ShinyHunters has allegedly published a 7.1 GB archive linked to Metabase without its usual countdown or any description of the purported contents.
Levi Strauss confirmed attackers used social engineering against 3 employees to access company-issued computers and exfiltrate corporate information.
A forum seller claims to possess more than 250,000 HCLTech employee records allegedly obtained from a compromised Azure tenant, though the claims remain unverified.
Unlimited Technology Systems disclosed that a cyberattack discovered in October 2025 ultimately affected more than 3.8 million individuals.
A threat actor claims a misconfigured Firebase database exposed analytics tied to nearly 200,000 FitandLean users, including body weight tracking and workout activity.
A threat actor claims a publicly accessible Firebase database exposed MyPhoto customer order information, production records, and employee data without authentication.
A threat actor claims to be selling an alleged Huckberry customer database containing nearly 386,000 records with names, addresses, emails, and phone numbers.
A threat actor claims to have leaked nearly 87,000 HVMN customer profiles containing personal information, subscription metadata, and masked payment details.
A threat actor has released databases allegedly tied to 12 websites, exposing customer accounts, password hashes, addresses, session metadata, and payment identifiers.
A credential-stealing worm spread through hundreds of npm packages by using stolen publisher tokens to automatically compromise additional projects and organizations.
Amgen disclosed a material cloud data breach after attackers stole patient protected health information and proprietary corporate data from third-party cloud environments.
Help support breach monitoring, investigations, infrastructure, and reporting.
Support the site →