CISA/US Government Agency
Unnamed U.S. department breached through Cisco vulnerability; FIRESTARTER backdoor provided persistent access through March 2026
Law firms hold the most sensitive corporate data outside the client itself — M&A, IP, litigation, settlements. They are systematically targeted by both criminal and state actors. Below is every law-firm breach LeakTrace has indexed.
Unnamed U.S. department breached through Cisco vulnerability; FIRESTARTER backdoor provided persistent access through March 2026
Breached through Cisco vulnerability; FIRESTARTER backdoor allowed unauthorized access through March
Ransomware attack affected 169,000 patients across two facilities
Data breach exposed personal records of approximately 865,000 users (Russian VPN provider)
22 million user records exposed including emails, passwords, and banking data
Data breach compromised personal and health information of patients
Ransomware attack exposed 672,000-788,000 records; names, addresses, card numbers stolen
Alleged data breach affecting customer data
500,000 Britons' private health records offered for sale on Chinese website; de-identified data advertised
Insider incident data breach with limited impact
Cyberattack exposed 19 million records linked to personal identity data
Cyberattack exposed 19 million records from France's identity agency with personal data linked to ID systems
Data leak exposed hundreds of thousands of records and contact info for celebrities
24 billion exposed records including usernames, passwords, URLs from infostealer malware
CISA agency breached through Cisco vulnerability; FIRESTARTER backdoor allowed persistent access through March 2026
Data breach occurring April 21, 2026 affecting customers with personal information exposed
OAuth supply chain compromise exposed trusted third-party apps and platform environment variables
Confidential health records exposed online and advertised for sale on Chinese website
Data breach affected 46,666 patients, exposing personal and health records
Australian travel agency customer records compromised; threat actor claimed data on underground hacking forums
Senior care provider affected by ransomware attack exposing patient data
Breach through compromised Anodot Snowflake access by ShinyHunters group; 165 organizations affected in cascading attack.
19 million records exposed in cyberattack on France's national identity agency
ShinyHunters breached Rockstar Games via Snowflake; 165 organizations affected in supply chain attack