Canada Life
Threat actor claims 5.5 million records for sale including customer, employee, and corporate data
Law firms hold the most sensitive corporate data outside the client itself — M&A, IP, litigation, settlements. They are systematically targeted by both criminal and state actors. Below is every law-firm breach LeakTrace has indexed.
Threat actor claims 5.5 million records for sale including customer, employee, and corporate data
Cyberattack stole data tied to approximately 3,300 user accounts at Colombian state energy company
Data breach tied to Oracle EBS vulnerability; exposed HR and operational data from company systems
Two ransomware attacks in 2023 and 2024 affecting 3.2 million patients, settled class-action for $14M
Threat actor stole vast trove of sensitive data from consulting giant in cyberattack
Names, addresses, SSNs, and financial information stolen from third-party platform
Exposed credentials from info-stealing malware and previous attacks led to series of attacks against Snowflake database customers
Data breach exposed all customers' names, email addresses, phone numbers, and physical addresses
Cyber incident affecting medical device company; investigating data breach affecting patient information
Unauthorized access to IT environment exposed PHI of 3.4 million individuals
Ransomware attack; hackers stole data and later confirmed deletion
Dec 2024 cyberattack exposed student and staff data from thousands of schools
Data breach exposed 1,525 records including SSNs and medical records (PHI/PII)
Unprotected database exposed 666,000 records including celebrity contact data without password or encryption
2024 cyberattack exposing sensitive health and insurance data from millions of patients
Over 11 million gaming account credentials exposed in 2024 data leaks
ShinyHunters claimed hacking Metabase, exploiting zero-day to access connected databases
Supply chain attack: LiteLLM compromised through Trivy hack, distributed information-stealing malware to 2,500+ organizations
Cyberattack in Dec 2024 exposed student and staff data from thousands of schools
2024 ransomware attack and data breach affecting customers
2018 data breach; EU privacy regulator fined Meta 251 million euros for violations
5.67 million customer records exposed via vishing attack including personal and travel information
Customer records allegedly breached; threat actor claims on underground forums
Customer records and AI model training data exposed; notification delays reported