Live disclosure tracker · updated continuously

Technology & Software Data Breaches

SaaS platforms, cloud providers, developer tooling, and app-layer infrastructure are concentrated attack surfaces. One tech vendor breach can expose thousands of downstream customers. Below is every tech-sector breach LeakTrace has indexed.

98B+
Records Exposed
1270
Incidents
94+
Countries
+104%
Breach Velocity YoY
Browse by sector
All breaches Healthcare Finance Government Technology Retail Education Legal
Browse by year
2024 2025 2026

Technology & Software Data Breaches (1270 indexed)

high · tech · Mar 5, 2026

Apple Multiple Products

Apple Multiple products Use-After-Free Vulnerability — Apple macOS, iOS, iPadOS, and Safari 16.6 contain a use-after-free vulnerability due to the processing of maliciously crafted web content that may lead to memory cor

View incident → Original disclosure Indexed 2 months, 3 weeks ago
high · tech · Mar 5, 2026

Apple Multiple Products

Apple Multiple Products Integer Overflow or Wraparound Vulnerability — Apple tvOS, macOS, Safari, iPadOS and watchOS contain an integer overflow or wraparound vulnerability due to the processing of maliciously crafted we

View incident → Original disclosure Indexed 2 months, 3 weeks ago
high · tech · Mar 5, 2026

Hikvision Multiple Products

Hikvision Multiple Products Improper Authentication Vulnerability — Multiple Hikvision products contain an improper authentication vulnerability that could allow a malicious user to escalate privileges on the system and

View incident → Original disclosure Indexed 2 months, 3 weeks ago
high · tech · Mar 5, 2026

Apple iOS and iPadOS

Apple iOS and iPadOS Use-After-Free Vulnerability — Apple iOS and iPadOS contain a use-after-free vulnerability. An app may be able to execute arbitrary code with kernel privileges.

View incident → Original disclosure Indexed 2 months, 3 weeks ago
high · tech · Mar 3, 2026

Broadcom VMware Aria Operations

Broadcom VMware Aria Operations Command Injection Vulnerability — Broadcom VMware Aria Operations formerly known as vRealize Operations (vROps) contains a command injection vulnerability that allows an unauthenticated at

View incident → Original disclosure Indexed 2 months, 3 weeks ago
medium · tech · Mar 2, 2026

Lovora

495,556 records exposed — Display names, Email addresses, Profile photos

View incident → Indexed 2 months, 3 weeks ago
high · tech · Feb 25, 2026

Cisco SD-WAN

Cisco SD-WAN Path Traversal Vulnerability — Cisco SD-WAN CLI contains a path traversal vulnerability that could allow an authenticated local attacker to gain elevated privileges via improper access controls on commands w

high · tech · Feb 24, 2026

Soliton Systems K.K FileZen

Soliton Systems K.K FileZen OS Command Injection Vulnerability — Soliton Systems K.K FileZen contains an OS command injection vulnerability when an user logs-in to the affected product and sends a specially crafted HTTP

high · tech · Feb 20, 2026

Roundcube Webmail

RoundCube Webmail Deserialization of Untrusted Data Vulnerability — RoundCube Webmail contains a deserialization of untrusted data vulnerability that allows remote code execution by authenticated users because the _from

View incident → Original disclosure Indexed 3 months, 1 week ago
high · tech · Feb 20, 2026

Roundcube Webmail

RoundCube Webmail Cross-site Scripting Vulnerability — RoundCube Webmail contains a cross-site scripting vulnerability via the animate tag in an SVG document.

View incident → Original disclosure Indexed 3 months, 1 week ago
high · tech · Feb 18, 2026

GitLab GitLab

GitLab Server-Side Request Forgery (SSRF) Vulnerability — GitLab contains a server-side request forgery (SSRF) vulnerability when requests to the internal network for webhooks are enabled.

View incident → Original disclosure Indexed 3 months, 1 week ago