ASOS confirmed attackers used credentials obtained outside the company to access customer accounts containing personal information and limited payment card details.
Researchers say a rogue ransomware affiliate is posing as a recovery service to approach victims privately and demand up to $60,000.
ShinyHunters has issued an Aug. 24 deadline to BOK Financial, NovoCure and a partially redacted Cyrus listing in its latest breach claims.
SickKids confirmed a third-party software vulnerability exposed employee information, with former staff, affiliated organizations and job applicants also potentially affected.
A cybercrime forum listing claims 486GB of Kimber America data was stolen, including customer information, firearm records, invoices, and partner documents.
U.S. agencies say Medusa ransomware has impacted more than 500 critical infrastructure victims while rapidly exploiting vulnerabilities and expanding its attack techniques.
An alleged SMS-XBomber database leak exposes 2,014 records containing plaintext passwords, account details and phone numbers reportedly targeted through the tool.
A threat actor claims to have leaked a WorkL database containing user accounts, company records, device information, password hashes and geolocation data.
ShinyHunters has posted a final warning claiming Logitech and Streamlabs have until August 21 to respond before an alleged data leak.
Pokémon Center is notifying UK and Germany customers that personal and order information was exposed in the CEVA Logistics cyberattack that also disrupted warehouse operations.
SafePal confirmed that an order-tracking authorization flaw exposed personal and purchase information belonging to approximately 39,798 customers.
Help support breach monitoring, investigations, infrastructure, and reporting.
Support the site →