Cyber attack
Cyber attack exposed approximately 607,000 records
Universities, K-12 districts, and ed-tech vendors hold massive student-record databases that attract identity-theft operations and ransomware groups. Below is every education-sector breach LeakTrace has indexed.
Cyber attack exposed approximately 607,000 records
Massive data breach involving customer data theft and extortion
Cyber-attack exposed medical records including Medicare numbers and pathology results
31K corporate beneficiary records exposed
EVO Banco data breach via API vulnerability exposed financial and identity data of 1.27 million individuals
Officer PII and justice partner emails exposed
Initially calling itself BlackFile, the group has expanded operations to the Redact, Pink, Helix, and Falcon brands. The post Vishing Extortion Group UNC6671 Rebrands After Making Millions appeared first on SecurityWeek.
The club said Thursday that it had already restored its IT environment from clean backups, allowing operations to continue normally. It added that its ticketing platform and online store were not affected and remain full
PortSwigger says HTTP Terminator, an artificial intelligence (AI)-assisted research system built by James Kettle, generated and proved new HTTP desynchronization techniques after exploring 30,000 candidate attack vectors
24B stolen credential records publicly exposed
On March 24, 2026, developers building AI applications with LiteLLM — a Python package with 95 million monthly downloads — unknowingly installed malicious code. A threat actor group known as TeamPCP had compromised the P
62M records exposed to federal regulators
10,869,543 records exposed — Dates of birth, Email addresses, Genders, Names and 3 more
BlackFile has rebranded as Redact after an alleged affiliate hijack, with Google linking the group to ongoing vishing and extortion campaigns
Thousands of civil servants passwords exposed since early 2024, including White House credentials
Progress LoadMaster Command Injection Vulnerability — Progress LoadMaster contains a command injection vulnerability that allows an un-authenticated attacker to execute arbitrary commands on the LoadMaster appliance by e
Breach involving outsourcer fired HR employees investigating data theft; suspect retained data for 10,000+ customers
Canadian hacker pleaded guilty to hacking data storage platform; 165 breaches resulted, 100M+ people affected
Hackers exploited Microsoft SharePoint vulnerabilities to breach servers and compromise 200 accounts
Hackers used social engineering to steal corporate data from three employees
Police and government contacts published on dark web
Nearly 1 petabyte stolen in extortion attack