Live disclosure tracker · updated continuously

Technology & Software Data Breaches

SaaS platforms, cloud providers, developer tooling, and app-layer infrastructure are concentrated attack surfaces. One tech vendor breach can expose thousands of downstream customers. Below is every tech-sector breach LeakTrace has indexed.

98B+
Records Exposed
1270
Incidents
94+
Countries
+104%
Breach Velocity YoY
Browse by sector
All breaches Healthcare Finance Government Technology Retail Education Legal
Browse by year
2024 2025 2026

Technology & Software Data Breaches (1270 indexed)

high · tech · Feb 17, 2026

Google Chromium

Google Chromium CSS Use-After-Free Vulnerability — Google Chromium CSS contains a use-after-free vulnerability that could allow a remote attacker to potentially exploit heap corruption via a crafted HTML page. This vulne

View incident → Original disclosure Indexed 3 months, 1 week ago
high · tech · Feb 17, 2026

Microsoft Windows

Microsoft Windows Video ActiveX Control Remote Code Execution Vulnerability — Microsoft Windows Video ActiveX Control contains a remote code execution vulnerability. An attacker could exploit the vulnerability by constr

View incident → Original disclosure Indexed 3 months, 1 week ago
high · tech · Feb 12, 2026

Microsoft Configuration Manager

Microsoft Configuration Manager SQL Injection Vulnerability — Microsoft Configuration Manager contains an SQL injection vulnerability. An unauthenticated attacker could exploit this vulnerability by sending specially cra

View incident → Original disclosure Indexed 3 months, 2 weeks ago
high · tech · Feb 12, 2026

Apple Multiple Products

Apple Multiple Buffer Overflow Vulnerability — Apple iOS, macOS, tvOS, watchOS, and visionOS contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow an attacker w

View incident → Original disclosure Indexed 3 months, 2 weeks ago
high · tech · Feb 12, 2026

Notepad++ Notepad++

Notepad++ Download of Code Without Integrity Check Vulnerability — Notepad++ when using the WinGUp updater, contains a download of code without integrity check vulnerability that could allow an attacker to intercept or r

View incident → Original disclosure Indexed 3 months, 2 weeks ago
high · tech · Feb 12, 2026

SolarWinds Web Help Desk

SolarWinds Web Help Desk Security Control Bypass Vulnerability — SolarWinds Web Help Desk contains a security control bypass vulnerability that could allow an unauthenticated attacker to gain access to certain restricted

View incident → Original disclosure Indexed 3 months, 2 weeks ago
high · tech · Feb 10, 2026

Microsoft Windows

Microsoft MSHTML Framework Protection Mechanism Failure Vulnerability — Microsoft MSHTML Framework contains a protection mechanism failure vulnerability that could allow an unauthorized attacker to bypass a security feat

View incident → Original disclosure Indexed 3 months, 2 weeks ago
high · tech · Feb 10, 2026

Microsoft Office

Microsoft Office Word Reliance on Untrusted Inputs in a Security Decision Vulnerability — Microsoft Office Word contains a reliance on untrusted inputs in a security decision vulnerability that could allow an authorized

View incident → Original disclosure Indexed 3 months, 2 weeks ago
high · tech · Feb 10, 2026

Microsoft Windows

Microsoft Windows NULL Pointer Dereference Vulnerability — Microsoft Windows Remote Access Connection Manager contains a NULL pointer dereference that could allow an unauthorized attacker to deny service locally.

View incident → Original disclosure Indexed 3 months, 2 weeks ago
high · tech · Feb 10, 2026

Microsoft Windows

Microsoft Windows Improper Privilege Management Vulnerability — Microsoft Windows Remote Desktop Services contains an improper privilege management vulnerability that could allow an authorized attacker to elevate privile

View incident → Original disclosure Indexed 3 months, 2 weeks ago
high · tech · Feb 10, 2026

Microsoft Windows

Microsoft Windows Shell Protection Mechanism Failure Vulnerability — Microsoft Windows Shell contains a protection mechanism failure vulnerability that could allow an unauthorized attacker to bypass a security feature ov

View incident → Original disclosure Indexed 3 months, 2 weeks ago
high · tech · Feb 10, 2026

Microsoft Windows

Microsoft Windows Type Confusion Vulnerability — Microsoft Desktop Windows Manager contains a type confusion vulnerability that could allow an authorized attacker to elevate privileges locally.

View incident → Original disclosure Indexed 3 months, 2 weeks ago