Fortinet FortiClient EMS
Fortinet FortiClient EMS SQL Injection Vulnerability — Fortinet FortiClient EMS contains a SQL injection vulnerability that may allow an unauthenticated attacker to execute unauthorized code or commands via specifically
Law firms hold the most sensitive corporate data outside the client itself — M&A, IP, litigation, settlements. They are systematically targeted by both criminal and state actors. Below is every law-firm breach LeakTrace has indexed.
Fortinet FortiClient EMS SQL Injection Vulnerability — Fortinet FortiClient EMS contains a SQL injection vulnerability that may allow an unauthenticated attacker to execute unauthorized code or commands via specifically
1,736,520 records exposed — Email addresses, Names, Phone numbers, Physical addresses and 1 more
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability — Ivanti Endpoint Manager Mobile (EPMM) contains a code injection vulnerability that could allow attackers to achieve unauthenticated remote code executi
106,271 records exposed — Email addresses, Social media profiles
291,739 records exposed — Auth tokens, Avatars, Email addresses, Names and 2 more
1,195,684 records exposed — Email addresses
TrueConf Client Download of Code Without Integrity Check Vulnerability — TrueConf Client contains a download of code without integrity check vulnerability. An attacker who is able to influence the update delivery path ca
165 organizations breached via compromised Snowflake credentials; ShinyHunters exploited Anodot access
Employee unlawfully accessed customer data over two years; insider threat breach
Cybercriminals breached systems and stole limited set of customer and prospective customer data
Employee unlawfully accessed customer data over two years; €31.8m fine for breach transparency failure
Breach exposed legal emails, flight data, and banking details; data claimed on hacker forums
165 organizations breached via Snowflake platform by ShinyHunters through compromised Anodot access
Alleged data breach involving sensitive banking and corporate information
Cyberattack exposed 19 million personal identity records including government data
Breached through Cisco vulnerability; FIRESTARTER backdoor allowed unauthorized access through March
Data breach via compromise of third-party vendor file-transfer system
Ransomware attack with data stolen; hackers confirmed data deletion
Unnamed U.S. department breached through Cisco vulnerability; FIRESTARTER backdoor provided persistent access through March 2026
Cyberattack exposed 19 million records containing personal data linked to national identity
22 million user records exposed including emails, passwords, and banking data
102,215 Brazilian health surveillance records leaked including IDs and tax data
Unnamed U.S. department breached through Cisco vulnerability; FIRESTARTER backdoor allowed persistent access through March 2026
Breach through compromised Anodot Snowflake access by ShinyHunters group; 165 organizations affected in cascading attack.