Live disclosure tracker · updated continuously

2026 Data Breaches Year-to-Date

2026 continues the year-over-year growth trend in confirmed disclosures. The list below updates as new breaches are reported by Verizon DBIR partners and major security news outlets.

98B+
Records Exposed
460
Incidents
94+
Countries
+104%
Breach Velocity YoY
Browse by sector
All breaches Healthcare Finance Government Technology Retail Education Legal
Browse by year
2024 2025 2026

2026 Data Breaches Year-to-Date (460 indexed)

medium · government · Apr 11, 2026

Censys finds 5,219 devices exposed

Censys researchers found 5,219 exposed Rockwell PLCs online, mostly in the U.S., urging defenders to secure or disconnect them. On April 7, 2026, U.S. agencies, including FBI, CISA, and NSA, warned of Iran-linked APTs ex

View incident → Original disclosure Indexed 18 hours, 50 minutes ago
critical · healthcare · Apr 11, 2026

Brockton Hospital still dealing

Yesterday, Bryan Lambert reported:  Health care providers at Brockton Hospital are preparing to work off paper, not computers, for the next two weeks as the health care hub deals with an ongoing cybersecurity incident. T

View incident → Original disclosure Indexed 18 hours, 50 minutes ago
medium · other · Apr 10, 2026

In Other News: Cyberattack

Other noteworthy stories that might have slipped under the radar: Jones Day hacked, Internet Bug Bounty program paused due to AI, new Mac stealer malware. The post In Other News: Cyberattack Stings Stryker, Windows Zero-

View incident → Original disclosure Indexed 1 day, 18 hours ago
high · other · Apr 10, 2026

Nearly 4,000 US industrial

The attack surface targeted by Iranian-linked hackers in cyberattacks against U.S. critical infrastructure networks includes thousands of Internet-exposed programmable logic controllers (PLCs) manufactured by Rockwell Au

View incident → Original disclosure Indexed 1 day, 18 hours ago
medium · finance · Apr 10, 2026

EngageLab SDK flaw opens door

A flaw in EngageLab SDK exposed up to 50M Android users, including 30M crypto wallets, letting apps bypass security and access private data. Microsoft researchers found a critical flaw in EngageSDK that lets apps bypass

View incident → Original disclosure Indexed 1 day, 18 hours ago
medium · government · Apr 10, 2026

UK says it

A Russian attack submarine and vessels from the country’s Main Directorate of Deep Sea Research (GUGI) were involved in what the UK Ministry of Defence called “nefarious activity over critical undersea infrastructure els

View incident → Original disclosure Indexed 1 day, 18 hours ago
critical · government · Apr 10, 2026

Hacker Unknown now known, named

German police have pinned a name to one of the world’s most notorious hackers. Danii Shchukin operated under the names of UNKN or Unknown and GandCrab and was, according to German police, the leader of one of the largest

View incident → Original disclosure Indexed 1 day, 18 hours ago
medium · tech · Apr 10, 2026

CPUID

Hackers gained access to an API for the CPUID project and changed the download links on the official website to serve malicious executables for the popular CPU-Z and HWMonitor tools. [...]

View incident → Original disclosure Indexed 1 day, 18 hours ago
medium · legal · Apr 10, 2026

Silent Ransom Group

Jones Day wasn’t the only big law firm to recently fall prey to threat actors variously known as Silent Ransom Group, Luna Moth, Chatty Spider, or UNC3753. DataBreaches will refer to them as the Silent Ransom Group

View incident → Original disclosure Indexed 1 day, 18 hours ago
medium · finance · Apr 9, 2026

EngageLab SDK Flaw Exposed 50M

Details have emerged about a now-patched security vulnerability in a widely used third-party Android software development kit (SDK) called EngageLab SDK that could have put millions of cryptocurrency walle

View incident → Original disclosure Indexed 2 days, 18 hours ago
medium · healthcare · Apr 9, 2026

Trump’s Personnel Agency Is

I posted the following article this morning over on PogoWasRight.org, but I have had so many people sending me links to stories about this news that I guess I should have posted it here, too, as a future data breach. by

View incident → Original disclosure Indexed 2 days, 18 hours ago
medium · finance · Apr 9, 2026

86% of businesses refused

Two firms recently told DataBreaches that about 30% or more of their clients pay ransom after a cyberattack. But you may get a different impression from other findings. The Actuary reports: Initial ransom demands by cybe

View incident → Original disclosure Indexed 2 days, 18 hours ago
medium · government · Apr 9, 2026

A hacker has allegedly

Isaac Yee reports: A hacker has allegedly stolen a massive trove of sensitive data – including highly classified defense documents and missile schematics – from a state-run Chinese supercomputer in what could potentially

View incident → Original disclosure Indexed 2 days, 18 hours ago
critical · healthcare · Apr 9, 2026

Weak at the seams

Before I ever held a security title, I was a software engineer implementing vertically integrated automation systems for industrial manufacturing, warehouse-scale conveyor networks, robotic material handling, physical in

View incident → Original disclosure Indexed 2 days, 18 hours ago
critical · finance · Apr 9, 2026

Lotte Card given notice

Yonhap News reports: Lotte Card has been notified by the financial watchdog that it is liable for around 5 billion won ($3.38 million) in financial penalties and a business suspension of over four months over a massive d

View incident → Original disclosure Indexed 2 days, 18 hours ago