Every weekly intelligence briefing the desk has published, in full. Breach disclosures, credential exposures, and identity threat events across North America.
Six major North American breaches disclosed in 2026 span education, healthcare, financial services, and utilities, with claimed record-setting volumes affecting millions. Recent incidents reveal supply-chain exposure and ransomware persistence as dominant attack vectors.
Six major breaches have struck North American organizations across healthcare, education, and telecom sectors in 2026. Combined impact exceeds 65 million records, with credential theft and ransomware as primary attack vectors.
Major education, healthcare, and infrastructure breaches dominate 2026 threat landscape. Instructure Canvas suffered the largest education breach on record, while NYC Health+Hospitals and Foxconn manufacturing revealed persistent vulnerabilities in critical supply chains.
Five major verified breaches impacting North Americans in 2024-2026, ranging from 280,000 to 192.7 million individuals. Mega-breaches dominate the landscape, with Instructure's Canvas LMS, Change Healthcare, and 700Credit leading by volume and cascading impact.
North America experienced six major data breaches in the past 12 months spanning healthcare, retail, automotive, and employee records. The Canvas LMS platform, NYC Health + Hospitals, and Canadian Tire stand out as the largest by record count.
Six major 2026 breaches exposed over 300 million personal records across North America, from education platforms and telecommunications giants to government systems, driven primarily by credential theft and third-party compromises. Attackers focused on voice phishing and vendor access rather than sophisticated exploits.
Six major data breaches impacted North Americans in 2026, exposing hundreds of millions of records across education, telecommunications, government, legal, and manufacturing sectors. Breaches ranged from credential theft and social engineering to wiper attacks and ransomware, with impacts spanning educational institutions, government agencies, healthcare manufacturers, and critical infrastructure.
Six critical breaches in 2026 exposed millions of North Americans across education, telecommunications, healthcare, cruise lines, insurance oversight, and utilities sectors. Credential compromise and social engineering emerged as the dominant attack vectors, with ransom demands and extortion campaigns marking a shift toward organized data-theft operations.
Major 2026 breaches affecting North America expose hundreds of millions of records across healthcare, education, financial, retail and telecommunications sectors. ShinyHunters emerges as prolific threat actor targeting cloud platforms and stealing credentials at scale.
Six major 2026 data breaches impacted millions of North Americans, including Canadian financial regulators and educators, U.S. healthcare systems, and global pharmaceutical suppliers. Attacks exploited phishing, third-party vendors, and social engineering to exfiltrate sensitive personal data ranging from medical records to investment details.
Six critical data breaches hit North America in 2026, spanning education, healthcare, and retail. Instructure's Canvas suffered the largest education-sector breach affecting 275 million users globally, while NYC Health and Hospitals exposed 1.8 million patients' data including biometrics.
Six significant data breaches in 2026 exposed millions of North American records across financial services, retail, education, and healthcare sectors. Credential theft via social engineering and voice phishing remained the primary attack vector.
Six major data breaches impacted North American organizations in 2026, ranging from educational platforms to retail and telecommunications. The attacks exploited social engineering, misconfigured systems, and third-party vulnerabilities affecting hundreds of millions of users and customers.
Six major 2026 data breaches targeted North Americans, exposing millions of personal and financial records across finance, technology, and retail sectors. Third-party vendor compromises and credential theft emerged as the dominant attack vectors across all incidents.
Six critical 2026 breaches spanning North America exposed millions of records through employee credential theft, ransomware, and third-party vulnerabilities. Canadian financial institutions and U.S. educational platforms faced significant incidents while global platforms like Canvas impacted institutions worldwide.
2026 saw major data breaches across North America with Canvas affecting Canadian universities, ADT and McGraw-Hill impacting millions of US customers, and global incidents at French government agencies. Supply-chain compromises and credential-based attacks emerged as dominant threat vectors.
Educational infrastructure faces sustained compromise as ShinyHunters escalates Canvas platform attacks affecting millions of North American students. Real estate and healthcare sectors experience significant data exposures through third-party vulnerabilities and ransomware campaigns.
Six major data breaches across North America in 2026 exposed over 400 million records, with educational platforms, telecommunications, and financial institutions bearing the brunt of attacks. Critical infrastructure vulnerabilities and third-party compromises remained the primary entry points for threat actors.
2026 has seen escalating attacks across healthcare, telecoms, and financial sectors, with ransomware and credential theft as dominant vectors. Major incidents impacting North America include breaches at Canadian insurers, US healthcare systems, and global education platforms affecting millions.
Six major cybersecurity incidents impacted North America in 2026, affecting over 13 million individuals across financial services, healthcare, entertainment, and medical device sectors. Critical vulnerabilities in third-party vendor access and phishing attacks remain the primary attack vectors.
Six major data breaches hit North American and global targets in 2026, compromising over 26 million records across financial services, healthcare, and government sectors. Phishing attacks and third-party vendor compromises dominated the incident landscape, with several breaches involving months-long disclosure delays.
<cite index="13-4,13-5,2-14">Ransomware gangs claimed over 400 victims in the first three months of 2026, state-sponsored hackers wiped Fortune 500 companies using their own IT tools, and identity exposure reached 65.7 billion distinct records with a 23% increase year-over-year</cite>. <cite index="16-10,5-25">Healthcare infrastructure remains heavily targeted with multiple ransomware incidents while criminal phishing platforms rapidly reestablish operations after law enforcement takedowns</cite>.
North American threat activity surged with significant credential harvesting campaigns and third-party vendor compromises. <cite index="11-1,22-1">Major extortion groups targeted automotive and retail sectors through supply chain attacks and social engineering</cite>, while benefits administrators emerged as high-value targets for sustained data exfiltration.
This week witnessed significant identity broker exposures and healthcare ransomware disruptions across North America. Data broker vulnerabilities dominated the landscape, with massive credential databases exposed while healthcare infrastructure faced continued ransomware pressure.
Six major 2026 breaches across North America exposed tens of millions of records through healthcare system compromises, retail attacks, and ransomware incidents. Patient data, customer information, and sensitive government records remain the primary targets as attackers exploit third-party vulnerabilities and credential theft.
North American data breaches in 2026 have exposed tens of millions of records across healthcare, financial services, and government sectors. Recent disclosures reveal systematic vulnerabilities in third-party vendor management and credential-based attacks.
Six major data breaches impacted North American organizations in 2026, exposing millions of individuals to identity theft, financial fraud, and unauthorized access. Healthcare, financial services, and logistics sectors accounted for the largest incidents by volume of affected records.
Major healthcare and technology breaches exposed tens of millions of North Americans during 2026, with Conduent affecting over 25 million individuals across multiple states and triggering regulatory investigations. Critical credential and personal data thefts span financial services, retail, and telecommunications sectors.
Six major North American data breaches spanning early 2026, late 2025, and mid-2024 exposed millions of customer and employee records through credential theft, ransomware, and API vulnerabilities. Recent attacks underscore rising threats from vishing and insider threats targeting financial, retail, and technology sectors.
North America experienced significant data breaches across healthcare, finance, and retail sectors in early 2026, with millions of customer records exposed through vulnerable third-party systems and compromised credentials. Organizations are increasingly targeted through supply chain weaknesses and legacy infrastructure gaps.
Major incidents continue across North America with six significant breaches affecting millions of individuals across financial services, healthcare, and third-party vendors. Organizations face escalating risks from contractor access, vendor vulnerabilities, and credential theft.
Six major North American data breaches exposed over 11 million records across automotive, insurance, healthcare, legal, financial, and retail sectors. Common attack vectors include compromised third-party systems, stolen credentials, and social engineering.
Six major data breaches struck North American organizations across healthcare, hospitality, financial services, and retail sectors between January and March 2026. Credential theft, vendor vulnerabilities, and human error remain the primary attack vectors, affecting millions of individuals.
This week has seen a particularly severe escalation in North American data breaches, with major infrastructure and service providers falling victim to sophisticated attacks. The threat landscape shows attackers increasingly targeting business process outsourcing firms and critical service providers to maximize their impact across multiple client organizations.
A destructive cyberattack on medical device giant Stryker dominated headlines this week, linked to Iranian actors wiping 200,000+ systems globally. Meanwhile, several ransomware incidents affected critical infrastructure including healthcare and financial services.