Province of Quebec (Revenu)
670K taxpayer records exposed via compromised e-filing integration at provincial revenue agency
Every confirmed data breach we've indexed across 4490+ incidents from healthcare, finance, technology, government, retail, and education. Sourced from Verizon DBIR, public disclosure feeds, and major security news outlets. Updated automatically.
670K taxpayer records exposed via compromised e-filing integration at provincial revenue agency
RoundCube Webmail Cross-site Scripting Vulnerability — RoundCube Webmail contains a cross-site scripting vulnerability via the animate tag in an SVG document.
4.8M wiki pages from enterprise customers exposed via critical authentication bypass
Sensitive court transcripts compromised after Indian subcontractor breach — ignored warnings
640K customer billing records exposed via compromised metering data system
340K student records including visa and financial information exposed in targeted attack
967,178 records exposed — Dates of birth, Email addresses, Names, Phone numbers and 1 more
3.2M patient health records from interprovincial data exchange compromised
GitLab Server-Side Request Forgery (SSRF) Vulnerability — GitLab contains a server-side request forgery (SSRF) vulnerability when requests to the internal network for webhooks are enabled.
815K customer records stolen from third-party licensing partner — second breach in a year
1.2M customer records compromised via third-party mortgage processing vendor
Dell RecoverPoint for Virtual Machines (RP4VMs) Use of Hard-coded Credentials Vulnerability — Dell RecoverPoint for Virtual Machines (RP4VMs) contains an use of hard-coded credentials vulnerability that could allow an un
510K cross-border dispute records exposed via compromised document review platform
Searchlight Cyber reports a 30% annual increase in ransomware victim numbers in 2025
280K employee and defense contract records from engine division exposed in supply chain attack
TeamT5 ThreatSonar Anti-Ransomware Unrestricted Upload of File with Dangerous Type Vulnerability — TeamT5 ThreatSonar Anti-Ransomware contains an unrestricted upload of file with dangerous type vulnerability. ThreatSonar
540K defense contractor employee records and project data accessed over multi-year intrusion
Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery Vulnerability — Synacor Zimbra Collaboration Suite (ZCS) contains a server-side request forgery vulnerability if WebEx zimlet installed and zimlet JSP
Unit 42 researchers observed a low-skilled threat actor using an LLM to script a professional extortion strategy, complete with deadlines and pressure tactics
Hudson Rock has warned OpenClaw users that infostealers are targeting their configuration files
581,877 records exposed — Device information, Email addresses, IP addresses, Names and 4 more
Microsoft Windows Video ActiveX Control Remote Code Execution Vulnerability — Microsoft Windows Video ActiveX Control contains a remote code execution vulnerability. An attacker could exploit the vulnerability by constr
Google Chromium CSS Use-After-Free Vulnerability — Google Chromium CSS contains a use-after-free vulnerability that could allow a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulne
780K international health insurance member records exposed via insider data theft