Apple Multiple Products
Apple Multiple Products Integer Overflow or Wraparound Vulnerability — Apple tvOS, macOS, Safari, iPadOS and watchOS contain an integer overflow or wraparound vulnerability due to the processing of maliciously crafted we
2026 continues the year-over-year growth trend in confirmed disclosures. The list below updates as new breaches are reported by Verizon DBIR partners and major security news outlets.
Apple Multiple Products Integer Overflow or Wraparound Vulnerability — Apple tvOS, macOS, Safari, iPadOS and watchOS contain an integer overflow or wraparound vulnerability due to the processing of maliciously crafted we
280K semiconductor client records compromised
280K patient records stolen in network intrusion
A global operation has resulted in the takedown of popular cybercrime forum LeakBase
Hikvision Multiple Products Improper Authentication Vulnerability — Multiple Hikvision products contain an improper authentication vulnerability that could allow a malicious user to escalate privileges on the system and
1.1M flybuys loyalty member records stolen via compromised marketing platform
1.3M guest reservation records exposed via compromised property management vendor
2.7M member records exposed via compromised claims analytics vendor
Federal judges, DOJ attorneys, SEC staff data accessed — 118 .gov accounts compromised
Qualcomm Multiple Chipsets Memory Corruption Vulnerability — Multiple Qualcomm chipsets contain a memory corruption vulnerability while using alignments for memory allocation.
Broadcom VMware Aria Operations Command Injection Vulnerability — Broadcom VMware Aria Operations formerly known as vRealize Operations (vROps) contains a command injection vulnerability that allows an unauthenticated at
35K customer accounts compromised via credential-stuffing attack on checkout integration
670K employee and project records from energy division exposed via CL0P exploitation
Ariomex database reveals potential sanctions evasion and capital transfers tied to Iranian actors
712,904 records exposed — Email addresses, Usernames
22,874 records exposed — Email addresses, Partial dates of birth, Usernames
2.1M workspace messages and uploaded files exfiltrated from compromised enterprise workspace
495,556 records exposed — Display names, Email addresses, Profile photos
1,060,191 records exposed — AI prompts, Email addresses, Forum posts, Names
450K employee and operations records compromised
210K luxury retail customer records exposed
340K patient records compromised
280K customer and pipeline records exposed
780K customer records compromised in supply chain attack