named on the NoEscape ransomware leak site in August 2023. After reviewing a leaked sample, auDA…
Austal USA confirms data incident after Hunters International leak claim
Austal USA, builder of Independence class littoral combat ships for the US Navy, confirmed a data incident on December 6, 2023 after the Hunters International…
Cyber Attack Exposes Over 36,000 Cancer Clinic Patients’ Data
Patients of the Austin Cancer Centers are now being notified after a data breach forced the organization’s IT networks to be shut down.
Abyss ransomware claims 1.5TB from Australian Nursing Home Foundation
The Abyss ransomware group named the Australian Nursing Home Foundation, a Sydney aged care provider serving Chinese and South East Asian seniors, on its leak…
AustralianSuper and rival funds hit by coordinated credential stuffing
Over the weekend of April 4, 2025, AustralianSuper, Rest, Australian Retirement Trust, Hostplus and Insignia Financial confirmed attackers had used passwords…
AutoCanada disclosed cyberattack on its internal IT systems
AutoCanada announced on August 13, 2024 that a cyberattack two days earlier had affected its internal IT systems. The Edmonton-based dealership group said the…
AutoZone notified 184,995 people of a MOVEit-related data breach
AutoZone notified 184,995 people that names and Social Security numbers were taken when the Clop group exploited its MOVEit Transfer server.
Avery says card skimmer sat on its website for nearly five months
Avery Products Corporation found card skimming malware on avery.com that had captured customer card details from July 18, 2024 until its discovery on December…
AvidXchange hit by RansomHouse in its second ransomware incident of 2023
AvidXchange, a North Carolina payments automation company, confirmed a ransomware attack claimed by the RansomHouse group in May 2023.
Avis breach of a business application exposed data on 299,006 customers
Avis Rent A Car System disclosed in September 2024 that an intruder had accessed one of its business applications between 3 and 6 August 2024.
Axis Health System investigates Rhysida ransomware attack in Colorado
Axis Health System, a nonprofit operating 13 behavioral health and primary care facilities in Colorado, confirmed a cyberattack in October 2024 after the…
City of Baltimore lost $1.5 million to a vendor impersonation scheme
A fraudster used a real vendor employee's name to take over the vendor's record in Baltimore's Workday system, changed its bank details and collected two…
Santander says third-party database breach hit customers and staff
Banco Santander disclosed on 14 May 2024 that a database hosted by a third-party provider was accessed without authorization.
Bank of America warned customers after document destruction vendor mishandled records
Bank of America began notifying customers in early 2025 that a document destruction vendor failed to secure paperwork in transit, potentially exposing names…
Bank of America notified 57,028 customers after Infosys McCamish breach
Bank of America notified 57,028 deferred compensation customers that names, addresses, dates of birth and Social Security numbers were exposed when…
Bank of America notifies loan customers after third-party provider breach
Bank of America told the Massachusetts attorney general on January 3, 2025 that a third-party provider found unauthorised access to its systems on October 1…
Bank of Uganda lost millions after international payments were diverted
The Bank of Uganda confirmed on December 1, 2024 that two incidents diverted international payments to accounts in the UK and Japan.
LockBit published 1.5TB of data stolen from Bank Syariah Indonesia
A May 8, 2023 ransomware attack knocked out ATMs, branches and mobile banking at Bank Syariah Indonesia. LockBit claimed 1.5TB of data across nine databases…
Insider breach at Barnstable County Sheriff's Office exposed employee records
The Barnstable County Sheriff's Office disclosed in April 2025 that an employee had emailed a spreadsheet of personnel data to a personal account.
BlackCat claimed a seven terabyte data theft from Barts Health NHS Trust
ALPHV/BlackCat named Barts Health NHS Trust on its extortion site on June 30, 2023 and claimed seven terabytes of stolen files including staff records…
Bassett Furniture halted manufacturing after ransomware encrypted data files
Bassett Furniture Industries disclosed in a July 15, 2024 SEC filing that an attacker encrypted data files on July 10, forcing the Virginia manufacturer to…
BBC Pension Scheme breach exposed data on more than 25,000 members
The BBC Pension Scheme told 25,290 current and former employees that names, dates of birth, National Insurance numbers and some home addresses had been copied…
BBS Financial Services paid a ransom after breach affecting 70,168 people
BBS Financial Services, an accounting, payroll and medical billing firm in Methuen, Massachusetts, notified 70,168 people in November 2024 about a ransomware…
Ransomware attack blocked systems at Swiss vocational school BBZ Schaffhausen
Attackers exploited a security gap in the firewall of the Berufsbildungszentrum Schaffhausen on October 2, 2024, deploying encryption malware on its servers…
8,000 People Warned After BC Pension Plan Data Leak
8,000 members of the BC College Pension Plan were notifications their information may be at risk of exposure after a box of data went missing.
Cyber-Partisans claim breach of Belarus state security service
The Belarusian Cyber-Partisans announced on 26 April 2024 that they had breached the State Security Committee of Belarus, still called the KGB, and taken…
Belle Tire notifies nearly 30,000 people after June 2024 network intrusion
Belle Tire told regulators that an intrusion detected on 11 June 2024 exposed names, addresses, dates of birth, Social Security numbers and driver's license…
Berkeley Research Group discloses ransomware attack during LBO debt sale
Berkeley Research Group said it found indicators of a ransomware attack on 2 March 2025, with unauthorised activity dating to 28 February.
BGRS and SIRVA Canada breach exposed decades of federal relocation files
Relocation contractors BGRS and SIRVA Canada were breached in September 2023, exposing names, contact details, financial and passport information for Canadian…
BianLian claims theft of 500 GB from Nippon Steel's US operations
The BianLian extortion group listed Nippon Steel on its dark web leak site on February 13, 2025, claiming roughly 500 GB of data from the steelmaker's US…
Qilin ransomware gang leaked data stolen from The Big Issue Group
The Big Issue Group, publisher of the UK street newspaper sold by homeless vendors, confirmed a March 2024 cyber incident after the Qilin ransomware gang…
Hacktivists cut water to Irish group scheme over Israeli-made pump controller
A hacktivist attack on the Binghamstown and Drum group water scheme in County Mayo, Ireland cut supply for two days in early December 2023.
Bis Industries investigates RansomHub claims over December 2024 attack
Bis Industries, an Australian mining logistics and equipment supplier, confirmed that an unauthorised third party accessed and encrypted part of its IT…
CarePartners Ransomware Attack: $60K Bitcoin Demand Threatens Data Exposure
Discover the alarming story of CarePartners, an Ontario-based healthcare provider targeted by a ransomware attack. Learn how hackers are demanding $60,000 in…
Bitmarck took systems offline across German health insurers after a cyberattack
Bitmarck, one of the largest IT providers to Germany's statutory health insurance system, took customer and internal systems offline after detecting a…
Ransomware hits Black & McDonald, contractor to Canada's military
Toronto engineering and facilities management firm Black & McDonald, whose subsidiary Canadian Base Operators holds military support contracts, was hit by…
Bloom Hearing Specialists ransomware attack exposed patient and staff records
Bloom Hearing Specialists confirmed a ransomware attack detected on July 5, 2024 that exposed medical, financial and government identity records of current…
Blue Shield of California sent member health data to Google Ads by misconfiguration
Blue Shield of California reported on 9 April 2025 that a misconfigured Google Analytics setup passed member data to Google Ads from April 2021 to January 2024.
Blue Shield of California members hit by MOVEit breach at vision benefits vendor
Blue Shield of California disclosed in November 2023 that the Clop ransomware group exploited a MOVEit Transfer zero-day at vision benefits administrator…
Blue Yonder ransomware attack disrupts grocery and retail supply chains
Supply chain software provider Blue Yonder was hit by ransomware on 21 November 2024, disrupting the private cloud environment behind its managed services.
Boeing confirms cyberattack on its parts and distribution business
Boeing confirmed a cyber incident affecting its parts and distribution business after LockBit listed the company on October 27, 2023 and threatened to leak…
Bojangles notifies employees of data breach months after intrusion
Bojangles' Restaurants told employees in November 2024 that intruders had access to its network from 19 February to 12 March 2024, exposing Social Security…
Bologna FC confirmed ransomware attack after RansomHub leaked club data
Bologna FC 1909 confirmed on November 29, 2024 that a ransomware attack had stolen corporate data. The RansomHub group claimed roughly 200GB, including player…
BORN Ontario says MOVEit breach exposed health data on 3.4 million people
BORN Ontario, the province's perinatal, newborn and child registry, disclosed in September 2023 that attackers exploited the MOVEit file transfer…
Well Prepared Boyd Group Hit By Ransomware Attack
An internal notification system detected a ransomware attack on June 27th, causing the company to shut down some of its services.
Rhysida ransomware attack kept British Library services offline for weeks
A ransomware attack on October 28, 2023 knocked out the British Library's website, digital collections, catalogue and on site services in London and Yorkshire…
British Museum partly closed after dismissed contractor shut down systems
A dismissed IT contractor trespassed into the British Museum on the evening of January 23, 2025 and shut down several systems, damaging security and IT…
BronxWorks disclosed 2023 email breach exposing client and employee data
BronxWorks told regulators that an unauthorized party accessed employee email accounts and documents on SharePoint and OneDrive between September 1 and…
BT Group confirms attempted attack on conferencing unit claimed by Black Basta
BT Group said in December 2024 that elements of its BT Conferencing platform were rapidly taken offline and isolated after an attempted compromise.
Bucks County, Pennsylvania loses emergency dispatch system in ransomware attack
A cyberattack on January 21, 2024 disabled the computer-aided dispatch system serving about 130 emergency agencies in Bucks County, Pennsylvania.
Builders Mutual Insurance notified 64,761 people of a 2022 network intrusion
Builders Mutual Insurance told the Maine Attorney General in September 2023 that an unauthorized party copied files from its network in December 2022…
Burton Snowboards halted online orders after a February 2023 cyber incident
Burton Snowboards stopped processing online orders from 14 February 2023 after what it called a cyber incident, cancelling existing orders and pointing…
Ransomware at C-Edge Technologies knocked roughly 300 Indian banks offline
In July 2024 the National Payments Corporation of India isolated technology provider C-Edge Technologies after a ransomware attack, suspending ATM and UPI…
Cabot Financial Ireland tells High Court 394,000 files were stolen
Cabot Financial (Ireland) told the Irish High Court in November 2024 that 393,984 files totalling about 356GB were removed from its systems over September 17…
Caesars Entertainment disclosed loyalty database theft and paid a ransom
Caesars Entertainment filed a Form 8-K on September 14, 2023 saying an unauthorized actor had copied its loyalty program database, including driver's licence…
Unsecured database at Chile's Caja Los Andes exposed data on 10 million people
Cybernews researchers reported in August 2024 that Caja Los Andes, Chile's largest Family Allowance Compensation Fund, had left an Apache Cassandra database…
Calgary Public Library closed all branches after cyberattack
Calgary's library system powered down its servers and shut every location on the evening of Friday, October 11, 2024, reopening on October 16 with…
Calgary Real Estate Developer Hit By Ransomware Attack
Ronmor Holdings, a commercial real estate developer from Calgary, confirmed a ransomware attack in late September. The announcement was made after a notice…
CalPERS said 769,000 retirees were exposed by a vendor's MOVEit breach
CalPERS said roughly 769,000 retirees and beneficiaries had names, dates of birth and Social Security numbers exposed after vendor PBI Research Services was…
Cambridge University Press & Assessment hit by INC Ransom attack
Cambridge University Press & Assessment confirmed in late June 2024 that it was dealing with technical disruption after a cybersecurity incident affecting…
Camden County Police Department locked out of case files by ransomware
The Camden County Police Department in New Jersey confirmed a ransomware attack dated to March 13, 2023 that locked investigators out of criminal case files…
Financial Company Sees 245 Computers Encrypted with Ransomware
Manitoba based Andrew Agencies, was hit with a ransomware attack that encrypted 245 of the company’s computers potentially impacting 876 customers.
Canadian Nurses Association confirmed data theft after Snatch leaked 37GB
The Canadian Nurses Association, which represents close to half a million nurses, confirmed in September 2023 that data had been stolen in an April 3, 2023…
Candy Maker Hit By Ransomware During Halloween Rush
The troubling trend of threat actors targeting organizations during their busiest times of the year continues as hackers victimized the Ferrara Candy Company…
Cannes hospital CHC-SV reverted to paper after LockBit ransomware attack
Centre Hospitalier Simone Veil de Cannes took its computers offline after a cyberattack on April 16, 2024, postponing non-urgent surgery and consultations…
CannonDesign notified 13,000 people of 2023 AvosLocker ransomware breach
CannonDesign notified more than 13,000 people in August 2024 about an intrusion that ran from January 19 to 25, 2023. AvosLocker claimed the attack and said…
No Explanation on Ransomware Attack Leaves Customers Complaining
Ransomware attack on Canadian logistics company Canpar Express’ internal system leaves organization with extensive downtime costs.
Capita cyberattack disrupted Microsoft 365 access and exposed client data
Capita disclosed a cyber incident on April 3, 2023 that disrupted access to internal Microsoft 365 applications for the UK outsourcer.
Caravan and Motorhome Club outage in UK traced to a cyberattack
The Caravan and Motorhome Club's website, app and booking systems went down on January 20, 2024, initially blamed on maintenance.
CardioComm Solutions took systems offline after cyberattack
CardioComm Solutions, a Canadian maker of electrocardiogram recording software, disclosed a cyberattack on July 25, 2023 and took its production servers…
Company Warns 49,000 Customers After Ransom Paid In Cyber Attack
The staffing agency Career Group, recently began sending out notification letters to customers that were affected in a data breach that the company claims…
Black Basta claims ransomware attack on snack maker Carolina Foods
The Black Basta ransomware group listed Charlotte bakery Carolina Foods on its leak site on March 27, 2024, claiming roughly 450 gigabytes of corporate files…
Carpetright cyberattack halts UK store and online trading for a week
UK flooring retailer Carpetright could not take orders across roughly 400 stores or its website for nearly a week in April 2024 after malware hit its Purfleet…
Carruth Compliance Consulting breach exposed data on tens of thousands of school staff
Carruth Compliance Consulting, which administers 403(b) and 457(b) plans for US school districts, was breached between December 19 and 26, 2024.
Cartier tells clients names and email addresses were stolen in system breach
Cartier notified clients in early June 2025 that an unauthorized party gained temporary access to its systems and obtained limited client information: names…
BlackCat claimed a breach of legal platform Casepoint used by US agencies
ALPHV, also known as BlackCat, listed legal discovery platform Casepoint on its leak site in late May 2023 and claimed roughly two terabytes of data covering…
Casino Fandango disclosed June 2024 breach of its computer network
Casino Fandango notified individuals on September 23, 2024 that an intruder copied files from its network between June 8 and June 13, 2024.
Casio confirms data theft after Underground ransomware attack
Casio confirmed that an unauthorized party accessed its servers on October 5, 2024 and deployed ransomware, causing a partial service outage and leaking…
CDK Global ransomware attack halted software at 15,000 car dealerships
CDK Global took its dealer management platform offline on 19 June 2024 after a ransomware attack, then shut its IT systems down entirely after a second…
LockBit demanded $80 million from CDW after breaching Sirius Federal servers
Technology reseller CDW confirmed in October 2023 that it was investigating suspicious activity on servers dedicated to its Sirius Federal subsidiary after…
Cellcom confirms cyberattack behind week-long voice and text outage in Wisconsin
Cellcom, a regional carrier in Wisconsin and Michigan's Upper Peninsula, confirmed in May 2025 that a cyberattack caused a week-long outage of voice calling…
Eleven drug companies disclose patient data loss from Cencora breach
Eleven pharmaceutical companies, among them Bayer, Novartis, AbbVie and GlaxoSmithKline, filed breach notices with the California Attorney General in May 2024…
Center for Vein Restoration breach exposed data on 446,094 patients and staff
Center for Vein Restoration told the U.S. Department of Health and Human Services that a breach identified on October 6, 2024 affected 446,094 people.
Central Texas Pediatric Orthopedics breach affected 140,000 patients
Central Texas Pediatric Orthopedics reported that intruders were in its network between 23 and 26 January 2025. Exposed data included names, dates of birth…
Cerebral tells 3.1 million people tracking pixels leaked their health data
Cerebral notified 3,179,835 people in March 2023 that protected health information had been disclosed to Google, Meta, TikTok and other platforms through…
Former CFPB employee sent data on 256,000 consumers to a personal email
The Consumer Financial Protection Bureau said a former employee forwarded confidential records to a personal email account, including data on roughly 256,000…
Chain IQ breach spilled contact data on more than 100,000 UBS employees
Chain IQ, a Swiss procurement services provider, was breached in June 2025 in an attack the company said also hit 19 other organizations.
Cyberattack on Change Healthcare disrupted US pharmacies and claims processing
A February 21, 2024 cyberattack forced Change Healthcare, part of UnitedHealth Group's Optum unit, to take more than 100 applications offline, disrupting…
Ransomware attack closed Charles Darwin School in Bromley for three days
Charles Darwin School in Biggin Hill, Bromley, told parents on September 6, 2024 that its IT problems were a ransomware attack.
Charter Oak Federal Credit Union pulls online banking offline after attack
Charter Oak Federal Credit Union took its website and online banking offline for five days in July 2023 after detecting unusual activity.
Chemeketa Community College staff data exposed in Carruth Compliance breach
Chemeketa Community College said anyone employed since 2008 may have had names, Social Security numbers and retirement details exposed after attackers copied…
Chemonics International discloses 2023 intrusion affecting 263,136 people
Chemonics International, a major USAID contractor, disclosed in December 2024 that attackers had access to its systems from May 30, 2023 until January 9, 2024.
Chicago Public Schools says Cleo vendor breach exposed 700,000 students
Chicago Public Schools disclosed in March 2025 that about 700,000 current and former students had data exposed through the Clop group's campaign against Cleo…
Chick-fil-A confirmed 71,473 accounts hit by credential stuffing
Chick-fil-A told state attorneys general that an automated credential stuffing campaign ran against its website and mobile app between December 18, 2022 and…
Rhysida ransomware group published documents stolen from the Chilean Army
The Chilean Army confirmed a security incident on its internal network on May 29, 2023. The Rhysida ransomware group later published roughly 360,000 documents…
Choice Hotels confirmed Radisson guest records taken in MOVEit attacks
Choice Hotels International said a limited number of Radisson Hotels Americas guest records were accessed by attackers exploiting the MOVEit Transfer flaw…
Christian Dior Couture confirms customer data breach affecting Asian shoppers
Christian Dior Couture confirmed in May 2025 that an unauthorized external party accessed a customer database, exposing names, gender, phone numbers, email…
Cyberattack diverts ambulances from Brussels hospital CHU Saint-Pierre
Brussels university hospital CHU Saint-Pierre detected a cyberattack in the early hours of March 10, 2023. Patient record systems and phone lines went down…
Chunghwa Telecom breach put 1.7TB of Taiwanese government data on the dark web
Taiwan's defense ministry confirmed on March 1, 2024 that hackers stole sensitive data from Chunghwa Telecom and sold it on the dark web.
CIC Group notified 4,500 people after a breach exposed Social Security numbers
CIC Group, Inc., a St. Louis holding company serving the energy sector, notified individuals in April 2023 that names, addresses and Social Security numbers…
Small Risk, High Costs After Ransomware hits CIRA Parking Garage
3rd party operators to CIRA's parking garage, were recently hit by ransomware initiating high remediation costs. Read More
CISA took two systems offline after Ivanti gateway flaws were exploited
The US Cybersecurity and Infrastructure Security Agency confirmed in March 2024 that Ivanti Connect Secure and Policy Secure flaws were used to compromise two…
Cisco traces IntelBroker data leak to public DevHub portal
IntelBroker's October 2024 forum listing named Microsoft, AT&T, Bank of America, National Australia Bank and Vodafone Australia among affected Cisco customers.
BlackByte ransomware gang claimed attack on the City of Augusta, Georgia
The BlackByte ransomware group claimed a May 2023 attack that took City of Augusta, Georgia systems offline and leaked a 10GB sample of city files, including…
BEC Phishing Scam Tricks City into Transferring $530K
With malicious attacks on local governments on the rise, the software and applications used to target and infiltrate systems is growing more and more…
City of Cleveland confirms ransomware attack that closed City Hall for two weeks
The City of Cleveland detected anomalies in its IT systems on 8 June 2024, shut systems down the next day and closed City Hall to the public on 10 June.
Rhysida claimed 6.5TB of data from the City of Columbus ransomware attack
The City of Columbus, Ohio disclosed a ransomware attack on 18 July 2024 that took services offline. Officials said severing internet connectivity prevented…
Royal ransomware disrupted City of Dallas police, court and dispatch systems
The City of Dallas confirmed on May 3, 2023 that ransomware had compromised a number of its servers, taking down police and City Hall websites, cancelling…
Ransomware attack disrupts services for the city of Durant, Oklahoma
The city of Durant, Oklahoma disclosed a ransomware attack on 1 June 2025 that disrupted digital and credit card payments and caused network outages at the…
Ransomware attack knocked City of Flint payment and phone systems offline
The City of Flint, Michigan was hit by ransomware on August 14, 2024. The attack took down its billing platform, phones, email and GIS mapping, forcing cash…
City of Frederick lost $280,527 to a phishing driven wire fraud scheme
The City of Frederick, Maryland lost $280,527.30 to a phishing driven wire transfer fraud connected to the renovation of the William Donald Schaefer Building…
Ransomware disabled most of the City of Hamilton's network for weeks
The City of Hamilton, Ontario discovered a ransomware attack on February 25, 2024 that disabled about 80 percent of its network, halting online payments…
City of Hilliard, Ohio lost $219,000 to a vendor impersonation scam
Fraudsters posing as paving contractor Strawser persuaded a City of Hilliard accounting assistant to change the vendor's bank details in December 2022, and…
Ransomware attack shut down City of Hoboken government operations
A ransomware attack on the City of Hoboken, New Jersey closed City Hall and municipal court on November 27, 2024. The 3AM group claimed the intrusion and took…
Long Beach declared a local emergency after a November 2023 network breach
The City of Long Beach, California detected a network security incident on November 14, 2023, took systems offline and proclaimed a local emergency.
Malware attack disrupts services in the City of Oak Ridge, Tennessee
A malware attack on 20 March 2023 took down the City of Oak Ridge, Tennessee's municipal network, disrupting utility billing, staff email and the city website.
Oakland declared a local emergency after ransomware took city systems offline
A ransomware attack that began on February 8, 2023 forced the City of Oakland, California to take non-emergency systems offline, disrupting payments, permits…
City of Toronto confirms data theft through GoAnywhere file transfer vendor
The City of Toronto confirmed on 23 March 2023 that unauthorised access to city data occurred through a third-party vendor using Fortra's GoAnywhere managed…
Ransomware forces the City of Wichita to shut down its network
The City of Wichita, Kansas said certain systems were encrypted by malware on 5 May 2024 and shut down its network to contain the spread.
Local Canadian Govt Accrues $667,000 in Costs After Ransomware
Although a ransom was not paid, city officials in Woodstock, ON have disclosed that they have spent $667,627 to resolve a ransomware attack from earlier this…
City’s Privacy Breach Handed Over to Provincial Privacy Commissioner
The city of Corner Brook has handed over the reigns of a data breach investigation over to the province’s privacy commissioner- Read More
Hackers emailed stolen student records to Clark County School District parents
Clark County School District, the fifth largest in the United States, disclosed a breach of its email environment on October 16, 2023.
Classes Cancelled As School Recovers From Ransomware Attack
Butler County Community College classes have been canceled for at least two days as the school recovers from a ransomware attack.
Clearview Resources loses C$1.5 million to email account takeover
Clearview Resources Ltd., a Calgary-based natural gas and light oil producer, disclosed on January 12, 2024 that attackers compromised an internal email…
Cyber incident closed Cleveland Municipal Court for more than two weeks
Cleveland Municipal Court in Ohio closed to the public on 24 February 2025 after detecting a cyber incident, taking all internal systems, software and its…
Clorox took systems offline after unauthorized activity on its network
The Clorox Company said in an 8-K filed on 14 August 2023 that it had identified unauthorized activity on some IT systems, taken certain systems offline and…
CloudNordic and AzeroCloud lost nearly all customer data in ransomware attack
Danish cloud hosts CloudNordic and AzeroCloud said a ransomware attack on August 18, 2023 encrypted every server disk plus primary and secondary backups.
CMS said a MOVEit hack at contractor WPS exposed 946,801 Medicare beneficiaries
The Centers for Medicare & Medicaid Services said in September 2024 that the 2023 MOVEit Transfer exploitation had exposed beneficiary data held by contractor…
Co-op Group confirmed member data theft after DragonForce intrusion
The Co-op Group disclosed a cyberattack on 30 April 2025, shutting down parts of its IT systems. It first said there was no evidence of customer data loss…
$100’s of Thousands Stolen as Coast Capital Members Targeted In Phishing Ring
A ring of phishing scams targeted banking customers at Coast Capital Savings. A reported 140 members had thousands of dollars stolen from their accounts in…
Coffee County, Georgia cut its link to the state voter roll after a cyberattack
Federal officials alerted Coffee County, Georgia to suspicious cyber activity on its network on April 15, 2024. The county declared a cyber incident, worked…
Coinbase says bribed overseas support agents leaked customer data
Coinbase disclosed on 15 May 2025 that criminals had bribed overseas customer support contractors to extract user records, including names, addresses, partial…
Coles customer credit card data caught up in Latitude Financial breach
Coles Group told customers that historical credit card data held by Latitude Financial was exposed in Latitude's March 2023 breach, affecting cardholders from…
Rhysida claimed the ransomware attack on Martinique's territorial government
The Collectivité Territoriale de Martinique detected a cyberattack on May 16, 2023 that paralysed its information systems, cut internet access at schools and…
Colorado Department of Higher Education breach exposed 16 years of records
The Colorado Department of Higher Education disclosed in August 2023 that attackers were in its network from June 11 to 19 and copied records spanning 2004 to…
Colorado health agency notified 4.1 million people after IBM MOVEit breach
Colorado's Department of Health Care Policy and Financing said files its contractor IBM was transferring with MOVEit were accessed on 28 May 2023.
Colorado public defender says ransomware attack exposed client data
The Office of the Colorado State Public Defender found its systems encrypted by malware on February 9, 2024 and disclosed in March that copied files may have…
Comcast Xfinity breach exposed data of 35.8 million customers via Citrix Bleed
Comcast said attackers used the Citrix Bleed vulnerability to reach Xfinity systems in October 2023, exposing usernames and hashed passwords for more than…
Vice Society leaked CommScope employee data after March ransomware attack
CommScope detected unauthorised access to its IT infrastructure on 27 March 2023. The Vice Society ransomware group later leaked internal documents plus…
UK Communications Workers Union confirms cyberattack on its IT systems
The Communications Workers Union, which represents about 185,000 UK postal and telecoms workers, confirmed in March 2024 that a cyberattack had disrupted its…
Community Health Center breach exposed data on more than 1 million patients
Community Health Center, Inc. detected an intrusion on January 2, 2025 that traced back to mid-October 2024. The Connecticut nonprofit said 1,060,936 people…
Compass Group Australia confirmed Medusa ransomware attack
Compass Group Australia confirmed a Medusa ransomware attack detected on 4 September 2024. The gang claimed 785.5 GB of data and demanded US$2 million…
Conduent confirms cyberattack behind US government service outages
Conduent confirmed on January 22, 2025 that an outage disrupting child support and social service payments in several US states was caused by a cybersecurity…
ALPHV claims ransomware attack on Constellation Software
Constellation Software confirmed an April 3, 2023 intrusion affecting a limited number of systems tied to internal financial reporting.
Richmond, BC Facility’s System Shutdown in Lieu of Ransom Payment
Rather than paying a hefty ransom, with no guarantee of their data being released, Container World has opted to shut their systems down...Read more
Cook County Health notifies 1.2 million patients of breach at vendor PJ&A
Cook County Health said on November 3, 2023 that about 1.2 million patients may have had data exposed in an April 2023 breach at Perry Johnson and Associates…
Cooper Aerobics notifies patients almost a year after network intrusion
Cooper Aerobics, which operates Cooper Clinic, Cooper Medical Imaging and Cooper Aerobics Enterprises in Dallas, began notifying individuals on January 5…
Cornell ticket buyers hit by AudienceView Campus platform breach
Cornell University warned that payment card data from ticket purchases made between 17 and 21 February 2023 was stolen through malware in AudienceView's…
Dutch COVID testing lab CoronaLab exposed 1.3 million records in open database
Security researcher Jeremiah Fowler reported an unsecured database carrying CoronaLab.eu branding, owned by Amsterdam medical laboratory Microbe & Lab…
Court Services Victoria breach exposed years of court hearing recordings
Court Services Victoria found in December 2023 that an intruder had reached the network holding audio and video recordings of court hearings.
Covenant Health cyberattack disrupts hospitals in Maine and New Hampshire
Covenant Health detected a cyberattack on 26 May 2025 and shut down data systems across its New England hospitals and clinics, limiting laboratory work and…
Ransomware attack halted book printer CPI UK's production for weeks
CPI, the largest book printer in the United Kingdom, had its IT systems disabled by a ransomware attack on 7 February 2025.
Thousands Affected By CRA Data Breach
The Canada Revenue Agency has temporarily shut down online services after a data breach involving two cyber attacks compromised thousands of accounts linked…
Thousands of Canadians Affected As CRA Employees Caught Snooping
CRA employees caused an internal data breach exposing records of over 41K Canadian tax payers. Disciplinary measures are sure to follow.
Credit Control Corporation disclosed March 2023 breach affecting hundreds of thousands
R&B Corporation of Virginia, trading as Credit Control Corporation, told regulators an intruder accessed its network between March 2 and March 7, 2023 and…
LockBit claimed attack on Crinetics Pharmaceuticals and demanded $4 million
Crinetics Pharmaceuticals investigated a March 2024 intrusion that began with a compromised employee email account, after LockBit listed the company on its…
Medusa ransomware group claims data from Sydney's Crown Princess Mary Cancer Centre
Medusa listed the Crown Princess Mary Cancer Centre at Westmead Hospital on its dark web leak site in May 2023, claiming thousands of files and setting a…
Crown Resorts confirms Clop extortion attempt after GoAnywhere zero-day
Crown Resorts, Australia's largest casino operator, confirmed in late March 2023 that the Clop group had emailed it claiming to hold a limited number of Crown…
Cumbria police accidentally published names and salaries of all staff
Cumbria Constabulary confirmed in August 2023 that a human error on 6 March 2023 put the names, positions, pay and allowances of every police officer and…
Utilities Company Urging Customers To Be Alert After Data Breach
A large number of Hamilton residents were affected when a local utilities company data breach compromised an unknown number of customers’ personal data.
Cutout.Pro records for about 20 million accounts leaked on hacking forum
A BreachForums user posting as KryptonZambie published about 5.93 GB of CSV files said to come from AI editing service Cutout.Pro in late February 2024.
CVS Group took systems offline after unauthorised access to UK IT servers
CVS Group plc, one of the UK's largest veterinary businesses, said on April 8, 2024 that it had intercepted unauthorised external access to a limited number…
Ukrainian hacktivists took Russian bank connectivity provider Infotel JSC offline
On June 8, 2023 the pro-Ukraine group Cyber.Anarchy.Squad wiped network equipment at Infotel JSC, the Moscow provider that runs the system linking the Central…
Cyber Attack Cripples Exco Technologies: Three Production Facilities Still Recovering
Stay informed with the latest update on the severe cyber attack suffered by Exco Technologies, a Canada-based manufacturer of diecast auto parts and tools.
Cyberattack on Government Agency Disrupts Computer Systems
The West Virginia Parkways Authority's internal computer systems were down for several hours after a presumed ransomware attack.
D-Link confirmed a phishing attack exposed old registration records
D-Link traced an October 2023 data breach to an employee who fell for a phishing email. A BreachForums seller offered the data for 500 dollars, claiming three…
About 2,000 Dublin Airport staff had pay data taken in the Aon MOVEit breach
daa confirmed on July 3, 2023 that pay and benefits information for about 2,000 Dublin Airport employees had been stolen after Aon, a third-party provider…
Black Basta leaked 200GB stolen from Swiss staffing firm Das Team AG
Basel-based staffing agency Das Team AG confirmed a December 2023 ransomware attack by Black Basta after about 200GB of stolen files, including employee…
DataPost ransomware attack exposed data of 146 Income Insurance policyholders
A ransomware attack on DataPost, a Singapore document handling and mailing vendor, compromised bonus statements for at least 146 Income Insurance policyholders.
David's Bridal notified customers and staff of January 2024 data breach
David's Bridal told employees and customers that files containing names and Social Security numbers were accessed in January 2024.
DBS and Bank of China Singapore customer data exposed by vendor ransomware
DBS Bank said on 7 April 2025 that a ransomware attack on printing vendor Toppan Next Tech may have exposed statements for about 8,200 of its customers…
DC Board of Elections says voter roll was stolen from its hosting provider
The District of Columbia Board of Elections confirmed in October 2023 that voter records were taken through the web server of hosting provider DataNet Systems.
LockBit claimed DC insurance regulator data taken via Tyler Technologies cloud
On April 13, 2024 the LockBit ransomware gang claimed it had taken 800GB from the District of Columbia Department of Insurance, Securities and Banking.
DC Health Link breach exposes data on 56,000 people including members of Congress
DC Health Link disclosed in March 2023 that data on 56,415 current and former customers had been stolen and offered for sale on a hacking forum.
DE Photo hit by back-to-back intrusions over Christmas 2024
DE Photo, a UK school, sports and event photography business, disclosed two intrusions in late December 2024. An actor using the handle 0mid16B claimed…
Decathlon confirmed Spanish employee email addresses leaked from third-party app
Decathlon confirmed that email addresses of its Spanish employees were exposed after a threat actor known as 888 advertised the data online in May 2024.
DeepSeek left a database of chat logs and API keys exposed online
Wiz Research disclosed in late January 2025 that a DeepSeek ClickHouse database was reachable online with no authentication, exposing over a million lines of…
Defence Construction Canada Recovering After Cyber Attack On IT Systems
A cyber attack affecting IT systems has left Defence Construction Canada with operational disruptions to procurement and other projects.
Hacker claimed two Dell Technologies breaches within days in September 2024
A threat actor using the alias grep claimed two Dell Technologies breaches within days in September 2024: a set of 10,863 employee records, then 3.5 GB pulled…
Delta Dental of California MOVEit breach affected nearly 7 million people
Delta Dental of California and its affiliates notified roughly 6.93 million people that personal and health data was stolen through the MOVEit Transfer…
DemandScience confirms leaked 122 million record database came from its systems
DemandScience, formerly Pure Incubation, confirmed in November 2024 that a database of about 122 million business contact records circulating since February…
DENHAM the Jeanmaker confirms cyberattack linked to Akira ransomware
DENHAM the Jeanmaker, the Amsterdam denim label, confirmed in January 2024 that attackers reached some business data in an intrusion discovered on December…
Denver Public Schools breach exposed employee Social Security numbers
Denver Public Schools said an unauthorised actor accessed files on district servers between December 13, 2022 and January 13, 2023, taking employee Social…
Desjardins Class Action Lawsuit Over 2019 Breach Settles For $200M
A settlement in a class-action lawsuit related to a 2019 data breach sees the Desjardins Group pay up to nearly $201 million.
Former Credit Union Employee Creates Data Breach Affecting 2.9 Million Customers
A former employee of the financial group, Desjardins, made off with personal data from millions of customers by accessing the company’s network.
Deutsche Bank customer data exposed in service provider's MOVEit breach
Deutsche Bank said customer data was exposed after a MOVEit related breach at Majorel, the external provider running its German account switching service.
Development Bank of Southern Africa disclosed an Akira ransomware attack
The state-owned Development Bank of Southern Africa said a ransomware attack on or about May 21, 2023 encrypted servers, log files and documents and exposed…
Dick's Sporting Goods discloses intrusion and locks employees out of email
In a Form 8-K made public on 28 August 2024, Dick's Sporting Goods said it discovered unauthorised third-party access to its information systems on 21 August.
Brazilian Volvo dealer Dimas Volvo leaked database credentials for a year
Cybernews researchers found on February 17, 2023 that Dimas Volvo, an independent Volvo dealer in Santa Catarina, Brazil, was publicly exposing configuration…
Diocese of Las Vegas disclosed a data breach affecting parishioners and donors
The Diocese of Las Vegas said it detected a cybersecurity incident on March 12, 2023 that may have exposed sensitive information about volunteers…
DISA Global Solutions breach exposed data on 3.3 million screening subjects
DISA Global Solutions, a Houston-based employment background check and drug testing provider, disclosed in February 2025 that an intruder had access to its…
Disability Rights Wisconsin email breach exposed 19,150 Medicaid members
Wisconsin's Department of Health Services announced on 21 June 2024 that a security incident at Disability Rights Wisconsin, a partner advocacy group, may…
DISH Network confirms ransomware attack behind multi-day outage
DISH Network confirmed in a February 2023 SEC filing that a cybersecurity incident caused a multi-day outage across its website, apps, call centers and Boost…
Disney investigates leak of 1.1 TB of internal Slack data
An entity calling itself NullBulge posted about 1.1 terabytes of material taken from roughly 10,000 of Disney's internal Slack channels in July 2024…
Anubis group claimed 64 GB of Disneyland Paris files from a contractor
On June 20, 2025 the Anubis ransomware-as-a-service group added Disneyland Paris to its dark web leak site, claiming more than 39,000 engineering…
Akira ransomware lists Italian ERP consultancy Divimast on its leak site
The Akira ransomware group listed Italian Microsoft Dynamics 365 consultancy Divimast on its leak site on January 17, 2025, claiming roughly 8GB of private…
DNA Testing Centre Admits To Data Breach Affecting Over 2 Million People
This week, DNA and paternity testing company DNA Diagnostic Center announced it had discovered unauthorized access to its network that led to a data breach in…
DocGo discloses cyberattack that exposed patient health data
DocGo disclosed in a Form 8-K filed with the SEC on 7 May 2024 that a threat actor accessed its network and acquired protected health information from a…
Docomo Pacific cyberattack knocks out internet and phone services in Guam and the CNMI
Docomo Pacific, the largest telecom in Guam and the CNMI, said attackers hit some of its servers on 17 March 2023. Failsafe shutdowns took down home internet…
Dole shut down North American operations after ransomware attack
Dole plc confirmed in late February 2023 that a ransomware attack forced it to shut down systems across North America, closing produce plants and putting…
Nearly 5 Million DoorDash Users Impacted After Server Hack
Door Dash, announces a data breach that could affect nearly 5 million people after hackers gained access to their servers.
F&B Customer’s Data Exposed In Ransomware Attack
A cyber attack has left the fast food and gaming chain Dotty’s, with severely impacted operations and exposed customer data.
Russian satellite operator Dozor-Teleport knocked offline in June 2023 hack
Dozor-Teleport, a Russian satellite operator serving the FSB, energy firms and remote military sites, was knocked offline on June 29, 2023.
DP World Australia halts four container ports after network intrusion
DP World Australia detected unauthorised access to its corporate network on November 10, 2023 and cut it off from the internet, halting container terminals at…
Dropbox Sign production systems breached, user credentials exposed
Dropbox disclosed in a 1 May 2024 SEC filing that an attacker reached the production environment of its Dropbox Sign e-signature service via a compromised…
600,000 Patients Warned After Medical Group Discovers Data Breach
Over 600,000 patients of the DuPage Medical Group are being notified that a cyber attack in July may have compromised their personal information.
Dutch national police breach exposes contact details of every officer
Attackers stole work names, email addresses and phone numbers covering roughly 62,000 Dutch national police staff, close to the entire force, after…
Ransomware halted brewing at Duvel Moortgat's Belgian and US sites
Duvel Moortgat detected ransomware in the early hours of March 6, 2024 and shut down its servers, stopping production at every Belgian brewery and its US site.
Dymocks blamed an external data partner for a breach of 836,000 customers
Dymocks, the Australian bookseller, warned customers on September 8, 2023 that their records were circulating on the dark web.
Rhysida ransomware gang demanded $1.3 million from Easterseals Central Illinois
Easterseals Central Illinois detected a cyberattack on April 1, 2024 that exposed names, Social Security numbers, passport details and medical records for…
EBlock notified nearly 2,000 people of breach of legacy ABS Auto Auctions systems
EBlock Corp., the Toronto-based vehicle auction platform, began notifying roughly 1,500 to 2,000 people on April 8, 2024 that an August 2023 intrusion into…
Edinburgh council resets school network passwords after phishing attack
The City of Edinburgh Council reset every password on its schools and early years IT network after staff spotted a suspected targeted phishing attack on 9 May…
Royal ransomware gang claimed 20GB of data stolen from EdisonLearning
The Royal ransomware group added EdisonLearning to its dark web leak site on April 26, 2023, claiming to have stolen 20GB of data including personal…
Edmonton Construction Company Warns Industry After $11.8M Phishing Scam
Threat actors impersonated Edmonton construction company, Clark Builders in an elaborate online scam stealing $11.8 million from MacEwan University.
Effortel breach exposes data of 70,000 Belgian mobile customers
Effortel, a Belgium-based mobile virtual network enabler, confirmed a breach exposing personal data of about 70,000 customers of Carrefour Mobile, Neibo and…
eHealth Sask Sees Downtime Costs Escalate After Ransomware Attack
Ransomware leaves eHealth Saskatchewan with a major loss in business productivity leaving 31 cancer patients to reschedule their treatment.
Electric Ireland says contractor staff member accessed 8,000 customers' data
Electric Ireland told roughly 8,000 of its 1.1 million residential customers in November 2023 that an employee of a company working on its behalf may have…
Elite Fitness confirms DragonForce ransomware attack in New Zealand
New Zealand fitness equipment retailer Elite Fitness confirmed a ransomware attack after the DragonForce gang published about 5.31 GB of stolen files.
Elitecare Emergency Hospital notifies 24,754 patients of data breach
Elitecare Emergency Hospital in League City, Texas notified 24,754 patients after detecting suspicious activity on July 10, 2024 and confirming a week later…
Employees Seek Class Action Lawsuit After Info Stolen In Data Breach
A potential class action lawsuit might be instore for truck manufacturer, Navistar after a data breach that exposed current and former employee information.
Energy One takes systems offline after cyberattack on Australian and UK operations
Energy One disclosed on August 21, 2023 that a cyberattack had hit corporate systems in Australia and the United Kingdom.
ENGlobal discloses ransomware attack that limited access to its IT systems
ENGlobal Corporation disclosed in a December 2, 2024 SEC filing that a threat actor accessed its IT systems and encrypted data files on November 25.
Enzo Biochem said ransomware attack exposed test data on 2.47 million people
New York biotechnology firm Enzo Biochem disclosed in an SEC filing that an April 6, 2023 ransomware attack exposed clinical test information for…
EPA denies breach after hacker posts 8.5 million contact records
A threat actor using the handle USDoD posted a dataset of about 8.5 million U.S. Environmental Protection Agency contact records on a criminal forum in April…
Hacktivist Group Anonymous Leaks 180GB of Far-Right Data
The legendary hacktivist group Anonymous made headlines this week, as they claimed to have stolen gigabytes of data from Epik, a domain name, web hosting and…
Episource breach exposed health records of more than 5.4 million people
Episource, a California medical coding and risk adjustment company owned by Optum, disclosed in June 2025 that attackers copied files containing Social…
EquiLend tells employees data was stolen in January ransomware attack
EquiLend pulled systems offline in late January 2024 after detecting unauthorized access, restored client services by February 5, and in mid-March told…
Erie Insurance confirms cyberattack behind multi-week outage
Erie Insurance detected unusual network activity on June 7, 2025 and later confirmed a cyberattack, leaving customers unable to reach its portal, file claims…
LockBit claims ransomware attack behind Essendant's multi-week outage
Essendant, the Staples-owned wholesale distributor of office products, went offline on March 6, 2023 in an outage later confirmed as ransomware.
Estee Lauder confirmed data theft as Clop and BlackCat both claimed attacks
The Estee Lauder Companies confirmed on July 18, 2023 that an unauthorized third party accessed its systems and obtained data, and that business operations…
Estes Express Lines confirms cyberattack behind multi-day IT outage
Estes Express Lines confirmed in October 2023 that a cyberattack caused an outage across its core technology infrastructure, forcing manual freight operations.
ETSI says attackers stole its online user database
The European Telecommunications Standards Institute disclosed on September 27, 2023 that attackers exploited a vulnerability in its member portal and…
Everbridge told customers attackers reached corporate files after employee phishing
Everbridge told customers that an intruder detected on May 21, 2024 had reached files on its corporate network after an earlier phishing campaign against…
Ransomware at Derry data firm Evide hit charities serving abuse survivors
Evide, a Derry-based data management firm serving around 140 charities across Ireland and the UK, was hit by ransomware in late March 2023.
Experts Deem N.L. Cyberattack as Canada’s Worst Ever
Provincial officials call for federal response after massive cyber attack hits Newfoundland and Labrador healthcare system.
Fall River Public Schools in Massachusetts hit by ransomware attack
Fall River Public Schools in southeastern Massachusetts detected unauthorized access to its internal network on April 7, 2025.
Defunct Fallon Ambulance Service breach exposed data on 911,757 people
Transformative Healthcare notified about 911,757 people that an archived copy of records from Fallon Ambulance Service, a Boston-area medical transport…
Debt collector FBCS breach grew from 1.9 million to more than 3 million people
Financial Business and Consumer Solutions, a Pennsylvania debt collector, disclosed a February 2024 network intrusion first reported as affecting 1.9 million…
FBI Email System Compromised In Cyberattack
Tens of thousands of fraudulent emails were sent from a compromised email account belonging to the US Federal Bureau of Investigation.
FBI Investigating Attempted Data Breach During Election Fraud
An alleged attempted breach of Ohio’s Lake County elections network failed as a malicious insider’s plans were foiled. Federal and state officials are now…
FBI confirmed a cyber incident on its own network at the New York field office
The FBI confirmed on 17 February 2023 that it was investigating a cyber incident on its own network. CNN first reported that the affected system sat in the…
Federated Co-operatives cyberattack disrupted Co-op stores and fuel cardlocks
Federated Co-operatives Limited disclosed a cybersecurity incident on June 27, 2024 that knocked out its 398 cardlock fuel sites and emptied Co-op grocery…
FIA discloses data breach after phishing attacks on two email accounts
The FIA, which governs Formula 1 and the World Rally Championship, disclosed in early July 2024 that phishing attacks led to unauthorized access to personal…
Fidelity Investments breach exposed personal data of 77,099 customers
Fidelity Investments told regulators in Maine, New Hampshire and Massachusetts that a third party used two newly created customer accounts to retrieve…
Fidelity Investments Life Insurance notified 28,000 after Infosys McCamish breach
Fidelity Investments Life Insurance Company notified roughly 28,000 people in March 2024 that an unauthorized third party reached Infosys McCamish Systems…
Fidelity National Financial shut down systems after ALPHV ransomware attack
Fidelity National Financial disclosed in a Form 8-K that an intruder accessed systems and acquired credentials on November 19, 2023, forcing shutdowns that…
ALPHV claimed theft of 385GB from Australian bond broker FIIG Securities
In June 2023 the ALPHV ransomware group, also known as BlackCat, listed Australian fixed income broker FIIG Securities and claimed about 385 gigabytes of data.
Finastra investigates breach of internal file transfer platform
Finastra detected suspicious activity on an internally hosted secure file transfer platform on 7 November 2024 after a criminal advertised about 400GB of…
Ransomware attack halted work at Fincantieri Marine Group's Wisconsin shipyard
Fincantieri Marine Group confirmed a ransomware attack on its Wisconsin shipyard on April 12, 2023, which rendered data on network servers unusable and idled…
Fintech Customer Accounts Locked After Credential Stuffing Attack
Customers of the banking and investing platform MoneyLion were recently targeted by a credential stuffing attack - Read More
FINTRAC took corporate systems offline after a March 2024 cyber incident
The Financial Transactions and Reports Analysis Centre of Canada took its corporate systems offline after detecting a cyber incident on March 2, 2024.
Fireworks Software breach exposed data tied to Rowan College at Burlington County
Fireworks Software, a CRM vendor for colleges, said an intruder reached files between June 23 and 26, 2024. Reported totals put 27,404 people at risk, with…
First Nations Health Authority reported a cyberattack on its corporate network
British Columbia's First Nations Health Authority detected an intrusion on its corporate network on May 13, 2024 and confirmed it publicly on May 22.
Firstmac confirms breach after EMBARGO ransomware attack
Australian non-bank lender Firstmac told customers on 30 April 2024 that an unauthorized third party accessed part of its IT system.
Five Guys Data Breach: Job Applicant Information Compromised
Five Guys has recently disclosed a data breach that affected job applicants' sensitive information. The unauthorized access to the company's computer system…
Flagstar Bank told 837,000 customers their data was taken in Fiserv MOVEit breach
Flagstar Bank notified 837,390 US customers in October 2023 that names and Social Security numbers were taken when Clop exploited the MOVEit Transfer zero-day…
Flair Airlines left database and email credentials exposed on its website
Cybernews researchers found publicly readable environment files on Flair Airlines' flyflair.com site exposing MySQL database credentials, SMTP credentials and…
FlightAware configuration error exposed account data for over three years
FlightAware notified users in August 2024 that a configuration error found on July 25, 2024 had exposed account data going back to January 1, 2021, including…
Florida Department of Health data published after RansomHub attack
RansomHub published about 100 GB of files stolen from the Florida Department of Health in July 2024 after the state, barred by law from paying ransoms since…
ALPHV claimed ransomware attack on Florida's First Judicial Circuit Court
Florida's First Judicial Circuit announced a cyberattack on October 2, 2023 that disrupted courts in Escambia, Santa Rosa, Okaloosa and Walton counties.
Food Importer Admits Data Breach After Previous Ransomware Attack
North American food importer Atalanta recently declared a data breach due to a ransomware attack that happened in July 2021.
Football Australia exposed player passports and contracts through leaked AWS keys
Researchers disclosed on February 1, 2024 that Football Australia had embedded AWS access keys in plain text in its website's client-side code.
Fortinet confirmed customer data taken from third-party cloud file drive
Fortinet confirmed in September 2024 that an unauthorized individual accessed a limited number of files on its instance of a third-party cloud file drive.
Fota Wildlife Park told customers to cancel cards after a website breach
Fota Wildlife Park in County Cork, Ireland disclosed on 28 August 2024 that intruders had been active on its website. Customers who paid on the site between…
LockBit defaces Foxsemicon website and claims 5TB of stolen data
Foxsemicon Integrated Technology, a Taiwanese semiconductor equipment maker in the Foxconn group, found its website replaced with a LockBit ransom message on…
France Travail breach exposes data on up to 43 million job seekers
France Travail disclosed on March 13, 2024 that intruders had extracted personal data on up to 43 million people registered with the agency over the previous…
Fraudster Impersonates Support Agent In Cox Vishing Attack
Digital cable provider Cox Communication recently disclosed a data breach after a successful vishing attack helped a threat actor gain access to customer…
Ransomware attack hit Germany's Fraunhofer IAO research institute in Stuttgart
Germany's Fraunhofer IAO in Stuttgart said a ransomware attack on December 27, 2024 impaired certain systems and data. The institute notified the Bavarian…
Fred Hutchinson Cancer Center ransomware attack led to extortion of patients
Fred Hutchinson Cancer Center in Seattle detected unauthorized activity on its clinical network on November 19, 2023. Hunters International claimed 533 GB of…
French ISP Free confirms breach of subscriber data
Free SAS confirmed a breach of an internal management tool in late October 2024 after a criminal forum listing advertised 19.2 million Free Mobile and Freebox…
Freecycle disclosed a breach affecting more than 7 million members
Freecycle, the nonprofit network for giving away unwanted goods, confirmed in late August 2023 that data on about 7 million of its roughly 11 million members…
Thousands Impacted By Freedom Mobile Server Leak
Thousands of Freedom Mobile customers had their personal information compromised in an unencrypted database. Security researchers found that the database was…
Freehold Township School District closes schools after cybersecurity incident
Freehold Township School District in New Jersey closed its eight K-8 schools on January 29, 2024 after a cybersecurity incident, giving families less than 12…
Freeport-McMoRan disclosed a cybersecurity incident affecting its IT systems
Freeport-McMoRan disclosed on 11 August 2023 that it was investigating a cybersecurity incident affecting its information systems.
Fresh Del Monte Produce notified employees after network intrusion
Fresh Del Monte Produce notified current and former employees that a network intrusion in early 2023 exposed names, Social Security numbers, driver's license…
Fresnillo disclosed unauthorised access to IT systems and data
Fresnillo plc, the world's largest primary silver producer, told the London and Mexican stock exchanges around 1 August 2024 that a cyber security incident…
Frontier Communications disclosed April 2024 breach of its IT environment
Frontier Communications filed an Item 1.05 Form 8-K on April 18, 2024 disclosing that it detected a third party in portions of its IT environment on April 14.
Fujitsu confirms malware on work computers and possible data theft
Fujitsu disclosed on March 15, 2024 that malware on several work computers may have allowed files with personal and customer information to be copied out.
Cyberattack knocked out Fulton County, Georgia government systems
Fulton County, Georgia said a weekend cyberattack disclosed on January 29, 2024 took down county phone lines, electronic court filing, probate and tax…
FunkSec claimed a breach at Sorbonne Universite; the university called it limited
FunkSec claimed 20 GB of data from Sorbonne Universite and gave officials about 12 days to pay an undisclosed ransom. The university acknowledged only a…
Funlab confirms Lynx ransomware attack on Australian entertainment group
Funlab, the Australian operator behind Strike Bowling, Holey Moley and Archie Brothers, confirmed a ransomware attack that took place between September 20 and…
GALA Hispanic Theatre recovers $255,000 drained in bank fraud
GALA Hispanic Theatre, a nonprofit Latino theatre company in Washington, DC, lost roughly $255,000 when its Citibank account was emptied on January 11, 2024.
Gallery Systems ransomware attack took museum collection databases offline
A December 28, 2023 ransomware attack encrypted systems at Gallery Systems, the museum collection management software vendor, knocking out internal TMS…
Game Freak confirms server breach behind Pokemon TeraLeak data dump
Game Freak, the Japanese studio behind the Pokemon games, confirmed on October 10, 2024 that unauthorized access to one of its servers in August had leaked…
Ganong Bros. chocolate plant disrupted by ransomware attack claimed by Play
Ganong Bros. Ltd. of St. Stephen, New Brunswick said it discovered a security incident on February 22, 2025, engaged outside cybersecurity experts and legal…
Gateway Casinos ransomware attack closed 14 Ontario properties
Gateway Casinos & Entertainment closed all 14 Ontario properties on 16 April 2023 and confirmed days later that ransomware caused the shutdown.
GEICO tells employees their data was exposed in MOVEit-linked vendor breach
GEICO notified staff in August 2023 of a MOVEit-linked security issue affecting employee personal data. The insurer said customer data was not involved and…
Geisinger notified over a million patients after a vendor insider breach
Geisinger issued public notice on 24 June 2024 that a fired employee of its IT vendor Nuance Communications had accessed the records of more than a million…
Gemini discloses breach at banking partner exposing customer account details
Gemini disclosed in 2024 that an unauthorized party accessed its ACH banking partner's systems between June 3 and June 7, exposing customer names, bank…
Gen Digital said employee data was exposed in the MOVEit breach
Gen Digital, parent of Norton, Avast, AVG, Avira and LifeLock, confirmed that names, company email addresses and employee ID numbers, and in limited cases…
Genea discloses breach after Termite ransomware attack on IVF clinics
Genea, one of Australia's largest IVF providers, disclosed on 19 February 2025 that an unauthorised third party had accessed its systems.
Ransomware encrypts all three servers at George County, Mississippi
George County, Mississippi rebuilt its systems after ransomware encrypted all three of its servers on July 15, 2023. The attack began with a phishing email.
German East European studies association breached again, Russia suspected
The Berlin-based German Association for East European Studies, or DGO, said a highly professional cyberattack in late March 2025 reached its mail server and…
Germany's CDU took IT systems offline after a serious cyberattack
Germany's Christian Democratic Union took parts of its IT infrastructure offline after a cyberattack over the weekend of June 1, 2024, days before the…
Giant Tiger customer contact data exposed in third-party vendor breach
Canadian discount retailer Giant Tiger told customers in March 2024 that an unnamed vendor handling its customer communications had been breached on March 4…
Global Affairs Canada breach exposed employee data through a compromised VPN
Canada's foreign ministry detected malicious activity on January 24, 2024 and cut remote access. The intrusion, traced back to December 20, 2023, ran through…
Global Medical Manufacturer’s IT Systems Down After 2nd Consecutive Ransomware Attack
For the 2nd time in consecutive months, Olympus Corporation, shuts systems down after being victimized by a ransomware attack.
Hacktivists breached deportation charter airline GlobalX and took flight manifests
Global Crossing Airlines, trading as GlobalX, was breached on 5 May 2025 by hackers operating under the Anonymous banner who took flight records and passenger…
Globe Life extorted over data stolen from American Income Life
The insurer told the SEC on October 17, 2024 that a threat actor holding names, addresses, Social Security numbers, health data and policy details from…
Golden Corral breach exposed data on more than 183,000 employees
Golden Corral Corporation said an intruder accessed its systems between August 11 and 15, 2023 and took data on 183,272 current and former employees…
Goshen Central School District hit by ransomware attack
A ransomware attack on the afternoon of 10 July 2024 disabled computers, email and phone systems at the Goshen Central School District in Orange County, New…
GoTo (formerly LogMeIn) Suffers Data Breach
GoTo (formerly LogMeIn) has suffered a data breach impacting multiple products. The company is taking steps to secure affected accounts and enhance their…
Governor General of Canada Detects Internal Network Breach
Canada's Governor General is working with the OPC and the Canadian Centre for Cyber Security after an internal network breach.
Ransomware attack hit Grand Palais and dozens of French museums during Paris Olympics
The Grand Palais, an Olympic venue during the Paris 2024 Games, was hit by ransomware in early August 2024. The attack compromised the shared computer system…
Greater Manchester Police officer data exposed in supplier ransomware attack
Greater Manchester Police said officer and staff details were taken in a ransomware attack on Digital ID, the Stockport supplier that produced its warrant…
Greater Richmond Transit Company hit by Play ransomware over Thanksgiving
The Greater Richmond Transit Company said a cyberattack over the Thanksgiving 2023 weekend temporarily affected parts of its network.
Cyber-Partisans encrypt systems at Belarusian fertilizer maker Grodno Azot
The Belarusian Cyber-Partisans claimed a large-scale attack on state fertilizer producer Grodno Azot in April 2024, saying they encrypted hundreds of…
Group 1001 insurance units restored operations after February ransomware attack
Group 1001 Insurance Holdings detected ransomware on February 9, 2023 that interrupted systems at Delaware Life and Clear Spring member companies.
Groupe Nordik breach exposed gift certificate buyers' card data
Groupe Nordik, operator of the Nordik Spa Nature and Thermea Spa Village brands, disclosed in April 2023 that its online gift certificate platform was…
Grubhub breach traced to a third-party customer support provider
Grubhub disclosed on February 3, 2025 that attackers reached data on diners, merchants, drivers and campus dining users through a compromised third-party…
Rorschach ransomware disrupts Chilean telecom operator Grupo GTD
Chilean telecom and IT services group Grupo GTD was hit by Rorschach ransomware on October 23, 2023, disrupting its Infrastructure as a Service platform, data…
GSC Game World breached, hackers threaten to leak STALKER 2 material
Ukrainian studio GSC Game World said attackers compromised an employee's image app account and stole unreleased S.T.A.L.K.E.R. 2 material.
Guam Seventh-Day Adventist Clinic email breach exposed 56,635 people
Guam Seventh-Day Adventist Clinic notified 56,635 individuals that unauthorized access to employee email accounts between January 23 and February 3, 2023…
Guardian Childcare breach exposed scanned ID documents of Australian families
Guardian Childcare told Australian families in late May 2024 that an attacker stole scanned copies of identification documents supplied at enrolment.
Hacked Email Provides Access To Airline’s Sensitive Data
A hacked PAL Airlines employee email address has led to a data breach providing hackers with access to customers’ sensitive information.
Hackers Leak More Troubling Data for Local Ontario Government
What was already considered a massive data breach for the Durham Regional government, has turned into an even bigger series of unfortunate events as hackers…
Hackers Steal Cryptocurrency from 6,000 Coinbase Users
6,000 users of the cryptocurrency exchange Coinbase had their accounts compromised after a fault was exploited in the company’s implementation of SMS-based…
Over $400K Siphoned In Not-For-Profit System Hack
OVER $400K SIPHONED IN NOT-FOR-PROFIT SYSTEM HACKED Although no personal information has been compromised in this security breach, the inability to prevent…
Hackers Victimize Healthcare Providers in Dual Hacking Breaches
Simon Eye and US Vision were victimized in two large scale data breaches exposing tens of thousands of individuals’ personal and health information.
Hackers Victimize MonoX Leaving Losses Up To $30M in Digital Tokens
Hackers victimized the MonoX Dex platform after a breach saw the theft of over $30 million worth of digital tokens. The decentralized finance (DeFi) project…
Los Angeles housing authority HACLA confirms second ransomware attack
The Housing Authority of the City of Los Angeles confirmed an attack on its IT network after the Cactus ransomware group claimed about 861GB of resident…
Qilin leaks 37.6 GB of data from music publisher Hal Leonard Australia
The Qilin ransomware group published 37.6 GB of data stolen from Hal Leonard Australia in January 2024 after the print music publisher did not meet a one-week…
Halliburton took systems offline after August 2024 cyberattack
Halliburton said it became aware on August 21, 2024 that an unauthorized third party had accessed some of its systems, disrupting operations in Houston.
Hardenhuish School in Wiltshire disrupted by a ransomware attack
Hardenhuish School in Chippenham, Wiltshire confirmed in April 2023 that a ransomware attack had disrupted its IT network, taking down the school website, a…
Harrods restricted internet access after attempted intrusion on its systems
Harrods confirmed in May 2025 that it had detected attempts to gain unauthorised access to some of its systems and had restricted internet access at its sites.
HCA Healthcare breach exposed data on about 11 million patients
HCA Healthcare disclosed on July 10, 2023 that patient contact and appointment details had been stolen from an external storage location used to format…
Medusa gang demanded $2m from UK healthcare provider HCRG Care Group
In February 2025 the Medusa ransomware group listed HCRG Care Group, the UK community health provider formerly known as Virgin Care, claiming 2.275TB of…
Cyberattack on B.C. health recruitment sites exposed up to 240,000 records
The Health Employers Association of British Columbia disclosed in August 2023 that an intruder had access to Health Match BC, Locums for Rural BC and the BC…
HealthEC breach exposed records of about 4.5 million patients
HealthEC LLC, a population health management platform vendor, said files were stolen from its systems in July 2023. The federal breach portal listing was…
HealthEquity breach traced to a compromised business partner account
HealthEquity, a US health savings account administrator, said in a 2 July 2024 SEC filing that an attacker used a compromised business partner account to…
Heineken employee data offered for sale after 888 claimed a breach
A threat actor using the handle 888 claimed on BreachForums in June 2024 to be selling records for 8,174 Heineken employees, including names, email addresses…
Henry County Schools network shut down by BlackSuit ransomware attack
Henry County Schools in Georgia shut down internet access across the district after finding an intruder in early November 2023.
Henry Schein confirms a cybersecurity incident as ALPHV claims the attack
Henry Schein detected a cybersecurity incident on October 14, 2023 and took systems offline, disrupting part of its manufacturing and distribution business.
Heritage Foundation shut down its network after April 2024 cyberattack
The Heritage Foundation confirmed in April 2024 that it had been hit by a cyberattack and had taken its network offline while it investigated.
SiegedSec leaks Heritage Foundation data in protest over Project 2025
The hacktivist group SiegedSec published data tied to the Heritage Foundation on 9 July 2024 in protest at Project 2025, claiming credentials and website…
Cyberattack shut municipal services in Herselt, Belgium
The Belgian municipality of Herselt discovered a cyberattack in late March 2023 and disconnected its network, closing the town hall, library, OCMW social…
Hertz confirmed customer data theft through the Cleo file transfer exploit
The Hertz Corporation began notifying customers on 11 April 2025 that data was taken from Cleo Communications' file transfer platform in October and December…
Russian group APT29 read Hewlett Packard Enterprise email for seven months
Hewlett Packard Enterprise told the SEC in January 2024 that Midnight Blizzard, also tracked as APT29 and Cozy Bear, had accessed its cloud-hosted email…
HHS told Congress a MOVEit breach at contractors affected more than 100,000 people
HHS notified Congress in late June 2023 that the MOVEit file transfer campaign had exposed data on more than 100,000 people through unnamed third-party…
Highline Public Schools closed for three days after a cyberattack
Highline Public Schools, a Washington district of roughly 17,500 students south of Seattle, cancelled classes on 9, 10 and 11 September 2024 after detecting…
Hillsborough County notified more than 70,000 people after MOVEit breach
Hillsborough County, Florida notified 70,636 people that Healthcare Services and Aging Services files containing Social Security numbers, dates of birth…
Hillsborough County elections office breach exposed data on 58,000 Florida voters
The Hillsborough County Supervisor of Elections in Florida said a May 3, 2023 cyberattack exposed Social Security and driver's license numbers for about…
Hipshipper left 14.3 million shipping records exposed in open cloud bucket
Shipping platform Hipshipper, used by eBay, Amazon and Shopify sellers, left an Amazon Web Services bucket open, exposing 14.3 million shipping labels and…
Hitachi Energy confirms employee data breach in Clop GoAnywhere campaign
Hitachi Energy confirmed in March 2023 that employee data in some countries may have been accessed after the Clop ransomware group exploited CVE-2023-0669, a…
HMG Healthcare breach hit residents and staff at 40 nursing facilities
HMG Healthcare disclosed in January 2024 that attackers had stolen unencrypted files containing resident and employee data from 40 affiliated nursing and…
HMRC says phishing fraud hit 100,000 tax accounts and cost 47 million pounds
HM Revenue and Customs disclosed to Parliament's Treasury Select Committee in June 2025 that organized criminals used phishing and previously stolen personal…
Home Depot confirmed a vendor exposed employee data leaked by IntelBroker
After IntelBroker posted a database on BreachForums on April 4, 2024 claiming records on about 10,000 Home Depot employees, the retailer confirmed that a…
RansomHouse attack forces Hospital Clínic de Barcelona to cancel surgeries
Hospital Clínic de Barcelona was knocked offline on March 5, 2023 by a ransomware attack the Catalan government attributed to RansomHouse.
Hot Topic disclosed credential stuffing attacks on Rewards accounts
Retailer Hot Topic disclosed on August 1, 2023 that five waves of automated credential stuffing attacks between February 7 and June 21 may have exposed…
Hot Topic notifies customers after November 2023 credential stuffing attacks
Hot Topic began notifying customers in March 2024 that automated credential stuffing attacks on November 18, 19 and 25, 2023 may have exposed Rewards account…
Hot Topic breach exposed records on nearly 57 million retail customers
A threat actor using the handle Satanic advertised customer data taken from Hot Topic and its sister brands Torrid and BoxLunch in October 2024.
San Bernardino County housing authority breach exposed 18,689 people
The Housing Authority of the County of San Bernardino notified about 18,689 people in January 2024 that a compromised employee email account had exposed names…
HPE investigates IntelBroker claim of stolen source code and repositories
In January 2025 the threat actor IntelBroker offered data on BreachForums it said came from Hewlett Packard Enterprise development environments, including…
HTC Global Services confirms cyberattack after ALPHV leaks stolen files
HTC Global Services confirmed a cybersecurity incident in early December 2023 after ALPHV/BlackCat added the managed services provider to its leak site and…
Huber Heights, Ohio spends months rebuilding after BlackSuit ransomware attack
Huber Heights, Ohio discovered a ransomware attack on November 12, 2023 that knocked its zoning, tax, finance, utilities and HR systems offline.
$100s of Thousands in Ransomware Remediation For Craftsman Collision
A phishing email that led to a ransomware attack has left Craftsman Collision with $100s of thousands in remediation costs.
Hungary confirmed INC Ransom hack of its defence procurement agency
Hungarian officials confirmed on November 14, 2024 that the country's Defence Procurement Agency had been breached by the INC Ransom extortion group, which…
ALPHV ransomware group claims 4TB of data from Australian law firm HWL Ebsworth
HWL Ebsworth, one of Australia's largest commercial law firms, was extorted by the ALPHV/BlackCat ransomware group, which claimed 4TB of client files…
Black Basta claimed three terabytes of data from Hyundai Motor Europe
Hyundai Motor Europe confirmed an unauthorized third party accessed part of its network after Black Basta claimed it had stolen three terabytes of data.
ICAO confirms recruitment database breach affecting nearly 12,000 people
The International Civil Aviation Organization confirmed in January 2025 that job application records were taken from its recruitment database and advertised…
ICBC's US broker-dealer hit by LockBit ransomware, disrupting Treasury trades
ICBC Financial Services, the US broker-dealer arm of the Industrial and Commercial Bank of China, was hit by LockBit ransomware on November 8, 2023 after…
Hunters International claimed 6.6TB theft from ICBC's London branch
In September 2024 the Hunters International ransomware group claimed on its leak site that it had taken 6.6 terabytes of data, more than 5.2 million files…
Cyberattack forced Idaho Falls Community Hospital to divert ambulances
A cyberattack on Memorial Day 2023 hit Idaho Falls Community Hospital and neighbouring Mountain View Hospital, forcing ambulance diversions, closing an urgent…
Idaho National Laboratory confirmed HR system breach claimed by SiegedSec
Idaho National Laboratory confirmed that hacktivist group SiegedSec stole and published employee records from its cloud-hosted Oracle HR platform, exposing…
IKEA Hit By Ongoing, Highly Sophisticated Reply-Chain Attack
IKEA employees are being warned of an ongoing reply-chain phishing attack targeting internal email accounts. Employees are also being cautioned about emails…
Illinois healthcare agency reports phishing breach affecting 933 people
The Illinois Department of Healthcare and Family Services said a February 2025 phishing campaign sent from an already compromised government email account…
Illinois benefits portal breach exposed Medicaid, SNAP and TANF recipient data
The Illinois Department of Healthcare and Family Services and Department of Human Services disclosed that suspicious accounts created in the ABE Manage My…
Imagine360 notifies over 112,000 after two file transfer breaches
Imagine360 notified more than 112,000 people after two file transfer platforms it used were compromised in early 2023: a Citrix file sharing system and…
IMF said 11 email accounts were compromised in a February 2024 breach
The International Monetary Fund disclosed on 15 March 2024 that a cyberattack detected on 16 February had compromised 11 IMF email accounts.
IMI plc disclosed unauthorised access to its systems in a stock exchange filing
The FTSE 100 engineering group IMI plc notified the London Stock Exchange on February 6, 2025 that it was responding to unauthorised access to its systems and…
Independent Optometry Chain Hit By Employee Email Breach
Oregon Eye Specialists is warning customers after unauthorized 3rd party access was discovered in several employee email addresses.
Indiana FSSA said Maximus MOVEit breach exposed 744,000 Medicaid members
The Indiana Family and Social Services Administration said in August 2023 that a MOVEit-related incident at contractor Maximus Health Services exposed…
Indiana University Health email compromise exposed patient records
Indiana University Health detected unusual activity on a staff email account on November 8, 2024 and began notifying patients on January 2, 2025.
Indigo Books & Music shut down its website after a cyberattack
Indigo Books & Music, Canada's largest bookstore chain, took its e-commerce site offline on February 8, 2023 after a cyberattack.
Indonesia's Pusat Data Nasional crippled by Brain Cipher ransomware
On 20 June 2024 the Brain Cipher ransomware, a LockBit 3.0 variant, encrypted Indonesia's Pusat Data Nasional. Roughly 210 central and local government…
Rhysida leaks 1.67TB of Insomniac Games data after Sony studio refuses ransom
Rhysida claimed a breach of Sony-owned Insomniac Games in mid-December 2023 and auctioned the stolen data at a starting price of 50 bitcoin, about $2 million.
Call center contractor accessed data on 2,308 Inspira Financial savers
Inspira Financial Trust, formerly Millennium Trust Company, told 2,308 retirement plan participants in February 2025 that a third party call center…
Inspiring Vacations left 112,000 travel records in an open cloud bucket
A misconfigured cloud storage bucket left 112,605 records belonging to Melbourne travel agency Inspiring Vacations publicly accessible, including passport…
Insurance Information Bureau of India hit by ransomware, refused $250,000 demand
The Insurance Information Bureau of India, the sector's central data repository, was hit by ransomware on April 2, 2023 that encrypted about 30 servers after…
INTEGRIS Health said a 2023 breach exposed data on 2.4 million patients
INTEGRIS Health, Oklahoma's largest not-for-profit health system, told federal regulators in February 2024 that a November 2023 intrusion exposed the data of…
Intellihartx told about 490,000 people data was taken in GoAnywhere hack
Intellihartx, a Tennessee patient balance resolution firm, notified 489,830 individuals that their personal and health information was stolen after Clop…
Interbank confirms customer data breach after dark web listing
Interbank, one of Peru's largest banks, confirmed customer data exposure on 30 October 2024 after a threat actor using the handle kzoldyck offered 3.7TB of…
International Criminal Court detected intrusion into its information systems
The International Criminal Court in The Hague disclosed on 19 September 2023 that it had detected anomalous activity affecting its information systems days…
International Game Technology takes systems offline after cyberattack
International Game Technology disclosed to the SEC that an unauthorized third party accessed its systems on 17 November 2024, disrupting portions of its…
NoEscape claimed an 80GB theft from the US-Canada International Joint Commission
The International Joint Commission, created by the 1909 Boundary Waters Treaty to oversee shared US and Canadian waters, confirmed a cybersecurity incident in…
Ransomware Leaves Mitsubishi Aerospace Without Internet and Network Access
Mitsubishi Canada Aerospace left without internet and network capabilities after ransomware attack takes hold of their network.
Internet Archive breach exposed 31 million user records
A 6.4 GB database holding 31,081,179 Internet Archive accounts, with email addresses, screen names and bcrypt password hashes, reached Have I Been Pwned on…
Intesa Sanpaolo insider accessed 3,500 accounts including Italy's prime minister
An employee at an Intesa Sanpaolo branch in Bitonto was accused of accessing roughly 3,500 customer accounts about 6,000 times between February 2022 and April…
LockBit ransomware attack on ION Group disrupted global derivatives trading
ION Group disclosed on January 31, 2023 that ransomware had hit its ION Cleared Derivatives unit. LockBit claimed responsibility and threatened to leak files.
iSpace notified consumers of a breach exposing Social Security and health data
California company iSpace, Inc. reported that an unauthorized party accessed and copied files between January 30 and February 5, 2023 containing names, Social…
SEXi ransomware encrypted IxMetro PowerHost's ESXi servers and its backups
Chilean hosting provider IxMetro PowerHost was hit on March 30, 2024 by a new ransomware strain dubbed SEXi that encrypted the VMware ESXi servers running…
Jackson County, Missouri declared a state of emergency after ransomware attack
Jackson County, Missouri reported significant IT disruption on April 2, 2024 that it linked to a suspected ransomware attack.
Jackson Health System fires employee over five-year patient data snooping
Jackson Health System in Miami-Dade County disclosed that an employee accessed patient names, dates of birth, addresses, medical record numbers and clinical…
Jacksonville Beach said ransomware attack exposed data on about 49,000 people
The City of Jacksonville Beach, Florida disclosed in March 2024 that a January ransomware attack claimed by LockBit exposed names, Social Security numbers…
Jamaica's Ministry of National Security confirmed cyberattack on JamaicaEye website
In June 2023 Jamaica's Ministry of National Security confirmed that the public website for JamaicaEye, the national CCTV surveillance program, was compromised.
James Pascoe Group cyberattack disrupts Farmers and Whitcoulls stores
New Zealand retail group James Pascoe confirmed on 18 March 2025 that a weekend cyberattack had disabled store telephone lines, customer service email and IT…
JAXA confirms intruders reached its internal network
The Japan Aerospace Exploration Agency confirmed on November 29, 2023 that intruders had accessed its internal network, reaching the Active Directory server…
JAS Worldwide confirms ransomware attack behind freight operation disruptions
JAS Worldwide, a freight forwarder operating in more than 100 countries, said outside experts determined that ransomware was behind technical disruptions in…
Jason's Deli customer accounts breached in credential stuffing attack
Jason's Deli told customers that attackers replayed credentials stolen in unrelated breaches against its website. A Maine attorney general filing put the…
JD Sports data breach hit around 10 million UK customers
The UK sportswear retailer said orders placed between November 2018 and October 2020 across JD, Size?, Millets, Blacks, Scotts and MilletSport were affected.
Jersey Financial Services Commission registry flaw exposed 66,806 records
The Jersey Financial Services Commission disclosed in March 2024 that a misconfiguration in its third-party Registry system had exposed non-public names and…
Insurance firm Johnson & Johnson disclosed August 2024 breach affecting 3,200
Johnson & Johnson, Inc., a Mount Pleasant, South Carolina insurance firm with no link to the pharmaceutical company, detected unauthorized network activity…
IBM breach exposed Johnson & Johnson's Janssen CarePath patient data
In September 2023, Johnson & Johnson Health Care Systems disclosed that its Janssen CarePath patient support database, managed by IBM, had been accessed…
Jollibee investigated a data breach affecting 11 million customers
Jollibee Foods Corporation confirmed on 22 June 2024 that it was investigating unauthorised access involving customer data from its delivery service.
Software flaw at J.P. Morgan exposed data on 451,000 retirement savers
JPMorgan Chase notified roughly 451,000 retirement plan participants in late April 2024 that a flaw in vendor software let three system users pull reports…
Kadokawa confirmed a ransomware attack on its data centre and Niconico
Kadokawa Corporation said servers in its data centre were hit by a ransomware attack on 8 June 2024 that took down the Niconico platform.
Kaiser Permanente website trackers exposed data on 13.4 million members
Kaiser Foundation Health Plan told about 13.4 million current and former members that online tracking technologies on its websites and apps had sent names, IP…
BlackSuit ransomware listed Kansas City Hospice and Palliative Care
The Missouri end-of-life care nonprofit was added to BlackSuit's victim list on October 19, 2024. The group claimed more than 600 GB of user, business…
Kansas State University cyberattack knocks out VPN, email and campus services
Kansas State University lost VPN, email, video and printing services after a cyberattack identified on January 16, 2024, the first day of spring semester…
LockBit ransomware hit three German hospitals run by KHO on Christmas Eve
A Christmas Eve 2023 LockBit ransomware attack encrypted systems at three hospitals operated by Katholische Hospitalvereinigung Ostwestfalen in Germany…
Kawasaki Motors Europe restored servers after RansomHub attack
Kawasaki Motors Europe was hit by a cyberattack on September 5, 2024. The RansomHub group listed the company on its extortion site the same day, claimed 487GB…
Keenan & Associates breach exposed data of more than 1.5 million people
Keenan & Associates began notifying over 1.5 million people in January 2024 that attackers accessed its network between August 21 and 27, 2023, taking names…
KemperSports breach exposed Social Security numbers of over 62,000 people
Golf course management and hospitality operator KemperSports disclosed in September 2024 that a cyberattack detected on April 1, 2024 exposed the names and…
Interlock ransomware attack shuts down systems across Ohio's Kettering Health
Kettering Health, a nonprofit system with 14 medical centres and more than 120 outpatient sites in western Ohio, suffered a system-wide outage on 20 May 2025…
Keytronic confirms data theft after Black Basta ransomware attack
Contract electronics manufacturer Keytronic told the SEC that attackers accessed its IT systems on 6 May 2024 and exfiltrated limited data including…
Kintetsu World Express confirmed ransomware attack disrupted its systems
Kintetsu World Express reported a server failure on 23 April 2025 that disrupted services for some customers and on 28 April confirmed the cause was…
KiranaPro blames former employee after AWS and GitHub data wipe
KiranaPro, a Bengaluru-based grocery ordering startup, said its Amazon Web Services account and GitHub repositories were deleted on 26 May 2025.
Kodi disclosed forum breach affecting about 400,000 users
Kodi disclosed on April 11, 2023 that an attacker had used an inactive forum administrator's account to log into its MyBB admin console in February and…
Ransomware attack on Austria's Korneuburg municipality postponed funerals
The Austrian town of Korneuburg lost access to its administrative data in a February 2024 ransomware attack, forcing funerals to be postponed because…
Krispy Kreme breach exposed data on 161,676 people after 2024 attack
Krispy Kreme began notifying victims in June 2025 that a November 2024 cyberattack exposed Social Security numbers, financial account details, passport…
Kroger's Postal Prescription Service exposed 82,466 customers' details
Kroger's mail order pharmacy, Postal Prescription Service, reported to federal regulators that an internal error passed the names and email addresses of…
Kumamoto anti-violence counseling center warned of possible data leak
The Kumamoto Prefecture Anti-Violence Movement Promotion Center said on November 21, 2024 that a staff member had been tricked by a technical support scam…
Ransomware hit Kurita Water Industries' US arm, exposing customer and staff data
Tokyo-listed Kurita Water Industries disclosed on December 7, 2024 that ransomware encrypted several servers at its Minnesota-based subsidiary Kurita America.
Kwik Trip confirmed a cyberattack caused its two-week systems outage
After two weeks of describing the disruption only as a network incident, Kwik Trip confirmed a cyberattack had hit its internal systems on October 9, 2023.
Kyivstar cyberattack knocked out mobile service for millions in Ukraine
Ukraine's largest mobile operator Kyivstar lost nationwide service on December 12, 2023 after a cyberattack that wiped thousands of virtual servers and…
La Malle Postale left data on about 90,000 hiking clients publicly exposed
A publicly accessible datastore belonging to French hiking transport company La Malle Postale held more than 4GB of client data, including names, emails and…
Lacroix shut three electronics plants for a week after ransomware attack
French electronics manufacturer Lacroix said it intercepted a targeted cyberattack overnight on May 12 and 13, 2023 that encrypted local infrastructure at its…
Lake Washington Vascular restored from backups after Qilin ransomware attack
Ransomware encrypted the electronic health record and practice management systems at Lake Washington Vascular in Bellevue, Washington on February 14, 2025.
Lakeland Community College notified 285,948 people of a data breach
Lakeland Community College in Kirtland, Ohio notified 285,948 people in September 2023 that an unknown party accessed its internal IT systems between 7 and 31…
Landmark Admin breach exposed data of more than 800,000 insurance customers
Landmark Admin detected an intruder on May 13, 2024 and found the attacker back in its network on June 17. Data was encrypted and exfiltrated, exposing Social…
Lansing Community College breach exposed data on 757,832 people
Lansing Community College notified 757,832 students, employees, prospective students and vendors that their names and Social Security numbers may have been…
Las Palmas Del Sol Healthcare told 1,854 patients a former employee viewed their records
El Paso Healthcare System, operating as Las Palmas Del Sol Healthcare, notified 1,854 patients that a former employee accessed their medical records without…
Latitude Financial says stolen staff login led to theft of 328,000 records
Latitude Financial disclosed on 16 March 2023 that an attacker used a stolen employee login to reach two service providers, taking about 103,000…
Ransomware at the Law Foundation of Silicon Valley exposed data on 42,525 people
The Law Foundation of Silicon Valley, a nonprofit legal services provider, was hit by ransomware on February 18, 2023. It told California and Maine regulators…
LDLC ASVEL confirmed data theft after NoEscape ransomware listing
The NoEscape ransomware group listed LDLC ASVEL Villeurbanne, the French basketball club owned by Tony Parker, on its extortion portal on October 9, 2023…
Ledger Connect Kit compromised after phishing attack on a former employee
Ledger said a former employee was phished and their NPM session token used to bypass two-factor authentication, letting attackers publish tampered versions…
Cyberattack halted printing and publishing across Lee Enterprises newspapers
Lee Enterprises disclosed a February 3, 2025 cyberattack that took a critical data centre offline, encrypted applications and exfiltrated files.
Lee University notifies about 137,000 people a year after network breach
Lee University sent notification letters in late March 2025 about a March 2024 intrusion through a third-party software flaw.
Lehigh Valley Health Network refused ransom after BlackCat attack on physician practice
Lehigh Valley Health Network disclosed on 20 February 2023 that the BlackCat ransomware group had attacked the network supporting a physician practice in…
Leicester City Council shut down IT systems and phone lines after cyberattack
Leicester City Council shut down its IT systems and telephone lines on 7 March 2024 after identifying a cyber incident, running emergency phone lines for weeks.
Leidos internal documents leaked online after third-party vendor breach
Internal documents from Leidos Holdings, an IT services contractor to the Pentagon, DHS and NASA, appeared online in July 2024.
LexisNexis Risk Solutions breach on GitHub exposed data of 364,000 people
LexisNexis Risk Solutions told more than 364,000 people that an unknown attacker used a compromised company account to take data from GitHub on 25 December…
Life360 says hacker stole Tile customer data and tried to extort the company
Life360, parent of tracker maker Tile, said an intruder used credentials believed to belong to a former Tile employee to reach a customer support platform…
LiUNA Local 1184 notified members of a 2024 ransomware data breach
Laborers' International Union of North America Local 1184 said an unauthorised party used stolen credentials to enter its network on 17 November 2024 and…
LivaNova notified about 130,000 people after LockBit ransomware attack
Medical device maker LivaNova disclosed that LockBit ransomware actors accessed its network from October 26 to November 19, 2023 and stole personal and…
Live Nation disclosed Ticketmaster data theft from a third-party cloud database
Live Nation told the SEC it found unauthorized activity in a third-party cloud database holding company data on May 20, 2024.
Liverpool University Hospitals NHS trust leaked payroll data of 14,000 staff
Liverpool University Hospitals NHS Foundation Trust notified roughly 14,000 staff in February 2023 that a payroll spreadsheet circulated during industrial…
LockBit claims attack on Croatia's largest hospital, KBC Zagreb
The University Hospital Centre Zagreb took its IT infrastructure offline for about a day in late June 2024 following a cyberattack that slowed emergency care…
LockBit posts data stolen from South Australia's Wattle Range Council
Wattle Range Council in South Australia confirmed a data breach in July 2024 after the LockBit ransomware group listed it on a darknet leak site and claimed…
LockBit's claimed Federal Reserve hack was really Evolve Bank & Trust data
LockBit claimed in June 2024 that it held 33 terabytes of data from the US Federal Reserve. When the group published the files on 26 June, researchers found…
London Drugs closed all 79 stores across Western Canada after a ransomware attack
London Drugs shut all 79 stores across British Columbia, Alberta, Saskatchewan and Manitoba after discovering a cybersecurity incident on April 28, 2024.
London Public Library in Ontario shut down services after a cyberattack
A cyberattack on December 13, 2023 took down phones, email, WiFi, the website, the catalogue, printers, public computers and digital lending at London Public…
Ransomware closed all 36 Los Angeles County Superior Court courthouses
Ransomware hit the Superior Court of Los Angeles County on July 19, 2024. The court shut down nearly all network systems, taking out e-filing, case…
Louisiana warned all driver's license and ID holders were exposed in MOVEit breach
Louisiana's Office of Motor Vehicles said on June 15, 2023 that anyone with a state-issued driver's license, ID card or vehicle registration had probably had…
Ransomware attack disrupted Lower Sioux Indian Community casino and health services
A ransomware attack that began at the Jackpot Junction casino on 27 March 2025 spread across the Lower Sioux Indian Community network in Minnesota, taking…
Lumen Technologies discloses two separate cyberattacks in SEC filing
In a 27 March 2023 SEC filing, Lumen Technologies disclosed two unrelated intrusions: ransomware on servers supporting a segmented hosting service, which…
Ransomware attack took Lurie Children's Hospital systems offline for weeks
Lurie Children's Hospital of Chicago disconnected its phone, email, electronic health record and MyChart systems on January 31, 2024 after detecting an…
Lürssen hit by ransomware attack over the Easter weekend
German shipbuilder Lürssen, maker of some of the world's largest superyachts and vessels for the German navy, was hit by ransomware over the Easter 2023…
Lush confirms cyber incident later described as a ransomware attack
British cosmetics retailer Lush confirmed a cyber security incident on January 11, 2024. It later described the attack as ransomware that shut down some…
Lyca Mobile confirmed customer data theft after cyberattack
Lyca Mobile, the UK-based mobile virtual network operator, confirmed in October 2023 that attackers accessed customer data including names, dates of birth…
Mahony Horner Lawyers warned clients of leak after IT provider was hacked
Wellington firm Mahony Horner Lawyers warned clients in July 2023 that copies of driver licences and passports collected over the previous three years may…
MainStreet Bank customer card data exposed in third-party vendor breach
MainStreet Bancshares disclosed in an SEC filing that a third-party vendor compromise exposed cardholder names, card numbers and expiration dates for roughly…
Major Bitcoin Scam Rocks Twitter
Several high-profile twitter accounts were targeted in a highly sophisticated, large scale hack centred around a Bitcoin scam.
Major Comic Book Distributor Hit By Ransomware
Diamond Comic Distributors was hit by a ransomware attack over the weekend, disrupting their website and other operations.
2 Year Phishing Campaign Targeting Major Canadian Banks Uncovered
An intricate, 2 year phishing campaign targeting 14 major Canadian banks’ customers, including TD Canada Trust, CIBC, Scotiabank & RBC, has recently been…
Malawi halts passport printing after immigration system hack and ransom demand
Malawi suspended passport printing after President Lazarus Chakwera told parliament in February 2024 that attackers had taken over the Department of…
Toronto Hospital Network Investigating After Malicious Insider Threatens Data Exposure
Unity Health Toronto has notified roughly 150 patients their medical records may have been compromised in an alleged data breach by a former 3rd party employee.
Malware Disables Canadian College’s IT Systems
UPDATE: As of February 10, the Confederation College IT team was continuing to work on the restoration of the college’s IT services.
Marina Bay Sands breach exposed data on 665,000 loyalty members
Marina Bay Sands disclosed on November 7, 2023 that an unauthorised third party accessed data on about 665,000 members of its Sands LifeStyle loyalty…
Rhysida claims ransomware attack on boat retailer MarineMax
MarineMax disclosed to the SEC on March 12, 2024 that an intruder had reached parts of its information environment two days earlier.
Marks and Spencer halted online orders after DragonForce ransomware attack
Marks and Spencer confirmed a cyber incident on 22 April 2025 and paused all website and app orders on 25 April. Reporting tied the ransomware attack to…
Unsecured Mars Hydro database exposed 2.7 billion IoT records
Researcher Jeremiah Fowler found an unprotected 1.17 TB database of 2,734,819,501 records linked to Mars Hydro and LG-LED Solutions in February 2025.
Masimo cyberattack slowed manufacturing at the medical device maker
Masimo Corporation disclosed in a 6 May 2025 SEC filing that it identified unauthorised activity on its on-premise network on 27 April.
Mass General Brigham fired staff who let outsiders view patient records
Mass General Brigham disclosed in late June 2024 that employees at the health system and its insurance arm had let unauthorised outsiders perform their job…
15 Million Canadians Potentially Affected By Life Labs’ Massive Data Breach
Life Labs has begun warning patients of a major data breach that potentially affects over 15 million customers - Read more
MathWorks confirms ransomware attack behind MATLAB service outages
MathWorks, maker of MATLAB and Simulink, confirmed on 26 May 2025 that ransomware caused the outages that began on 18 May across licensing, software…
Maximus says MOVEit hack exposed data on up to 11 million people
Maximus told the SEC on July 26, 2023 that attackers exploiting the MOVEit Transfer zero day took files with personal and health data, including Social…
MC2 Data left 2.2TB background check database exposed online
Background check firm MC2 Data left a 2.2TB database open on the internet with no password protection, exposing 106,316,633 records on US residents plus…
RansomHub claimed 470GB of data from engineering firm McDowall Affleck
Australian engineering firm McDowall Affleck confirmed a cyber incident in August 2024 after RansomHub listed it on its darknet leak site and claimed 470GB of…
McLaren Health Care confirms ransomware attack claimed by ALPHV/BlackCat
McLaren Health Care confirmed a ransomware attack in October 2023 after ALPHV/BlackCat listed the Michigan system and claimed six terabytes of data covering…
MCNA Dental breach affected 8.9 million people after LockBit attack
Managed Care of North America, which administers Medicaid and CHIP dental benefits as MCNA Dental, notified 8,923,662 people of a February 2023 intrusion.
MediaWorks said 403,000 New Zealanders' data was taken in competition hack
MediaWorks confirmed that a March 2024 breach of a database of online competition entries dating back to 2016 exposed personal details for more than 403,000…
Medical Management Resource Group breach hit 2.35 million eye care patients
Medical Management Resource Group, trading as American Vision Partners, notified 2,350,236 ophthalmology patients in February 2024 that names, birth dates…
MediSecure ransomware attack hits Australian e-prescription provider
MediSecure, one of Australia's approved electronic prescription providers, confirmed a large scale ransomware attack on 16 May 2024.
MedStar Health email breach exposed data on about 183,000 patients
MedStar Health said an unauthorized party intermittently accessed three employee email accounts between 25 January and 18 October 2023, exposing data on about…
Medusa ransomware group attacked Argentina's National Securities Commission
Argentina's securities regulator, the Comisión Nacional de Valores, was hit by the Medusa ransomware group in June 2023.
Qilin ransomware gang claims 215 GB theft from Australian charity Meli
Meli, a North Geelong not-for-profit running family support services, kindergartens and foster care, confirmed an August 2024 cyber attack.
Memorial Hospital and Manor notified 120,085 people after ransomware attack
Memorial Hospital and Manor detected ransomware on November 2, 2024 after losing access to its records system, email and website.
Memorial University delays Grenfell Campus classes after ransomware attack
Memorial University of Newfoundland found ransomware on its Grenfell Campus network on December 29, 2023. In-person classes were pushed back a week to January…
MeridianLink confirmed a cyberattack after ALPHV reported it to the SEC
The ALPHV/BlackCat ransomware group listed financial software provider MeridianLink on its leak site, then filed a complaint with the U.S.
Meriton breach exposes staff financial records and guest incident reports
Meriton disclosed in March 2023 that a 14 January intrusion led to about 35.6GB of data being taken from its Meriton Suites business.
Merrill email error exposed Social Security numbers of Walmart 401(k) savers
Merrill Lynch, Pierce, Fenner & Smith notified 1,883 participants in the Walmart 401(k) Retirement Plan that an employee inadvertently emailed their names and…
Metropolitan Police supplier breach exposed details of 47,000 officers and staff
London's Metropolitan Police told all 47,000 of its officers and staff that a supplier responsible for printing warrant cards and staff passes had been…
RansomHub claimed 313 GB stolen from Mexican government legal office
The RansomHub extortion group listed the Mexican government's gob.mx domain on its dark web leak site on November 15, 2024, claiming it had taken 313 GB of…
MGM Resorts shut down IT systems across its casinos after a cyberattack
MGM Resorts International disclosed a cybersecurity incident on September 11, 2023 and shut down systems across Las Vegas and other properties.
Michigan Medicine notifies about 57,000 patients after email account breach
Michigan Medicine, the University of Michigan's academic health system, notified about 57,000 patients and guarantors in July 2024 after employee email…
Microchip Technology cut manufacturing output after August 2024 cyberattack
Microchip Technology disclosed on August 20, 2024 that an unauthorized party had disrupted servers and business operations detected three days earlier.
Microlise cyberattack knocked out DHL and Serco vehicle tracking in the UK
Microlise told the London Stock Exchange on October 31, 2024 that it had detected unauthorized network activity. The outage disabled tracking and panic alarms…
Microsoft says Midnight Blizzard read senior leaders' corporate email
Microsoft said the Russian state-sponsored group Midnight Blizzard used a password spray attack on a legacy test account to read email belonging to senior…
Midwives of Windsor tells clients an email account was breached in April 2023
Midwives of Windsor told clients in January 2024 that an intruder accessed a clinic email account in April 2023, exposing names, pregnancy details…
Medusa ransomware gang leaked Minneapolis Public Schools student records
The Medusa ransomware group demanded $1 million from Minneapolis Public Schools after a February 2023 attack and published more than 189,000 files when the…
Mint Mobile told customers a hacker obtained their account data
Mint Mobile began notifying customers on December 22, 2023 that a hacker had obtained account details including names, phone numbers, SIM serial numbers and…
Missouri Department of Conservation breach exposed employee health plan data
The Missouri Department of Conservation said a server breach found in February 2025 exposed protected health information for current and former employee…
MITRE said nation-state hackers breached its NERVE network via Ivanti zero-days
MITRE disclosed on April 19, 2024 that a nation-state actor had exploited Ivanti Connect Secure zero-days CVE-2023-46805 and CVE-2024-21887 from January to…
Mizuno USA said attackers spent two months copying files from its network
Mizuno USA disclosed that an unauthorised party was inside its network between August 21 and October 29, 2024, periodically copying files with names, Social…
Qilin ransomware gang lists Melbourne firm MKA Accountants as a victim
MKA Accountants, an accounting and advisory firm in Moonee Ponds, Melbourne, was named on the Qilin ransomware leak site in May 2025.
Ransomware at MKS Instruments halted production at some facilities
MKS Instruments, a Massachusetts maker of process control equipment for semiconductor manufacturing, told the SEC it identified a ransomware event on February…
Mom's Meals discloses ransomware breach affecting more than 1.2 million people
Mom's Meals operator PurFoods said an intruder was inside its network from January 16 to February 22, 2023, encrypting files and deploying data theft tools.
Monash Health records exposed in ZircoDATA ransomware breach
Monash Health confirmed in May 2024 that archived records from its family violence and sexual assault support units, covering 1970 to 1993, were exposed when…
MoneyGram confirms cyberattack behind days-long global outage
MoneyGram took systems offline in late September 2024 after what it called a cybersecurity issue, cutting off in-person and online money transfers worldwide…
Morocco's social security fund CNSS had data on nearly 2 million people leaked
From 8 April 2025 the group JabaRoot DZ posted more than 54,000 CNSS salary declaration files and records on roughly 500,000 employers to Telegram and…
BlackCat claimed 5TB data theft from Morrison Community Hospital
ALPHV/BlackCat added Morrison Community Hospital in Illinois to its leak site in October 2023, claiming five terabytes of patient and employee data and…
Mortgage Investors Group discloses December breach after Black Basta claim
Tennessee lender Mortgage Investors Group disclosed on January 20, 2025 that an unauthorized user reached its network on December 11, 2024, potentially…
Motel One confirms data theft after ALPHV/BlackCat ransomware attack
ALPHV/BlackCat listed German budget hotel chain Motel One on its leak site in September 2023, claiming 24,449,137 files and roughly six terabytes of data.
Mr. Cooper shuts down systems after cyberattack, blocking mortgage payments
An unauthorized third party reached Mr. Cooper's technology systems on October 31, 2023. The mortgage servicer shut systems down, blocking online and…
Money Message ransomware gang claimed 1.5TB theft from MSI
The Money Message ransomware group added Micro-Star International (MSI) to its leak site in April 2023, claiming 1.5TB of stolen data including databases…
Mt. Carmel Behavioral Healthcare disclosed email breach exposing patient data
Mt. Carmel Behavioral Healthcare said an unauthorized party accessed an employee email account in June 2024, exposing patient names, Social Security numbers…
Munster Technological University closed Cork campuses after ransomware attack
Munster Technological University closed four Cork campuses and cancelled all classes in February 2023 after a significant IT breach it later confirmed was a…
Murfreesboro Medical Clinic shut down for two weeks after a ransomware attack
Murfreesboro Medical Clinic & SurgiCenter shut down all operations on April 22, 2023 after a ransomware attack, cancelling surgeries, gastroenterology…
Medusa ransomware group claimed a NASCAR breach and demanded $4 million
Medusa published screenshots of NASCAR employee contact lists, invoices, financial reports and raceway maps in April 2025 while demanding $4 million.
LockBit claims ransomware attack on India's National Aerospace Laboratories
The LockBit ransomware group listed India's National Aerospace Laboratories, a CSIR research institution, on its dark web leak site on November 28, 2023.
National Amusements disclosed a December 2022 breach affecting 82,128 people
National Amusements, the holding company controlling Paramount Global and CBS, filed a breach notice with the Maine attorney general in December 2023…
National Gallery of Canada recovers from ransomware attack
The National Gallery of Canada discovered a ransomware attack on April 23, 2023 and took its IT systems offline for weeks.
National Presto Industries disrupted by March 2025 cyberattack
National Presto Industries told the SEC that a cybersecurity incident starting on 1 March 2025 caused a system outage affecting shipping and receiving, some…
National Public Data faced suit over a claimed 2.9 billion record breach
A proposed class action filed on 1 August 2024 against Jerico Pictures Inc., trading as National Public Data, alleged the data broker failed to secure records…
Cyber attack on the UK National Small-bore Rifle Association exposes member data
The National Small-bore Rifle Association said a cyber attack reached legacy servers holding working documents, compromising some member data.
Nations Direct Mortgage notified 83,000 people of a December 2023 breach
Nevada lender Nations Direct Mortgage notified more than 83,000 customers in March 2024 that an unauthorized third party accessed names, addresses, Social…
Nationwide Recovery Service reports breach of debt collection records
Debt collector Nationwide Recovery Service told the HHS Office for Civil Rights on September 9, 2024 that intruders had copied consumer records including…
Alberta Patients Warned After Data Breach Exposes Medical Info
Patients of Alberta's Natural Health Services clinic have been warned of potentially compromised information after a data breach.
NB Liquor shut down point of sale systems after suspected cyberattack
Alcool NB Liquor shut down its point of sale systems after security controls flagged suspicious activity, closing corporate stores before reopening them cash…
NBA Canada Suffers Massive Data Breach
An unauthorized user accessed a server managed by the NBA for its Canadian business efforts, exposing a massive amount of user information.
NBA notifies fans after breach at third-party email provider
The National Basketball Association notified fans in March 2023 that an unauthorised party copied names and email addresses held by an unnamed third-party…
NCB Management breach grows past 1.5 million, starting with Bank of America customers
NCB Management Services, a Pennsylvania debt buyer, said an intruder reached its systems on 1 February 2023. Notifications sent in late March covered close to…
BlackCat ransomware knocked out NCR's Aloha point-of-sale platform
NCR Corporation confirmed that a ransomware incident at one of its data centres caused an outage from April 12, 2023 that disrupted its Aloha point-of-sale…
Australia's disability agency assessed exposure from the HWL Ebsworth hack
Australia's National Disability Insurance Agency spent mid-2023 identifying NDIS participants, families, carers and staff whose data was published after the…
Neiman Marcus confirmed a Snowflake-linked breach affecting 64,472 people
Neiman Marcus Group disclosed in June 2024 that an unauthorised third party obtained customer data from its account on a cloud database platform provided by…
New Mexico Highlands University canceled a week of classes after ransomware attack
Ransomware struck New Mexico Highlands University's MyNMHU portal server on April 3, 2024, disabling campus email, course delivery and payroll access.
Ransomware attack on New York Blood Center disrupts collections
New York Blood Center Enterprises confirmed a ransomware attack detected on January 26, 2025 that disrupted collections and forced staff onto manual processes.
Newberg-Dundee School District hit by ransomware in June 2024
Newberg-Dundee School District in Oregon told families on 12 June 2024 that unusual network activity had knocked out phones and computers.
Newpark Resources discloses ransomware attack in SEC filing
Texas oilfield supplier Newpark Resources disclosed in an SEC filing on 7 November 2024 that a ransomware attack identified on 29 October gave an unauthorised…
NextGen Healthcare breach exposed data on more than one million patients
NextGen Healthcare disclosed in May 2023 that attackers used client credentials stolen elsewhere to access a database between March 29 and April 14, exposing…
NHS Dumfries and Galloway hit by focused and ongoing cyberattack
NHS Dumfries and Galloway announced on March 15, 2024 that it faced a focused and ongoing cyberattack and warned that attackers may have acquired patient and…
NHS research data on 1.1 million patients accessed in University of Manchester hack
The University of Manchester disclosed on June 9, 2023 that attackers had copied data including an NHS research dataset with records on roughly 1.1 million…
Nidec confirms 50,694 files leaked from Vietnamese subsidiary
Japanese motor maker Nidec said a criminal group contacted its Vietnam unit on August 5, 2024 claiming to hold files from a server.
NIH Federal Credit Union notified 14,706 members after an email account breach
NIHFCU filed a breach notice with the Maine attorney general on July 5, 2023 after an unauthorized party accessed an employee email account for a few hours on…
Nikki-Universal confirms ransomware attack on its servers
Nikki-Universal Co., Ltd., a Japanese catalyst manufacturer, disclosed a December 22, 2024 ransomware attack that encrypted data on several servers.
Nine exposed 16,000 Australian newspaper subscribers through a supplier lapse
Around 16,000 subscribers to The Sydney Morning Herald, The Age and The Australian Financial Review had their details left readable in a third-party…
NioCorp Developments lost $500,000 to an email compromise scam
NioCorp Developments disclosed in a Form 8-K filed February 19, 2025 that an unauthorized third party accessed parts of its email systems and redirected about…
Nissan North America breach exposed Social Security numbers of 53,000 employees
Nissan North America notified 53,038 current and former employees in May 2024 that their names and Social Security numbers were taken in a ransomware attack.
Nissan warns Australian and New Zealand customers after Akira ransomware breach
Nissan disclosed on December 5, 2023 that attackers had breached its systems in Australia and New Zealand, warning customers to watch for scams.
Nokia denied breach after IntelBroker leaked contractor source code
On November 4, 2024 the threat actor IntelBroker advertised what it called a large collection of Nokia source code on BreachForums for $20,000.
Non-Profit IT Systems Paralyzed for 6 Weeks In Ransomware Attack
Manitoba Non-Profit, Southern First Nations Network of Care, left to recover 6 weeks after being victimized by a ransomware attack.
Norsk Hydro ransomware attack forced aluminum plants onto manual operations
An extensive LockerGoga ransomware attack in March 2019 forced Norsk Hydro to isolate plants across Europe and the United States and run aluminum production…
Unsecured database exposed over a million NorthOne-branded invoices
Researcher Jeremiah Fowler reported finding an unprotected database containing more than one million NorthOne-branded invoice PDFs with names, addresses…
NorthStar EMS notifies about 82,000 patients of 2022 network intrusion
NorthStar Emergency Medical Services of Tuscaloosa, Alabama detected unusual network activity on September 16, 2022 and determined an unauthorised actor had…
Norton Healthcare ransomware breach exposed data on 2.5 million people
Norton Healthcare disclosed in December 2023 that attackers had access to its network storage between May 7 and 9, 2023, exposing names, Social Security…
Nova Scotia government detailed scope of MOVEit data theft affecting about 100,000
In June 2023 Nova Scotia detailed which residents lost data in the global MOVEit compromise: about 55,000 current and former teachers, 26,000 students aged 16…
2,841 Patients Impacted by Phishing Attack
Hackers gained access to thousands of patients’ information stored on a Nova Scotia Health Authority employee’s email account.
Nova Scotia Power confirms theft of customer data in ransomware attack
Nova Scotia Power confirmed in May 2025 that attackers stole customer records including dates of birth, driver's licence numbers, Social Insurance Numbers and…
NSW justice department breach exposed 9,000 court files including violence orders
About 9,000 documents were downloaded from the NSW Online Registry Website in March 2025, including apprehended violence orders and affidavits that could…
NTPC Customers Facing “Financial Hardships” After Ransomware Attack
A ransomware attack has left Northwest Territories Power Corp with a 6-week restoral process and "financial hardships" for customers.
NTT Communications breach exposed data on nearly 18,000 corporate customers
Japanese carrier NTT Communications said an attacker reached its Order Information Distribution System, exposing company names, contract numbers, phone…
Nucor halts steel production at multiple sites after cyberattack
Nucor Corporation disclosed in a 14 May 2025 SEC filing that an unauthorised third party had accessed portions of its information technology systems.
Nunavut Government Services Impacted By Ransomware
The Government of Nunavut is the latest victim in a string of similar ransomware attacks that seems to be targeting North American governments.
40K Canadians Potentially Impacted By Lost Gov’t Employee Laptop
Last May, a government employee’s laptop containing thousands of personal files, including sensitive health information., was stolen out of a car.
NXP Semiconductors told portal account holders their contact data was exposed
NXP Semiconductors told users of its online customer portal in September 2023 that an unauthorized party had taken basic personal data in a July 11, 2023…
U.S. bank regulator OCC discloses year-long email system breach
The Office of the Comptroller of the Currency notified Congress that a breach of its email system met the federal threshold for a major incident.
OCR Labs exposed credentials tied to banking clients in misconfigured file
Cybernews researchers reported in April 2023 that identity verification vendor OCR Labs had left an environment file publicly accessible on its IDKit servers…
Ransomware shut Octapharma Plasma donation centers across 35 US states
Octapharma Plasma detected unauthorized activity on its network on April 17, 2024 and closed roughly 180 to 190 plasma donation centers across 35 US states…
Ocuco breach exposes health data of about 241,000 people
Dublin based eyecare software firm Ocuco told U.S. regulators that an intrusion into two non-production servers in late March 2025 exposed health and personal…
German brewer Oettinger confirms cyberattack claimed by RansomHouse
Oettinger Getranke, one of Germany's largest beverage producers, confirmed a cyberattack in May 2025 and said it was assessing whether data had leaked.
Ofcom said MOVEit hack took data on 412 staff and companies it regulates
Ofcom, Britain's communications regulator, confirmed on June 12, 2023 that it was caught in the mass exploitation of Progress Software's MOVEit Transfer.
Ohio History Connection ransomware attack exposed data on about 7,600 people
Ohio History Connection, which manages Ohio's state archives, disclosed that ransomware operators encrypted its internal data servers in early July 2023.
Daixin ransomware attack took Omni Hotels & Resorts systems offline for a week
Omni Hotels & Resorts lost reservation, room key and point of sale systems for more than a week after a March 29, 2024 ransomware attack.
Ransomware attack on OneBlood disrupted blood supply across the Southeast
OneBlood, a nonprofit blood centre supplying hospitals across Florida, Georgia and the Carolinas, disclosed a ransomware attack on 31 July 2024 that forced…
Onix Group ransomware attack exposed data on about 320,000 patients and employees
Onix Group disclosed that an intruder was inside its network from March 20 to March 27, 2023, taking files before deploying ransomware.
Ontario Hospital Network Faces Increasing Downtime Costs After Ransomware
As per sources, no personal information was compromised in the breach. There are no inexpensive ways to respond to a ransomware attack, which raises the…
Ontario Hospital Resumes Emergency Services After ‘Cyber Incident’
Kemptville District Hospital has reopened the doors to their emergency department following a “cyber incident” from earlier in the week.
Ontario Non-Profit Warning Clients After Ransomware Attack
Social Enterprise for Canada (SEC), a Southern Ontario family services charity, has warned members and clients not to respond to emails threatening to release…
ON Catholic School Faces Rising Downtime Costs After Ransomware
Ransomware targeting Ontario’s eighth largest Catholic school system causes major disruption in services and increasing financial damages.
Chaos ransomware group leaked 69 GB stolen from Optima Tax Relief
Optima Tax Relief was added to the Chaos ransomware group's dark web leak site on June 6, 2025, with the attackers claiming to have encrypted its servers and…
Oracle denies cloud breach as researchers back hacker's six million record claim
In March 2025 an actor using the handle rose87168 advertised six million records supposedly taken from Oracle Cloud SSO infrastructure covering more than…
Orange County District Attorney shut down IT systems after a cyberattack
The Orange County District Attorney's Office in California disclosed on October 23, 2023 that intruders had reached part of its IT network.
Orange Group confirms breach of Romanian back office systems
French telecom operator Orange Group confirmed a February 2025 intrusion at its Romanian business after a hacker using the alias Rey leaked around 6.5GB of…
ORBCOMM ransomware attack knocked out trucking fleet management and ELDs
ORBCOMM suffered a ransomware attack on September 6, 2023 that disabled its FleetManager platform, RCOM Reports and Blue Tree BT500 and BT504 electronic…
Orbit Chain lost about $81 million in New Year's Eve bridge exploit
Orbit Chain, a South Korean cross-chain bridge built by Ozys, lost roughly $81 million in the final major crypto theft of 2023.
Oregon environmental agency shuts down network after cyberattack
The Oregon Department of Environmental Quality isolated its servers and shut its network on April 9, 2025 in response to a cyberattack, closing Clean Air…
MOVEit breach at PH Tech exposed 1.7 million Oregon Health Plan members
Oregon officials disclosed in early August 2023 that roughly 1.7 million Oregon Health Plan members had data exposed after claims processor Performance Health…
Oregon Zoo warned 117,000 online ticket buyers of payment card theft
The Oregon Zoo discovered on June 26, 2024 that an unauthorized actor had been redirecting online ticket transactions away from its payment processor since…
Orrick law firm breach exposed data on more than 637,000 people
Orrick, Herrington & Sutcliffe completed notifications in January 2024 to more than 637,000 people affected by a March 2023 intrusion at the San Francisco law…
Otelier breach exposes hotel guest reservations for Marriott, Hilton and Hyatt
Attackers held access to Otelier from July to October 2024 and claimed about 7.8 terabytes of data taken from its Amazon S3 buckets.
Ottawa Police Warning New COVID-19 Hospital Phishing Scam
Citizens of Ottawa are being warned about a new COVID-19 phishing scam that originated from The Ottawa Hospital - Read More
Over 1 Million Students’ Personal Info Exposed on Unsecured Database
A misconfigured online database belonging to educational provider OneClass, is to blame for compromising 1 million users' personally identifiable info.
Over 1 Million Users Affected In GoDaddy Data Breach
A data breach appears has potentially impacted 1.2 million GoDaddy customers after unauthorized third-party access WordPress servers.
Over 100,000 Employees Affected By California Pizza Kitchen Data Breach
California Pizza Kitchen says unauthorized access to IT systems led to data breach impacting current and past employees.
Over $100k In Ransomware Recovery Costs for Calgary Construction
Calgary’s Professional Excavators and Construction is facing a six-figure recovery bill after a ransomware attack locked their IT systems.
Over 142 Million Affected in MGM Resorts Data Breach
The MGM Resorts data breach appears to be nearly 14x larger than earlier reports suggested coming in at 142,479,937 people potentially affected.
Oxford City Council breach exposed 21 years of election worker records
Oxford City Council confirmed on June 19, 2025 that intruders had accessed historic records on legacy systems, exposing personal details of poll station…
Ransomware Attack Hits Community Bank
Last week, the California-based Pacific City Bank was hit by a ransomware attack. The AVOS Locker ransomware gang is claiming to have stolen sensitive…
Pacific Premier Bancorp customer data stolen in vendor's MOVEit breach
Pacific Premier Bancorp disclosed in a July 25, 2023 SEC filing that a vendor providing tax and compliance support was breached through the MOVEit Transfer…
Everest gang dumped Pacific Pulmonary Medical Group patient records
The Everest extortion group listed Pacific Pulmonary Medical Group on its dark web leak site on October 25, 2024 and dumped patient files spanning 2021 to…
Pacific Union College discloses ransomware breach affecting 56,041 people
Pacific Union College notified state regulators in November 2023 that attackers were inside its network between March 5 and 19, 2023, exposing personal and…
Palomar Health Medical Group cyberattack knocked outpatient systems offline for months
Palomar Health Medical Group detected an intrusion on May 5, 2024 and took systems offline, leaving its North San Diego County outpatient clinics without…
Pandemonium Rocks refund form exposed ticketholders' bank details
Organisers of the Pandemonium Rocks touring festival in Australia left the administrator results tab enabled on an online refund form.
Panera Bread ransomware attack caused week-long nationwide IT outage
Panera Bread's week-long March 2024 technology outage, which left about 2,160 cafes taking cash only and knocked out its website, app, kiosks and loyalty…
Parcel Plus tax clients had refunds redirected after spear phishing attack
Parcel Plus of Hanover, Pennsylvania announced on 28 March 2025 that a spear phishing attack it linked to foreign actors had altered direct deposit details on…
Pareto Phone breach leaked Australian charity donor data to the dark web
Brisbane telemarketing firm Pareto Phone, which ran fundraising calls for Australian charities, was breached in April 2023.
Patelco Credit Union ransomware attack shuts down banking systems for weeks
Patelco Credit Union, headquartered in Dublin, California, shut down its banking platform after a ransomware attack detected on 29 June 2024.
Patient Data Exposed In 3rd Party Healthcare Ransomware Attack
Healthcare business management and IT solutions vendor PracticeMax is reaching out to members of VillageHealth after a ransomware attack potentially exposed…
Cyberattack shut down IT services across France's Pays Fouesnantais
A cyberattack detected at the end of December 2023 rendered nearly every municipal IT service inoperable at the Brittany town of Fouesnant and its…
PEI Government Investigating Ransomware Attack
Security experts praised Prince Edward Island's Government for their quick action and transparent reporting of a recent ransomware attack.
PSEA notified more than 517,000 people after Rhysida claimed 2024 breach
PSEA, Pennsylvania's largest public-sector union, said a July 6, 2024 network intrusion led to the theft of names, Social Security numbers, state IDs…
Pepsi Bottling Ventures breach hit more than 28,000 employees and contractors
An intruder installed information stealing malware on Pepsi Bottling Ventures systems on December 23, 2022 and downloaded data before the activity was found…
Perfection Fresh confirms breach after Sarcoma ransomware listing
Perfection Fresh, an Australian fresh produce grower and distributor, confirmed a cyber incident in October 2024 after the Sarcoma ransomware group listed it…
PJ&A transcription breach exposed data of nearly 9 million patients
Medical transcription firm Perry Johnson & Associates reported that a network intrusion between March 27 and May 2, 2023 exposed health data belonging to…
Ransomware attack on Peter Green Chilled disrupts UK supermarket food supplies
Somerset chilled food distributor Peter Green Chilled was hit by ransomware in mid May 2025. Order processing stopped and phone and email channels were cut…
German healthcare recruiter Pflegia exposed job seeker files in open AWS bucket
Cybernews researchers found an open Amazon Web Services bucket belonging to Pflegia, a German platform that recruits nurses and care staff.
PharMerica breach exposed data of 5.8 million patients
PharMerica told 5,815,591 people that a March 12, 2023 intrusion exposed names, addresses, dates of birth, Social Security numbers, medications and health…
Pilot Credentials breach exposed data on American and Southwest pilot applicants
Pilot Credentials, an Austin recruiting platform used by airlines, was breached on or around April 30, 2023. Filings by American Airlines and Southwest…
Pinehurst Radiology Associates closed indefinitely after cyberattack
Pinehurst Radiology Associates in North Carolina detected a network intrusion around January 20, 2025 and closed indefinitely, unable to schedule mammography…
Cyberattack knocked out email, phones and payments in Pittsburg, Kansas
The city of Pittsburg, Kansas said a cybersecurity incident detected over the weekend knocked out municipal email, phones and online payments.
Pizza Hut Australia told 193,000 customers their data was accessed
Pizza Hut Australia notified roughly 193,000 customers in September 2023 that an unauthorised third party accessed a database of customer and order records…
Planet Ice breach exposed data on more than 240,000 UK skating customers
Planet Ice, which runs 14 UK ice rinks, told customers in late January 2023 that attackers had reached the non-financial areas of its Ice Account booking…
Hackers Access Personal Health Info From Online Pharmacy
Nearly 400,000 Canadian customers of the online pharmacy PlanetDrugsDirect, are being warned after a recent data breach.
RansomHub claimed a cyberattack on Planned Parenthood of Montana
Planned Parenthood of Montana detected a cybersecurity incident on 28 August 2024 and took parts of its network offline.
Sarcoma ransomware group leaks data from Sydney's The Plastic Bag Company
Sydney-based manufacturer The Plastic Bag Company was listed by the Sarcoma ransomware group in October 2024. The gang claimed 3.6GB of data and published…
Plenty of Fish Private User Info Accidental Data Leaked
Security researchers recently discovered a data leak for online dating app Plenty of Fish, potentially leaking private user information.
Point32Health ransomware attack disrupted Harvard Pilgrim member services
Point32Health identified a ransomware attack on 17 April 2023 that forced Harvard Pilgrim Health Care systems offline, disrupting member services and prior…
PokerStars US notifies 110,291 people of MOVEit related data theft
TSG Interactive US Services, operator of PokerStars in the US, notified about 110,291 people that names, addresses and Social Security numbers were copied…
Pole emploi says MOVEit breach at a contractor exposed data on 10 million people
Pole emploi announced on August 23, 2023 that a breach at a contractor had exposed personal data on roughly 10 million people registered with the agency or…
Ransomware halted container operations at Japan's Port of Nagoya
A LockBit 3.0 ransomware attack disabled the Nagoya United Terminal System at Japan's largest cargo port on July 4, 2023, halting container handling for about…
8Base ransomware group claimed a data theft at Croatia's Port of Rijeka
The 8Base ransomware group listed Croatian port operator Luka Rijeka on its leak site in early December 2024, claiming invoices, accounting records…
Rhysida ransomware attack disrupted Seattle-Tacoma International Airport systems
The Port of Seattle isolated systems after detecting an intrusion on August 24, 2024, disrupting baggage, check-in, ticketing and parking at Sea-Tac Airport.
PowerSchool breach exposes K-12 student and teacher records worldwide
PowerSchool said a single compromised credential gave an intruder access to its PowerSource support portal, which was then used to export student information…
Vice Society claims cyberattack on Puerto Rico water utility PRASA
The Puerto Rico Aqueduct and Sewer Authority disclosed a cyberattack on 19 March 2023 that reached customer and employee information.
Cyberattack on Prince George's County Public Schools hit 4,500 accounts
Prince George's County Public Schools in Maryland disclosed a cyberattack on 14 August 2023 that compromised roughly 4,500 of its 180,000 user accounts…
Progressive Leasing discloses cyberattack that exposed Social Security numbers
Progressive Leasing told the SEC in September 2023 that a cyberattack exposed personal data including Social Security numbers.
Proskauer Rose left confidential client M&A files exposed on an unsecured cloud server
Proskauer Rose confirmed in April 2023 that an outside vendor hired to build a cloud information portal had not secured it, leaving about 184,000 files of…
Prospect Medical Holdings cyberattack shut hospital services in four states
Prospect Medical Holdings took systems offline after an August 3, 2023 cyberattack that disrupted 16 hospitals and about 166 outpatient facilities in…
Prudential Financial disclosed breach of employee and contractor data
Prudential Financial told the SEC that an intruder reached its systems on February 4, 2024 and took administrative data plus employee and contractor account…
Prudential said MOVEit hack at vendor PBI exposed 320,840 people
Prudential Insurance Company of America reported that at least 320,840 people had names, Social Security numbers, dates of birth and contact details exposed…
Ransomware attack forced German control systems vendor PSI Software offline
PSI Software, a Berlin-based vendor of control systems for European energy suppliers and pipeline operators, took its systems offline after detecting unusual…
PSNI accidentally published details of about 10,000 officers and staff
On 8 August 2023 the Police Service of Northern Ireland published a spreadsheet answering a freedom of information request that also listed the surname…
Pueblo County School District 70 disclosed ransomware breach of student records
Pueblo County School District 70 in Colorado disclosed on July 17, 2024 that a ransomware attack, believed to have occurred on April 27 and discovered on May…
QIMR Berghofer skin cancer study data exposed in Datatime breach
QIMR Berghofer Medical Research Institute told participants in its QSkin skin cancer study that a November 2022 breach at survey contractor Datatime may have…
ALPHV claimed 5TB of data from ATM installer Quality Service Installation
ALPHV, also known as BlackCat, claimed on October 14, 2023 to have stolen financial, client and product data from Quality Service Installation, an ATM and ITM…
Queretaro Intercontinental Airport confirms cyberattack claimed by LockBit
Queretaro Intercontinental Airport confirmed on November 1, 2023 that it had suffered a cyberattack that began when an employee downloaded a malicious file.
Akira ransomware group claimed an attack on Alabama's Quik Pawn Shop
The Akira ransomware group claimed a February 22, 2024 attack on Alabama pawnbroking and consumer lending chain Quik Pawn Shop, saying it took about 140 GB of…
Radiant Logistics isolated Canadian operations after March 2024 cyberattack
Radiant Logistics detected an intrusion in its Canadian operations on March 14, 2024 and isolated that network from the rest of its infrastructure.
RailYatri data on more than 31 million users posted to a hacking forum
A database attributed to Indian train booking platform RailYatri was posted to BreachForums on 16 February 2023, covering more than 31 million users and about…
Rainbow District School Board cyberattack exposed decades of student and staff data
Rainbow District School Board in Sudbury, Ontario confirmed on February 20, 2025 that a cyberattack exposed social insurance numbers, bank account details…
$7-$10K Ransom Request Refused by Municipal Ontario Government
On June 30th, hackers exploited a network vulnerability to access the government’s system infecting it with ransomware that cut off access to vital services.
RansomEXX claimed a 142GB data theft from Taiwan's Lite-On Technology
In July 2024 the RansomEXX extortion group listed Lite-On Technology Corporation on its dark web leak site, claiming to hold about 142GB of data from the…
Ransomware Attack Could Affect Customer Payroll Services For Weeks
Ultimate Kronos Group, the payroll & HR software provider, experienced a ransomware attack that could force systems offline for weeks.
Ransomware Gang Threatens to Leak 1.5TB of Data
Supernus Pharmaceuticals was hit with a ransomware attack that resulted in 1.5TB of data being exfiltrated from its networks.
Ransomware Group Targets Commercial Real Estate Firm
Real estate giant Marcus & Millichap suffers a cyber attack suspected to be deployed by the BlackMatter ransomware group.
Ransomware Hits Canadian Federal Contractor Bird Construction
A recent ransomware attack on Bird Construction stirred concern for data safety as Bird holds several military & government contracts with the Canadian…
Ransomware Knocks Programs Offline for Nationwide Broadcast Group
Sinclair Broadcast Group sees major disruptions to systems after cyberattack knocks broadcasts offline over the weekend.
Ransomware Attack On Ottawa Clinic Disrupts Patient Care
Ottawa’s Rideau Valley Health Centre has been left without the ability to schedule appointments as their IT systems were severely affected by a recent cyber…
Ransomware Shuts Down Production Distribution For Schreiber Foods
After initially seeing their milk plants shut down by a ransomware attack, Schreiber Foods says its plants and distribution centres are now back online.
Rapattoni cyberattack froze MLS property listings across the US
Rapattoni Corporation, which supplies Multiple Listing Service software to regional realtor groups, said its production network was hit by a cyberattack on 9…
Razer investigated claims that Razer Gold data and source code were stolen
Razer said it was alerted on July 9, 2023 to a forum seller using the alias Nationalist who claimed to hold source code, databases, encryption keys and…
Ransomware forced Costa Rica's state fuel company RECOPE to sell fuel manually
RECOPE, Costa Rica's state-owned fuel importer and refiner, was struck by RansomHub ransomware on November 27, 2024. Digital payment systems went down and…
Red Barrels breach delayed Outlast development after 1.8TB theft claim
Outlast developer Red Barrels disclosed on October 2, 2024 that its internal IT systems were breached. A group calling itself Nitrogen claimed to have taken…
BlackCat threatened to leak 80GB of Reddit data taken in a February breach
In June 2023 the ALPHV group, also known as BlackCat, claimed to hold 80GB of data taken from Reddit in a February phishing intrusion.
Ukraine's HUR claims destructive attack on rail firm RegionTransService
Ukrainian Defence Intelligence sources said a January 4, 2025 operation wiped the servers of RegionTransService LLC, a Russian freight rail wagon services…
Reventics breach exposed data on more than 250,000 patients
Colorado revenue cycle management firm Reventics detected an intruder on December 15, 2022 and later reported to federal regulators that 250,918 people had…
Rheinmetall cyberattack hit civilian division, defence business unaffected
Rheinmetall confirmed a cyberattack detected on 14 April 2023 that hit the industrial division serving automotive customers.
Rite Aid says June cyberattack exposed data on 2.2 million people
Rite Aid notified about 2.2 million people after an intruder impersonated an employee to obtain business credentials on 6 June 2024.
Rite Aid says vendor software flaw exposed data on 24,400 customers
Rite Aid said a vulnerability in a vendor's software was exploited before it could be patched, exposing names, dates of birth, addresses, prescription details…
IntelBroker and Sanggiero claimed a data breach at staffing firm Robert Half
Threat actors IntelBroker and Sanggiero advertised more than 64 GB of data they said was taken from staffing firm Robert Half International on February 8…
Roblox developer conference attendee data exposed in FNTech vendor breach
Roblox disclosed in early July 2024 that FNTech, the vendor handling Roblox Developer Conference registrations, was breached.
Ransomware attack knocks out Rockford Public Schools network
Ransom notes printed on district printers told Rockford Public Schools its data was stolen and encrypted. The Michigan district shut down its network, phones…
Rodl Management breach exposed tax client data from Jamestown and JT Tax Services
Rodl Management, Inc., the US arm of professional services network Rodl and Partner, disclosed a network intrusion that ran from January 30 to February 9, 2024.
Rogers Communications Notified of Minor Data Leak
Canadian telecom giant, Rogers, was recently warned of a data leak as sensitive data was exposed on their GitHub developers platform.
Roku disclosed credential stuffing attack affecting 15,363 accounts
Roku notified the Maine and California attorneys general on March 8, 2024 that 15,363 accounts had been accessed using credentials stolen from unrelated…
Roll20 discloses breach of an administrative account exposing user records
The virtual tabletop platform Roll20 disclosed on 3 July 2024 that an unauthorized party held an administrative account for roughly an hour on 29 June.
Roseltorg confirms cyberattack on Russia's state procurement platform
Roseltorg, Russia's main electronic trading platform for state procurement, went offline on January 9, 2025 and admitted on January 13 to an external attempt…
Royal Canadian Mounted Police opened criminal probe into network cyberattack
Canada's federal police force confirmed on February 23, 2024 that a cyberattack had targeted its networks, calling a breach of that magnitude alarming while…
Play ransomware group hits Dutch maritime firm Royal Dirkzwager
Dutch maritime logistics firm Royal Dirkzwager confirmed a Play ransomware attack in March 2023. The gang published a roughly 5 gigabyte sample it said…
Royal Dutch Football Association says hackers stole employee data
The Royal Dutch Football Association (KNVB) confirmed on April 4, 2023 that attackers had breached the network at its Zeist campus and stolen employee…
Royal Mail data leaked after breach at supplier Spectos
A BreachForums user calling itself GHNA advertised about 144GB of Royal Mail Group material in early April 2025. Both Royal Mail and Spectos, a German postal…
Royal Women's Hospital notified 192 patients after staff email account hacked
The Royal Women's Hospital in Melbourne notified 192 patients in October 2023 that their personal details may have been exposed after cyber criminals accessed…
Running Room Canada Data Breach - Customer Data Compromised
Running Room, a Canadian sporting goods retailer, recently suffered a data breach affecting a subset of customers. Learn about the extent of the breach and…
BianLian emailed Sable International customers after immigration firm breach
Sable International, an immigration and financial services firm operating in the UK, South Africa and Australia, confirmed on 2 August 2024 that a cyberattack…
Dunghill Leak claimed a 1.3TB data theft from travel technology firm Sabre
In September 2023 the Dunghill Leak group claimed it had taken about 1.3 terabytes of data from Sabre Corporation, the travel technology firm behind many…
SAIF Data Breach: Oregon's Leading Workers' Compensation Provider Experiences Security Incident
SAIF, a not-for-profit organization and Oregon's leading provider of workers' compensation coverage, experienced a data breach.
Ransomware paralyzed Saint-Nazaire and four neighboring French communes
A ransomware attack overnight on April 9 to 10, 2024 disabled the shared servers of Saint-Nazaire, Montoir-de-Bretagne, Donges, La Chapelle-des-Marais and…
Samsung Germany support tickets leaked after four-year-old credentials were reused
Roughly 270,000 Samsung Germany customer support tickets, containing names, addresses, order details and shipment tracking links, were published online in…
Samsung UK store breach exposed contact details of 2019 and 2020 shoppers
Samsung Electronics said it identified on November 13, 2023 that an attacker had exploited a flaw in a third party business application, exposing names, phone…
Sanrio Entertainment ransomware attack put up to 2 million records at risk
Sanrio Entertainment said on February 7, 2025 that ransomware had reached its systems, with unauthorised access first identified on January 21.
Sarcoma ransomware group claims 377 GB stolen from PCB maker Unimicron
Taiwanese printed circuit board maker Unimicron confirmed a ransomware attack on January 30, 2025 and said the expected impact was limited.
Ransomware shut Kewadin Casinos and Sault Tribe services across Michigan
The Sault Ste. Marie Tribe of Chippewa Indians was hit by ransomware on February 9, 2025. Gaming stopped at all five Kewadin Casino locations, health centres…
Sav-Rx breach exposed data of 2.8 million prescription plan members
A&A Services, which trades as prescription benefit manager Sav-Rx, notified 2,812,336 people in May 2024 that an October 2023 network intrusion exposed names…
ScanSource confirmed ransomware attack behind multi-day outages
Technology distributor ScanSource confirmed that a ransomware attack discovered on May 14, 2023 hit its systems, business operations and customer-facing…
Cactus ransomware hit Schneider Electric's Sustainability Business division
Schneider Electric said a ransomware attack that began on January 17, 2024 hit its Sustainability Business division and its EcoStruxure Resource Advisor cloud…
Schneider Electric investigated Hellcat theft of 40GB from its Jira server
In November 2024 the newly formed Hellcat extortion group said it had pulled more than 40GB of data and over 400,000 rows of user records from Schneider…
Scottish Ambulance Service apologizes after first responder spreadsheet emailed in error
The Scottish Ambulance Service apologized after an Excel spreadsheet of community first responders' personal details was attached to an email in error on…
Ransomware attack knocks out Scranton School District systems
The Scranton School District in Pennsylvania confirmed a ransomware attack on March 15, 2024 that disrupted computer systems, phones and its website.
SD Worx shut down UK and Ireland payroll systems after cyberattack
Belgian payroll and HR provider SD Worx isolated all IT systems for its UK and Ireland operations in April 2023 after finding malicious activity in its hosted…
Ransomware attack knocked The Seattle Public Library's systems offline
A ransomware attack discovered over Memorial Day weekend 2024 took technology services offline at all 27 Seattle Public Library locations.
Seiko says ransomware attack exposed about 60,000 items of personal data
Seiko said on October 25, 2023 that a ransomware attack claimed by ALPHV/BlackCat exposed roughly 60,000 items of personal data belonging to watch customers…
LockBit ransomware attack disrupted SEIU Local 1000 in California
California's SEIU Local 1000 confirmed that an outside actor disrupted its network on January 18, 2024 and encrypted data.
Sensata Technologies ransomware attack halts shipping and production
Industrial sensor maker Sensata Technologies told the SEC that ransomware encrypted devices on its network on April 6, 2025, temporarily halting shipping…
Serviceaide database exposure hit 483,000 Catholic Health patients
Serviceaide, a Santa Clara IT service management vendor, disclosed that an Elasticsearch database holding Catholic Health patient records was…
Several Employee Email Accounts Compromised in Phishing Attack
Los Angeles based clothing manufacturer Next Level Apparel, announced several of its employees have been compromised in a phishing attack.
SFU Ransomware Attack Compromises Personal Info for Students, Faculty & Alumni
Simon Fraser University is left trying to mitigate the damages of a ransomware attack as they investigate the details & how many people have been affected.
Shadow said hacker stole customer data after employee lured on Discord
Shadow, the Paris-based cloud gaming company behind Shadow PC, confirmed in October 2023 that an employee was socially engineered on Discord into downloading…
Sharp HealthCare notified about 63,000 patients after a web server breach
San Diego's Sharp HealthCare began notifying 62,777 patients in February 2023 that an unauthorised party reached a server hosting sharp.com on January 12…
Shaw Warns Customers of Potential Data Leak 6 Months Later
Shaw customers were recently notified of a data breach that occurred 6 months ago. Despite notifying the police of a stolen company computer in June, the…
Shell says BG Group Australia employee data taken in MOVEit breach
Shell disclosed that personal data of former BG Group staff in Australia, dating from 2013, was accessed through the MOVEit Transfer vulnerability exploited…
LockBit claims 4.5TB of data stolen from bicycle component maker Shimano
The LockBit ransomware group listed Japanese bicycle component and fishing tackle maker Shimano in early November 2023, claiming about 4.5 terabytes of data…
Paris-area wastewater agency SIAAP hit by cyberattack
SIAAP, which treats wastewater for about nine million people around Paris, was hit by a cyberattack on November 17, 2023.
Sibanye-Stillwater cyberattack hit the mining group's IT systems worldwide
Sibanye-Stillwater said on July 11, 2024 that a cyberattack had affected its IT systems globally. The precious metals producer isolated systems to safeguard…
Toronto’s SickKids Hospital Confirms Ransomware Attack
Toronto's Hospital for Sick Children (SickKids) has been hit with a ransomware attack, affecting some of its phone lines, web pages, and clinical systems.
SimpleTire left 2.8 million customer records in an open database
Online tire retailer SimpleTire left a one terabyte database publicly accessible without a password, exposing 2,808,697 records and 1,189,151 order…
Simpson Manufacturing took systems offline after October 2023 cyberattack
Simpson Manufacturing Co., parent of Simpson Strong-Tie, told the SEC in a Form 8-K that it found disruptions to its IT infrastructure on October 10, 2023…
CISA warned Sisense customers to reset credentials after vendor breach
Sisense told customers on April 10, 2024 that company data had been found on a restricted access server, and CISA issued a rare public alert the next day…
Qilin ransomware gang claims 1TB theft from SK Group's U.S. arm
Qilin, also tracked as Agenda, posted South Korean conglomerate SK Group to its leak site on April 10, 2025 and gave it 48 hours to make contact before…
Ransomware at Nordic distributor Skanlog empties Systembolaget shelves
A ransomware attack detected on 22 April 2024 shut down systems at Skanlog, which handles about 15% of sales volume for Systembolaget, Sweden's state alcohol…
Slim CD breach exposed card data for about 1.7 million people
Payment gateway provider Slim CD notified 1,693,000 people that names, addresses, credit card numbers and expiration dates were exposed.
Slobozia hospital among Romanian hospitals hit by Hipocrate ransomware attack
Slobozia County Emergency Hospital was among the Romanian hospitals whose data was encrypted when Backmydata ransomware hit the Hipocrate patient records…
Ransomware shuts Slovakia's land registry office UGKK, stalling property deals
A January 2025 ransomware attack forced Slovakia's Office of Geodesy, Cartography and Cadastre to shut down its systems and close offices, stalling property…
Smartpay confirmed customer data was stolen in a ransomware attack
Smartpay Holdings, a New Zealand payment terminal provider, found ransomware on some New Zealand systems on June 10, 2023 and confirmed on June 16 that data…
Smith & Caughey's crypto-locked by ransomware on the day it announced its closure
Smith & Caughey's, the Auckland department store trading since 1880, had its server and retail operations systems crypto-locked on 29 May 2024, the same day…
Smiths Group discloses unauthorized access to its systems
Smiths Group told the London Stock Exchange on January 28, 2025 that it was managing a cyber security incident involving unauthorized access to its systems.
Snowflake says up to 165 customer accounts hit in credential theft campaign
Roughly 165 organisations were notified that their Snowflake instances were potentially exposed in a data theft and extortion campaign.
Ransomware took Solano County's SPLASH library network offline for weeks
Ransomware hit the Solano Partner Libraries and St. Helena network on April 5, 2024, taking public computers, Wi-Fi and phone lines offline at libraries in…
BlackCat claimed a 2TB theft from Indian defence manufacturer Solar Industries
The BlackCat ransomware group, also tracked as ALPHV, listed Nagpur-based Solar Industries India Limited on its leak site in late January 2023, claiming…
Sony Interactive Entertainment notified about 6,800 people of MOVEit breach
Sony Interactive Entertainment notified about 6,800 current and former employees and family members in October 2023 that data was stolen when an attacker…
Ransomware halts test reporting at South Africa's National Health Laboratory Service
South Africa's National Health Laboratory Service, which serves about 80 percent of the population, was hit by ransomware on 22 June 2024.
South African Airways says cyberattack disrupted website, app and internal systems
South African Airways disclosed a cyberattack that began on 3 May 2025 and briefly cut access to its website, mobile app and internal systems.
Cyberattack shut down IT systems at South East Technological University
SETU detected a cybersecurity incident at its Waterford campuses on November 1, 2024 and took systems offline, leaving staff and students without campus…
South St. Paul Public Schools took systems offline after network intrusion
South St. Paul Public Schools in Minnesota took its systems offline in early March 2024 after discovering unauthorized activity on its network, disrupting…
Southeastern Louisiana University took its network offline after cyberattack
Southeastern Louisiana University shut down its campus network in late February 2023 after detecting a potential intrusion, leaving students and staff without…
Unsecured SAIS database exposed 682,000 school records
A researcher found an unprotected database belonging to the Southern Association of Independent Schools holding 682,438 records and about 572 GB of files…
Black Basta claims ransomware attack on UK utility Southern Water
The Black Basta ransomware group named Southern Water on its Tor leak site on January 22, 2024, claiming about 750GB of stolen data and setting a February 29…
Specialty Networks breach exposed data on more than 411,000 patients
Specialty Networks, a Chattanooga, Tennessee supplier of radiology information systems and practice management services, notified 411,037 patients in August…
Squirrel breach exposed ID documents of up to 600 New Zealand investors
Squirrel, a New Zealand mortgage broking and peer to peer lending firm, disclosed in July 2024 that an unauthorised party had reached a third party identity…
St. Charles Parish lost over $1.2 million to a vendor email compromise
St. Charles Parish Government in Louisiana disclosed in September 2024 that hackers had compromised one of its vendors' email systems and used falsified…
Standard Bank employee copied client data to an unprotected personal device
South Africa's Standard Bank said on November 7, 2024 that a staff member with authorized access had copied limited client personal and financial information…
Akira claimed 430 GB from Stanford's public safety department
Akira claimed 430 GB of private information and confidential documents from the Stanford University Department of Public Safety and threatened to publish it.
Stanford University exposed files of 897 economics PhD applicants
A misconfigured folder on Stanford University's economics department website left 2022-23 PhD application files openly accessible from December 5, 2022 to…
Stanley Steemer breach exposed data on about 67,000 customers
Stanley Steemer notified regulators in November 2023 that intruders entered its network on February 10, 2023 and were discovered on March 6.
Staples took systems offline after a Cyber Monday intrusion
Staples shut down much of its network, including its VPN, after detecting an intrusion on Cyber Monday 2023. Order processing on staples.com, deliveries…
Starbucks fell back on manual payroll after Blue Yonder ransomware attack
A ransomware attack on Blue Yonder, the Panasonic-owned supply chain software vendor, knocked out Starbucks' employee scheduling and hour-tracking systems in…
State Bar of Texas confirmed data theft after an attack claimed by INC Ransom
The State Bar of Texas said an unauthorised actor was in its network between 28 January and 9 February 2025 and stole personal data including Social Security…
State of Maine says MOVEit breach exposed data on 1.3 million people
The State of Maine disclosed in November 2023 that attackers exploiting the MOVEit Transfer flaw copied files on about 1.3 million people from around ten…
Stolen Access Key Used to Breach HPE’s Aruba Central
Technology giant Hewlett Packard Enterprise (HPE) has begun to inform users of their Aruba networking unit that their information may have been compromised…
Stratford-on-Avon council insider took 79,000 resident email addresses
Stratford-on-Avon District Council disclosed in February 2024 that a staff member had copied roughly 79,000 resident email addresses from a garden waste…
Ransomware at Sudwestfalen IT disrupts more than 70 German municipalities
Ransomware struck municipal IT provider Sudwestfalen IT on October 30, 2023, forcing it to cut data centre links and leaving more than 70 German…
Sun Life US members exposed in MOVEit breach at vendor PBI
Sun Life said it was not a MOVEit customer but that its vendor Pension Benefit Information had a server accessed on May 29 and 30, 2023.
Suncor Energy cyberattack disrupted payments at Petro-Canada stations
Suncor Energy disclosed a cybersecurity incident on June 25, 2023 that disrupted card payments, app logins and Petro-Points loyalty services across more than…
SundaySky notifies 37,095 people after files copied from its cloud servers
SundaySky Inc., a New York video marketing software company, notified 37,095 people that an unauthorised party copied files from its US cloud servers between…
Sunflower Medical Group breach exposed data on nearly 221,000 patients
Kansas practice Sunflower Medical Group said an unauthorized actor had access to its network from December 15, 2024 to January 7, 2025 and exfiltrated files…
Superior Plus Discloses Ransomware Attack Over The Weekend
Canadian-based propane giant Superior Plus is facing what could become a lengthy and complex recovery process after a network breach led to a ransomware…
Sutter Health says MOVEit breach at vendor Welltok exposed 845,000 patients
Sutter Health said roughly 845,441 patients had personal and health information exfiltrated on May 30 and 31, 2023, when attackers exploited the MOVEit…
Cyberattack halted production at Suzuki Motorcycle India for about a week
A cyberattack forced Suzuki Motorcycle India to suspend manufacturing for roughly a week in May 2023, costing an estimated 20,000 motorcycles and scooters.
Swan Retail cyberattack knocks around 300 UK independent retailers offline
Swan Retail, which supplies point of sale, stock control and back office software to UK independent retailers, was knocked offline by a cyberattack on August…
Synnovis ransomware attack disrupts pathology services at London NHS hospitals
Ransomware struck Synnovis, the pathology partnership serving Guy's and St Thomas' and King's College Hospital NHS trusts, on 3 June 2024.
Synnovis ransomware attack disrupted King's College Hospital and other London trusts
A ransomware attack on pathology provider Synnovis on June 3, 2024 knocked out laboratory services for King's College Hospital, Guy's and St Thomas' and GP…
Sysco discloses breach affecting customer, supplier and employee data
Foodservice distributor Sysco said attackers were inside its network from January 14, 2023 until detection on March 5, taking business, customer, supplier and…
Systems And Operations Shut Down For Digital Publisher After Ransomware
Sandhills Global, was forced to shut down operations and saw services to their hosted publications and phones offline after a successful ransomware attack.
T-Mobile named in Salt Typhoon espionage campaign against US telecoms
The Wall Street Journal reported on November 15, 2024 that T-Mobile was among US carriers targeted in the Salt Typhoon espionage campaign linked to Chinese…
T. Rowe Price named in Infosys McCamish breach affecting 6 million people
T. Rowe Price Retirement Plan Services and New York Life were named in a September 2024 Maine attorney general filing as clients caught up in the late-2023…
Taj Hotels investigates claimed leak of data on 1.5 million guests
In November 2023 a seller using the handle Dnacookies offered a dataset claimed to hold details of about 1.5 million Taj Hotels guests from 2014 to 2020…
Tampa General Hospital says data on 1.2 million patients was stolen
Tampa General Hospital said an intruder spent nearly three weeks inside its network in May 2023 and stole files on about 1.2 million patients, including…
Tangerine Telecom breach exposed data on 232,000 Australian customers
Tangerine Telecom told about 232,000 current and former Australian customers that a legacy database had been accessed on February 18, 2024 using the…
Tata Technologies reports ransomware attack in stock exchange filing
Tata Technologies told Indian stock exchanges on January 31, 2025 that a ransomware attack had affected some IT assets and forced a temporary suspension of…
TEAM Software breach exposed personal data on 99,525 people
TEAM Software, a Nebraska workforce management software vendor, said an unauthorized party reached its network between July 25 and July 26, 2024, exposing…
TeamViewer's corporate network was breached by APT29
TeamViewer detected an irregularity in its internal corporate IT environment on 26 June 2024 and attributed the intrusion to APT29, also tracked as Midnight…
TechnologyOne halts ASX trading after back-office systems breached
Australian enterprise software firm TechnologyOne requested an ASX trading halt on May 9, 2023 after disclosing unauthorized third-party access to its…
Telecom Giant Charter Communications Discloses Vendor Security Breach: Customer Data Exposed
Telecom giant Charter Communications recently disclosed that over half a million of its customers have had their information exposed in a vendor security…
Tempur Sealy shut down IT systems after July 2023 cyberattack
Bedding maker Tempur Sealy International identified a cyberattack on July 23, 2023 and proactively shut down IT systems, temporarily interrupting operations.
Terminated Executive Turns Insider Threat After 37,000 Patients’ Data Compromised
A malicious insider was the cause for the PII exposure of over 37,000 patients of the Premier Patient Healthcare network - Read More
Tesla blamed insider wrongdoing for breach affecting 75,000 employees
In an August 2023 notification to the Maine attorney general, Tesla said 75,735 current and former employees had personal data exposed and blamed insider…
Tewkesbury Borough Council shut down its systems after a suspected cyberattack
Tewkesbury Borough Council in Gloucestershire declared a major incident on 4 September 2024 after its systems detected suspicious activity across several…
Texas HHSC says employees improperly accessed data of about 94,000 people
The Texas Health and Human Services Commission said on April 30, 2025 that it was notifying 33,529 more benefit recipients whose personal and protected health…
Hundreds of Job Applicants’ Data Exposed on Misconfigured Website
Anti-choice political group, Texas Right to Life, exposes hundreds of job applicants' personal data on unprotected site.
Texas Tech University Health Sciences Center breach hit 1.46 million patients
Texas Tech University Health Sciences Center and its El Paso campus confirmed a September 2024 cyberattack that exposed names, Social Security numbers and…
Rhysida claimed a ransomware attack on London talent agency The Agency
The Agency, a London talent and literary management firm founded in 1995, reported itself to the UK Information Commissioner's Office in February 2025 after…
The Good Guys told 1.85 million loyalty members of a supplier breach
Australian electronics retailer The Good Guys began contacting 1.85 million current and former Concierge loyalty members after My Rewards, formerly Pegasus…
The North Face discloses April credential stuffing attack on customer accounts
Parent company VF Outdoor notified customers that a credential stuffing attack on thenorthface.com reached 2,861 accounts on 23 April 2025, exposing names…
Thousands of Customers Impacted By Marketron Ransomware Attack
Over 6,000 customers of Marketron, a digital marketing and media organization, have been impacted by a recent ransomware attack.
Threat Actors Demand Ransom from NRA After Leaking Files On Dark Web
Ransomware attack on the National Rifle Association leaves organization with threats of leaking more files if ransom demands not met.
Ticketek Australia customer data exposed via third-party cloud platform
Ticketek Australia told customers on May 31, 2024 that names, dates of birth and email addresses had been exposed through a cloud platform run by a…
Tiffany & Co. discloses South Korean customer data breach at third-party platform
Tiffany & Co. notified South Korean customers in May 2025 that a third-party application handling global customer data was accessed without authorization on 8…
Tilbury District Family Health Team patient data taken in TransForm ransomware attack
The Tilbury District Family Health Team in Ontario confirmed in January 2024 that patient information held on servers run by TransForm Shared Service…
Russia-linked group claimed cyberattack on Tipton, Indiana wastewater plant
A pro-Russia hacktivist group known as the Cyber Army of Russia posted Telegram video claiming an attack on the Tipton West wastewater treatment plant in…
TissuPath patient records leaked after breach at a third-party IT supplier
TissuPath, a specialist pathology practice in Melbourne, disclosed in September 2023 that a decade of scanned pathology request forms had been stolen from a…
TMX Finance discloses breach affecting 4.8 million TitleMax and InstaLoan customers
TMX Finance, the Savannah, Georgia lender behind TitleMax, TitleBucks and InstaLoan, disclosed a breach affecting 4,822,580 customers.
TOMRA isolates systems after extensive cyberattack on Norwegian group
Norwegian sorting and recycling technology group TOMRA disconnected systems after what it called an extensive cyberattack on July 16, 2023.
Toronto District School Board says student data stolen in June ransomware attack
The Toronto District School Board confirmed on 29 August 2024 that student names, schools, grades, board email addresses, student numbers and dates of birth…
Toronto Public Library cyberattack takes down digital services at 100 branches
Canada's largest library system detected a cybersecurity incident on October 28, 2023 that took down its website, patron accounts, digital collections and the…
Toronto Transit System Hit By Ransomware Attack
After being hit with a ransomware attack late last week, the Toronto Transit Commission is assuring public users and employees that they are not at risk.
Toronto Zoo discloses ransomware incident, employee records taken
The Toronto Zoo detected a ransomware incident on January 5, 2024 and disclosed it three days later. Employee records dating back to 1989 were taken, and the…
Total Tools data breach exposed about 38,000 customer accounts
Total Tools told customers that about 38,000 accounts may have been exposed after suspicious activity on its website. Names, email addresses, passwords, phone…
Toyota cloud misconfiguration exposed vehicle data for 2.15 million customers
Toyota Motor Corporation disclosed in May 2023 that a misconfigured cloud environment left vehicle location histories, chassis numbers and in-vehicle terminal…
Medusa ransomware hit Toyota Financial Services in Europe and Africa
Toyota Financial Services confirmed unauthorized activity on systems at a limited number of locations in Europe and Africa in November 2023.
Toyota confirms customer data exposed after 240 GB leak blamed on third party
In August 2024 the actor ZeroSevenGroup leaked a 240 GB archive on BreachForums claiming it came from a US Toyota branch.
Tracelo phone tracking service breach exposed 1.4 million customers and targets
Tracelo, a service that claims to locate a phone from its number, was breached on 1 September 2024. A BreachForums user called Satanic posted 1,459,014…
ALPHV claimed a data theft at Canada's Trans-Northern Pipelines
The ALPHV/BlackCat group listed Canadian fuel pipeline operator Trans-Northern Pipelines on its extortion site on February 13, 2024, claiming to have stolen…
Ransomware at TransForm knocked out systems at six Ontario health facilities
TransForm, the IT and supply chain provider for hospitals in Windsor, Chatham-Kent and Sarnia-Lambton, was hit by ransomware on October 23, 2023.
TRC Talent Solutions ransomware breach exposed 158,593 job seekers
TRC Staffing Services, the Atlanta firm operating as TRC Talent Solutions, notified 158,593 people in May 2024 that names and Social Security numbers were…
Trezor support portal breach exposes contact data of 66,000 users
Hardware wallet maker Trezor disclosed that an attacker reached a third-party support ticketing portal on January 17, 2024, exposing the names and email…
Truepill breach exposed prescription records of about 2.3 million patients
Mail order pharmacy Truepill, operated by Postmeds Inc., disclosed that intruders reached pharmacy fulfillment files between August 30 and September 1, 2023…
Truist Bank confirms October 2023 breach after employee data listed for sale
Truist Bank confirmed in June 2024 that it had suffered a cybersecurity incident in October 2023, after a seller using the handle Sp1d3r advertised bank data…
TruthFinder and Instant Checkmate Suffer Data Breach: 20 Million Customers Affected
PeopleConnect, the owner of TruthFinder and Instant Checkmate, confirmed a data breach that affected over 20 million customers.
TSMC faced a $70 million LockBit ransom after supplier Kinmax was breached
TSMC appeared on LockBit's leak site on June 29, 2023 with a $70 million ransom demand. TSMC said the compromise occurred at Kinmax Technology, an IT hardware…
TTEC Ransomware Attack Encrypts Data Disrupting Business Operations
Customer support provider TTEC, has confirmed a recent ransomware attack. The industry giant has nearly 60,000 employees and boasts a client book with several…
Eindhoven University of Technology shuts down network after cyberattack
Eindhoven University of Technology took its whole network offline on the night of January 11, 2025 after detecting suspicious server activity.
Turks and Caicos government recovers from pre-Christmas ransomware attack
A ransomware attack on December 18, 2024 forced the Turks and Caicos Islands Government to shut down digital services, disrupting welfare payments, tax…
Tusla began notifying 20,000 people whose data was stolen in the 2021 HSE attack
Tusla, Ireland's Child and Family Agency, started contacting roughly 20,000 people in February 2023 whose personal information was taken during the May 2021…
Twilio denies SendGrid breach after hacker offers 848,000 records for sale
In April 2025 a BreachForums seller using the alias Satanic advertised about 848,000 records said to have come from SendGrid, Twilio's email delivery…
Twin Ransomware Attacks Halt Business For Agriculture Industry
New Cooperative and Crystal Valley Cooperative hit by ransomware attacks days apart shutting down operations and threatening food supply chain.
Twitch Suffers Massive Source Code Data Breach
Over 125GB of data containing the source code for an expansion to streaming and gaming platform Twitch has been leaked online by an anonymous user.
Twitter source code leaked on GitHub, company subpoenas for leaker's identity
Twitter confirmed through late March 2023 court filings that proprietary source code had been posted on GitHub by an account called FreeSpeechEnthusiast.
U-Haul notified 67,000 customers after reservation system breach
U-Haul told roughly 67,000 US and Canadian customers in February 2024 that an unauthorised party had used legitimate login credentials to reach a dealer…
Uintah Basin Healthcare breach affected 103,974 patients in rural Utah
Uintah Basin Healthcare told 103,974 patients treated between March 2012 and November 2022 that names, Social Security numbers, insurance details, diagnoses…
UK Electoral Commission revealed hack exposing 40 million voters' details
On 8 August 2023 the UK Electoral Commission disclosed a complex cyber-attack in which hostile actors reached copies of the electoral registers, holding names…
U.K. Legal Aid Agency warns providers of security incident on its online systems
The U.K. Legal Aid Agency told providers in England and Wales that unauthorised third parties may have accessed their financial data.
Cyberattack knocks out Ukrainian railway Ukrzaliznytsia's online ticketing
Ukraine's state railway Ukrzaliznytsia lost its website, mobile app and online ticketing to an attack it described as systematic, complex and multi-layered on…
Unacast tells Norwegian regulator hackers took Gravy Analytics location data
Unacast notified Norway's data protection authority in January 2025 that an intruder used a misappropriated key to copy files from Gravy Analytics' Amazon…
UNDP confirmed data theft after ransomware attack on Copenhagen IT systems
UNDP disclosed in April 2024 that a data-extortion actor had taken human resources and procurement records, including personal data on current and former…
Hackers Infiltrate United Nations IT Networks
Stolen employee login credentials appear to be to blame for a data breach at the United Nations. Hackers used the stolen credentials to break into the UN’s…
Cyberattack on United Natural Foods disrupts grocery distribution
United Natural Foods took systems offline after detecting unauthorized activity on June 5, 2025, halting ordering and delivery to about 30,000 retail…
UnitedHealthcare notified members after credential stuffing attack on its mobile app
UnitedHealthcare told members that attackers reached accounts on its mobile application between February 19 and 25, 2023 in a credential stuffing attack.
University of Minnesota investigates claim that 7 million records were stolen
A hacker claimed in July 2023 to have taken a University of Minnesota database holding about 7 million Social Security numbers.
University of Notre Dame Australia struggles to recover from January cyberattack
Weeks after a late January 2025 attack, the University of Notre Dame Australia still could not restore enrolment, coursework, wi-fi and transcript systems.
University of the West of Scotland data auctioned by Rhysida ransomware gang
After a cyberattack in early July 2023 knocked out digital systems at the University of the West of Scotland, the Rhysida ransomware group put stolen staff…
US Defense Contractor Reveals Employee Phishing Attack
US national defense contractor Electronic Warfare Associates (EWA) has announced a data breach that is suspected to have been caused by an employee phishing…
U.S. Department of Defense notified 20,600 people of 2023 email exposure
The U.S. Department of Defense began notifying about 20,600 people that their personal information appeared in military emails left exposed on an unsecured…
US Department of Transportation breach exposed data on 237,000 federal employees
A breach of the US Department of Transportation's TRANServe commuter benefits system exposed names, work and home addresses, agency details and transit card…
U.S. Marshals Service ransomware attack hit a sensitive investigative system
The U.S. Marshals Service discovered a ransomware and data exfiltration event on February 17, 2023 affecting a standalone system holding law enforcement…
Chinese state hackers breached US Treasury workstations through BeyondTrust
The US Treasury Department disclosed on December 30, 2024 that Chinese state-sponsored hackers used a key stolen from remote support vendor BeyondTrust to…
US Wellness vendor breach exposed Blue Cross Blue Shield of Arizona members
US Wellness Inc. notified Blue Cross Blue Shield of Arizona members in March 2023 that a January incident at one of its own suppliers exposed names…
USAA notified about 32,000 members after update error misdelivered documents
USAA notified about 32,276 members on 27 August 2024 that an April 2024 error during a routine update to its document delivery system posted property and…
USDA said fewer than 30 employees may have been hit by a vendor's MOVEit breach
The USDA was drawn into the Clop group's MOVEit Transfer campaign in June 2023. After initially describing a possible vendor breach, the department said no…
USPTO exposed about 61,000 trademark applicants' home addresses for three years
The USPTO disclosed that domicile addresses supplied by roughly 61,000 trademark applicants had been exposed through some of its APIs and bulk data products…
Van Wagner Group breach exposed Social Security numbers of 5,354 people
Van Wagner Group, a New York sports and entertainment advertising agency, disclosed a malware attack that ran from August 3 to September 4, 2024 and exposed…
Varsity Brands breach exposed data of more than 65,000 people
The Texas-based parent of BSN Sports and Varsity Spirit detected unusual activity on its systems on May 24, 2024 and disclosed in October that files…
Cyberattack halted production at German battery maker Varta AG
German battery manufacturer Varta AG shut down IT systems and halted production at five plants in Germany, Romania and Indonesia after a cyberattack on…
Ventia took key systems offline after weekend cyberattack
Australian infrastructure services firm Ventia took key systems offline over the weekend of July 8 and 9, 2023 to contain a cyberattack, engaging external…
Veolia North America discloses ransomware attack on Municipal Water division
Veolia North America said a ransomware attack affected systems in part of its Municipal Water division. Back-end systems were taken offline, online bill…
VeriSource Services disclosed February 2024 breach of employee benefits data
Employee benefits administrator VeriSource Services detected unusual activity on February 28, 2024 and found files had been exfiltrated the previous day.
Cyberattack forces Russian discount chain Verny to take cash only across 1,000 stores
Russian discount grocery chain Verny, with more than 1,000 stores, was disrupted by a cyberattack in early June 2024 that disabled bank card processing…
Vesuvius plc shut down systems after cyber incident at steel industry supplier
Vesuvius plc, a London listed manufacturer of ceramics used by steelmakers, disclosed on 6 February 2023 that it was managing a cyber incident involving…
Veterans Health Administration notifies 2,302 veterans after vendor attack
The US Veterans Health Administration notified 2,302 veterans in November 2024 that names, medical record details and Social Security numbers may have been…
VF Corporation reported a ransomware attack in one of the first SEC cyber filings
VF Corporation, owner of Vans and The North Face, told the SEC that attackers encrypted parts of its IT systems on December 13, 2023 and stole personal data…
Medusa ransomware gang demanded US$700,000 from Victoria Racing Club
The Medusa ransomware gang claimed 128.1GB of data from Australia's Victoria Racing Club and demanded US$700,000 to delete it.
Victoria's Secret takes down U.S. website after security incident
Victoria's Secret took its U.S. e-commerce site and some in store services offline in late May 2025 after what it called a security incident.
Ransomware attack took Vietnam Post's delivery systems offline
Ransomware hit Vietnam Post at about 3 a.m. on June 4, 2024, taking down its vnpost.vn websites and delivery applications.
Cyberattack knocked the Virginia Attorney General's office offline
Virginia's Office of the Attorney General detected a cyberattack early on February 12, 2025 and shut systems down the same day.
Virginia Medicaid agency reports breach affecting 1.2 million people
Virginia's Medicaid agency, the Department of Medical Assistance Services, told the HHS Office for Civil Rights on 18 September 2023 that a hacking incident…
Virginia’s Government IT Agency Hit By Ransomware
Hackers deployed a ransomware attack on the IT agency that serves Virginia’s legislature. The Virginia Division of Legislative Automated Systems is…
KillSec claims data theft from Australian home builder Vogue Homes
The KillSec ransomware gang listed Sydney home builder Vogue Homes on its darknet leak site on 23 November 2024, claiming to hold customer names, contact…
Volex said attackers accessed IT systems and data at international sites
Volex, the UK listed maker of power cords and cable assemblies, disclosed on October 9, 2023 that attackers had reached some of its IT systems and data across…
Millions Possible Affected By Walgreen’s Website Error
Millions of people that registered to take a COVID-19 test at Walgreen’s may be at risk of data exposure due to what appears to have been an oversight in…
Walsall Healthcare NHS Trust contains cyberattack on its network
Walsall Healthcare NHS Trust, which runs Walsall Manor Hospital, disclosed on 23 March 2023 that it had contained a cyberattack detected on the evening of 10…
Ward Transport and Logistics notified victims of March 2024 network breach
Ward Transport and Logistics began notifying individuals on October 2, 2024 about a breach traced to an attack on its network in early March 2024.
Washington County, Pennsylvania paid a $350,000 ransom after January cyberattack
Washington County, Pennsylvania authorized up to $400,000 and sent $346,687 to ransomware operators in February 2024 to unlock a network paralyzed since…
Cyberattack disrupts Washington State Department of Transportation services
A November 2023 cyberattack knocked out the Washington State Department of Transportation's travel map, traffic cameras, ferry vessel feeds, mountain pass…
Rhysida ransomware group put Washington Times data up for auction
In August 2024 the Rhysida ransomware group added The Washington Times to its dark web leak site and opened a seven-day auction for data it claimed to have…
Medusa gang listed nonprofit Water for People with a $300,000 demand
Water for People, a Colorado-based nonprofit developing water and sanitation services in under-resourced countries, was named on the Medusa ransomware gang's…
$2.1 Million Lost In Phishing Attack for Waterloo Brewing
Waterloo Brewing hit with massive financial toll in spear phishing attack as scammers take $2.1 million in fraudulent wire transfers.
Cyberattack shut down Wayne County, Michigan websites and county offices
A cyberattack that began on Wednesday, October 2, 2024 knocked Wayne County, Michigan's websites offline and disrupted the sheriff's office, treasurer and…
World Baseball Softball Confederation exposed 4,600 passport scans in open AWS bucket
Cybernews researchers found a misconfigured Amazon Web Services bucket belonging to the World Baseball Softball Confederation holding nearly 48,000 files…
Webster Bank customer data exposed in Guardian Analytics vendor breach
Webster Bank told Connecticut regulators that a breach at fraud detection vendor Guardian Analytics exposed data on 153,754 state customers, including Social…
Weee! confirmed a breach after order data for 1.1 million customers leaked
Grocery delivery service Weee! confirmed a breach in February 2023 after a threat actor using the name IntelBroker posted its customer data on a hacking forum.
Wells Fargo employee sent customer data to a personal account
Wells Fargo issued breach notification letters in April 2024 after an employee broke company policy by sending customer information, including names and…
Welltok MOVEit breach exposed data on 8.5 million US patients
Healthcare software vendor Welltok said data on 8.5 million US patients was stolen from its MOVEit Transfer server during the Clop extortion campaign.
Welsh Rugby Union investigated leak of supporters club member data
The Welsh Rugby Union opened an investigation in May 2024 after researchers found supporters club member records in a publicly accessible cloud storage bucket…
WeMystic left 13.3 million user records exposed in an open database
Researchers found that WeMystic, an astrology, numerology and tarot platform, left a passwordless MongoDB database exposed for at least five days in November…
West Lothian Council confirms school data stolen in Interlock ransomware attack
West Lothian Council confirmed the Interlock ransomware group stole and published data from its school education network in May 2025, including scanned…
Western Alliance Bank notifies 21,899 customers after Cleo file transfer breach
Western Alliance Bank told 21,899 customers their data was taken between October 12 and 24, 2024 after attackers exploited a zero-day in a vendor's Cleo file…
Western Digital network breach takes My Cloud services offline
Western Digital identified a network security incident on 26 March 2023 in which an unauthorized third party accessed its systems and took data.
Western Sydney University breach exposed records of 10,000 students
Western Sydney University told roughly 10,000 current and former students on April 15, 2025 that their data was accessed through one of its single sign-on…
WestJet investigates cyberattack affecting internal systems and app
Canada's second largest airline began investigating a cyberattack on June 13, 2025 that disrupted internal systems and login access to its website and mobile…
WH Smith said attackers stole current and former employee data
UK retailer WH Smith told the London Stock Exchange on March 2, 2023 that a cyberattack gave intruders illegal access to company data including current and…
Willow Pays left customer bill payment database open on the internet
A non password protected database belonging to bill payment fintech Willow Pays exposed 241,970 records, among them a spreadsheet listing 56,864 people as…
WinStar app customer data exposed by unsecured Dexiga database
Dexiga, the Nevada startup behind the My WinStar app, left a logging database of casino customer names, addresses, phone numbers and email addresses on the…
Wirral University Teaching Hospital NHS trust declares major incident after cyberattack
Wirral University Teaching Hospital NHS Foundation Trust declared a major incident in late November 2024 after detecting suspicious network activity.
WK Kellogg confirms employee data breach tied to Cleo file transfer flaws
WK Kellogg Co. disclosed in April 2025 that attackers reached servers running Cleo managed file transfer software on December 7, 2024, taking employee data.
WMCHealth diverted ambulances after a cyberattack on Hudson Valley hospitals
WMCHealth shut down all connected IT systems at HealthAlliance Hospital, Margaretville Hospital and Mountainside Residential Care Center on October 20, 2023…
Hacker claims WooCommerce data breach, Automattic denies its systems were hit
In April 2025 a BreachForums seller using the handle Satanic offered 4,432,120 records tied to sites running WooCommerce, naming NVIDIA, Texas.gov and NIST…
Ransomware sends Wood County, Ohio emergency dispatch back to pen and paper
Wood County, Ohio detected ransomware on its government network on December 9, 2024. The sheriff's computer aided dispatch system, the jail and Bowling Green…
Play ransomware attack on Swiss supplier Xplain reached federal government data
A late May 2023 ransomware attack on Xplain, a Swiss supplier of software to police, security and justice authorities, exposed operational data belonging to…
Yale New Haven Health breach exposed data on nearly 5.6 million patients
Yale New Haven Health System detected unusual IT activity on 8 March 2025 and later confirmed an unauthorised third party had copied patient data.
Yamaha Canada Music confirmed attack claimed by two ransomware gangs
Yamaha Canada Music confirmed in July 2023 that a cyberattack resulted in unauthorized access and data theft, and offered credit monitoring to those at risk.
Qilin ransomware group claims attack on auto supplier Yanfeng
The Qilin ransomware group, formerly Agenda, claimed an attack on Chinese interiors supplier Yanfeng in late November 2023, publishing samples including NDAs…
Ransomware forced Micronesia's Yap health department offline
The Department of Health Services for Yap, one of four states in the Federated States of Micronesia, detected ransomware on March 11, 2025 and took its whole…
Yellow Pages Canada confirmed Black Basta attack after data leak
Yellow Pages Group confirmed a cyberattack after the Black Basta ransomware gang leaked stolen files, including passport and licence scans, tax records with…
Ransomware attack takes South Korean ticketing platform Yes24 offline
A ransomware attack knocked Yes24, South Korea's dominant online book retailer and event ticketing platform, offline from June 9, 2025.
Young Consulting breach exposed data on 954,177 people, including Blue Shield members
Georgia software provider Young Consulting said attackers were in its network between 10 and 13 April 2024 and copied files on 954,177 people, including…
Youth Eastside Services breach exposed mental health client records in Washington
Youth Eastside Services, a Bellevue, Washington nonprofit providing youth mental health and substance use care, said files were accessed and exfiltrated on…
Yves Rocher Data Leak Impacts 2.5 Million Canadians
Globally operated cosmetics company, Yves Rocher, experienced a large scale data leak after an unprotected database exposed the personal information of…
YX International left SMS database of one-time passcodes exposed online
TechCrunch reported on February 29, 2024 that SMS routing firm YX International had left an internal database reachable from the internet with no password.
Zacks Investment Research Confirms Data Breach Affecting 280,000 Customers
Stay informed about the recent data breach at Zacks Investment Research affecting 280,000 customers. Learn about the type of information that may have been…
LockBit attack on UK fencing maker Zaun exposed military site documents
UK fencing systems manufacturer Zaun confirmed in September 2023 that the LockBit ransomware group had breached it through a legacy Windows 7 machine in…
Mad Liberator leaked ZB Financial Holdings data after Zimbabwe group refused ransom
The Mad Liberator extortion group listed Zimbabwe's ZB Financial Holdings in July 2024 and published customer, employee and operational records dating back to…
MOVEit zero-day at payroll provider Zellis exposed staff data at BA, BBC and Boots
UK payroll provider Zellis was compromised through CVE-2023-34362, a zero-day flaw in Progress Software's MOVEit Transfer, exposing employee data at British…
ZeroedIn Technologies breach exposed data of about 2 million Dollar Tree workers
Workforce analytics provider ZeroedIn Technologies said an intruder accessed its network on August 7 and 8, 2023, exposing names, dates of birth and Social…
Zoomcar discloses breach affecting 8.4 million users
Indian car sharing company Zoomcar said it identified an intrusion on June 9, 2025 after a threat actor emailed employees claiming to hold stolen data.
ZooTampa disclosed cyberattack claimed by BlackSuit ransomware group
ZooTampa at Lowry Park disclosed a cyberattack claimed by the BlackSuit ransomware group, an apparent offshoot of Royal, in July 2023.
Talk to us
Data protection and cybersecurity for MSPs. Recovery you can prove.