Breach news
Reported breaches, what was taken, and how the intrusion started.
994 reports
Aflac Incorporated
Aflac discloses network intrusion tied to insurance sector campaign
Hacking InsuranceDisneyland Paris
Anubis group claimed 64 GB of Disneyland Paris files from a contractor
Third-Party Data Breach EntertainmentOxford City Council
Oxford City Council breach exposed 21 years of election worker records
Hacking GovernmentKrispy Kreme
Krispy Kreme breach exposed data on 161,676 people after 2024 attack
Ransomware Food & BeverageChain IQ
Chain IQ breach spilled contact data on more than 100,000 UBS employees
Hacking Business ServicesOcuco
Ocuco breach exposes health data of about 241,000 people
Ransomware Healthcare TechnologyWestJet
WestJet investigates cyberattack affecting internal systems and app
Hacking AirlineZoomcar Holdings, Inc.
Zoomcar discloses breach affecting 8.4 million users
Hacking TransportationYes24
Ransomware attack takes South Korean ticketing platform Yes24 offline
Ransomware E-commerce & TicketingErie Insurance
Erie Insurance confirms cyberattack behind multi-week outage
Hacking InsuranceUnited Natural Foods, Inc.
Cyberattack on United Natural Foods disrupts grocery distribution
Hacking Food DistributionEpisource
Episource breach exposed health records of more than 5.4 million people
Hacking HealthcareJackson Health System
Jackson Health System fires employee over five-year patient data snooping
Malicious Insider HealthcareOptima Tax Relief
Chaos ransomware group leaked 69 GB stolen from Optima Tax Relief
Ransomware Financial ServicesKiranaPro
KiranaPro blames former employee after AWS and GitHub data wipe
Malicious Insider RetailIllinois Department of Healthcare and Family Services
Illinois healthcare agency reports phishing breach affecting 933 people
Phishing GovernmentHM Revenue and Customs (HMRC)
HMRC says phishing fraud hit 100,000 tax accounts and cost 47 million pounds
Phishing GovernmentThe North Face (VF Outdoor)
The North Face discloses April credential stuffing attack on customer accounts
Credential Compromise RetailCity of Durant, Oklahoma
Ransomware attack disrupts services for the city of Durant, Oklahoma
Ransomware GovernmentCartier
Cartier tells clients names and email addresses were stolen in system breach
Hacking RetailMainStreet Bank (MainStreet Bancshares, Inc.)
MainStreet Bank customer card data exposed in third-party vendor breach
Third-Party Data Breach Financial ServicesMissouri Department of Conservation
Missouri Department of Conservation breach exposed employee health plan data
Hacking GovernmentDataPost
DataPost ransomware attack exposed data of 146 Income Insurance policyholders
Ransomware Business ServicesVictoria's Secret & Co.
Victoria's Secret takes down U.S. website after security incident
Hacking RetailCovenant Health
Covenant Health cyberattack disrupts hospitals in Maine and New Hampshire
Ransomware HealthcareLexisNexis Risk Solutions
LexisNexis Risk Solutions breach on GitHub exposed data of 364,000 people
Credential Compromise Business ServicesMathWorks
MathWorks confirms ransomware attack behind MATLAB service outages
Ransomware TechnologyTiffany & Co.
Tiffany & Co. discloses South Korean customer data breach at third-party platform
Third-Party Data Breach RetailAdidas
Adidas discloses customer data breach at third-party service provider
Third-Party Data Breach RetailWest Lothian Council
West Lothian Council confirms school data stolen in Interlock ransomware attack
Ransomware GovernmentCellcom
Cellcom confirms cyberattack behind week-long voice and text outage in Wisconsin
Hacking TelecommunicationsKettering Health
Interlock ransomware attack shuts down systems across Ohio's Kettering Health
Ransomware HealthcarePeter Green Chilled
Ransomware attack on Peter Green Chilled disrupts UK supermarket food supplies
Ransomware Transportation & LogisticsEffortel
Effortel breach exposes data of 70,000 Belgian mobile customers
Hacking TelecommunicationsServiceaide
Serviceaide database exposure hit 483,000 Catholic Health patients
Misconfiguration Information TechnologyMKA Accountants
Qilin ransomware gang lists Melbourne firm MKA Accountants as a victim
Ransomware Professional ServicesChristian Dior Couture
Christian Dior Couture confirms customer data breach affecting Asian shoppers
Phishing RetailCoinbase Global, Inc.
Coinbase says bribed overseas support agents leaked customer data
Malicious Insider Financial ServicesNova Scotia Power
Nova Scotia Power confirms theft of customer data in ransomware attack
Ransomware UtilitiesNucor Corporation
Nucor halts steel production at multiple sites after cyberattack
Hacking ManufacturingLegal Aid Agency
U.K. Legal Aid Agency warns providers of security incident on its online systems
Hacking GovernmentCity of Edinburgh Council
Edinburgh council resets school network passwords after phishing attack
Phishing EducationSouth African Airways
South African Airways says cyberattack disrupted website, app and internal systems
Hacking AviationMasimo Corporation
Masimo cyberattack slowed manufacturing at the medical device maker
Hacking Medical DevicesOettinger Getränke
German brewer Oettinger confirms cyberattack claimed by RansomHouse
Ransomware Food and BeverageGlobal Crossing Airlines (GlobalX)
Hacktivists breached deportation charter airline GlobalX and took flight manifests
Hacking AviationHarrods
Harrods restricted internet access after attempted intrusion on its systems
Hacking RetailTexas Health and Human Services Commission
Texas HHSC says employees improperly accessed data of about 94,000 people
Malicious Insider GovernmentCo-op Group
Co-op Group confirmed member data theft after DragonForce intrusion
Ransomware RetailKintetsu World Express
Kintetsu World Express confirmed ransomware attack disrupted its systems
Ransomware Shipping & LogisticsYale New Haven Health System
Yale New Haven Health breach exposed data on nearly 5.6 million patients
Hacking HealthcareBarnstable County Sheriff's Office
Insider breach at Barnstable County Sheriff's Office exposed employee records
Malicious Insider GovernmentMarks & Spencer
Marks and Spencer halted online orders after DragonForce ransomware attack
Ransomware RetailThe Hertz Corporation
Hertz confirmed customer data theft through the Cleo file transfer exploit
Third-Party Data Breach Travel & LeisureSensata Technologies
Sensata Technologies ransomware attack halts shipping and production
Ransomware ManufacturingWestern Sydney University
Western Sydney University breach exposed records of 10,000 students
Hacking EducationSK Group
Qilin ransomware gang claims 1TB theft from SK Group's U.S. arm
Ransomware ConglomerateBlue Shield of California
Blue Shield of California sent member health data to Google Ads by misconfiguration
Misconfiguration HealthcareOregon Department of Environmental Quality
Oregon environmental agency shuts down network after cyberattack
Ransomware GovernmentWooCommerce (Automattic)
Hacker claims WooCommerce data breach, Automattic denies its systems were hit
Third-Party Data Breach E-commerce SoftwareOffice of the Comptroller of the Currency
U.S. bank regulator OCC discloses year-long email system breach
Hacking GovernmentNASCAR
Medusa ransomware group claimed a NASCAR breach and demanded $4 million
Ransomware Sports & EntertainmentCaisse Nationale de Sécurité Sociale (CNSS), Morocco
Morocco's social security fund CNSS had data on nearly 2 million people leaked
Hacking GovernmentDBS Bank
DBS and Bank of China Singapore customer data exposed by vendor ransomware
Third-Party Data Breach Financial ServicesFall River Public Schools
Fall River Public Schools in Massachusetts hit by ransomware attack
Ransomware EducationAustralianSuper
AustralianSuper and rival funds hit by coordinated credential stuffing
Credential Compromise Pensions and Retirement SavingsWK Kellogg Co.
WK Kellogg confirms employee data breach tied to Cleo file transfer flaws
Supply Chain Attack Food and Beverage ManufacturingCentral Texas Pediatric Orthopedics
Central Texas Pediatric Orthopedics breach affected 140,000 patients
Hacking HealthcareState Bar of Texas
State Bar of Texas confirmed data theft after an attack claimed by INC Ransom
Ransomware Legal ServicesTwilio
Twilio denies SendGrid breach after hacker offers 848,000 records for sale
Hacking TechnologyRoyal Mail Group
Royal Mail data leaked after breach at supplier Spectos
Third-Party Data Breach Postal and LogisticsCity of Baltimore
City of Baltimore lost $1.5 million to a vendor impersonation scheme
Business Email Compromise GovernmentLower Sioux Indian Community
Ransomware attack disrupted Lower Sioux Indian Community casino and health services
Ransomware Tribal GovernmentSamsung Germany
Samsung Germany support tickets leaked after four-year-old credentials were reused
Credential Compromise TechnologyLaborers' International Union of North America Local 1184
LiUNA Local 1184 notified members of a 2024 ransomware data breach
Ransomware Labor UnionParcel Plus
Parcel Plus tax clients had refunds redirected after spear phishing attack
Phishing Professional ServicesGerman Association for East European Studies (DGO)
German East European studies association breached again, Russia suspected
Hacking Non-profit ResearchNine Entertainment
Nine exposed 16,000 Australian newspaper subscribers through a supplier lapse
Third-Party Data Breach MediaNew South Wales Department of Communities and Justice
NSW justice department breach exposed 9,000 court files including violence orders
Hacking GovernmentLee University
Lee University notifies about 137,000 people a year after network breach
Ransomware EducationWestern Alliance Bank
Western Alliance Bank notifies 21,899 customers after Cleo file transfer breach
Third-Party Data Breach Financial ServicesOracle
Oracle denies cloud breach as researchers back hacker's six million record claim
Hacking TechnologyALN Medical Management, LLC
ALN Medical Management discloses 2024 breach of third-party hosted systems
Hacking HealthcareUkrzaliznytsia
Cyberattack knocks out Ukrainian railway Ukrzaliznytsia's online ticketing
Hacking TransportationUniversity of Notre Dame Australia
University of Notre Dame Australia struggles to recover from January cyberattack
Ransomware EducationPennsylvania State Education Association
PSEA notified more than 517,000 people after Rhysida claimed 2024 breach
Ransomware Non-profitJames Pascoe Group
James Pascoe Group cyberattack disrupts Farmers and Whitcoulls stores
Ransomware RetailGanong Bros. Ltd.
Ganong Bros. chocolate plant disrupted by ransomware attack claimed by Play
Ransomware ManufacturingYap State Department of Health Services
Ransomware forced Micronesia's Yap health department offline
Ransomware GovernmentBis Industries
Bis Industries investigates RansomHub claims over December 2024 attack
Ransomware Mining ServicesSunflower Medical Group
Sunflower Medical Group breach exposed data on nearly 221,000 patients
Ransomware HealthcareSorbonne Université
FunkSec claimed a breach at Sorbonne Universite; the university called it limited
Ransomware EducationLake Washington Vascular
Lake Washington Vascular restored from backups after Qilin ransomware attack
Ransomware HealthcareBank of America
Bank of America warned customers after document destruction vendor mishandled records
Third-Party Data Breach Financial ServicesChicago Public Schools
Chicago Public Schools says Cleo vendor breach exposed 700,000 students
Supply Chain Attack EducationNTT Communications Corporation
NTT Communications breach exposed data on nearly 18,000 corporate customers
Hacking TelecommunicationsCarruth Compliance Consulting
Carruth Compliance Consulting breach exposed data on tens of thousands of school staff
Ransomware Business ServicesBerkeley Research Group
Berkeley Research Group discloses ransomware attack during LBO debt sale
Ransomware Business ServicesNational Presto Industries
National Presto Industries disrupted by March 2025 cyberattack
Ransomware ManufacturingAustralian New Zealand Clinical Trials Registry
Clinical trials registry ANZCTR taken offline after University of Sydney breach
Hacking HealthcareOrange Group
Orange Group confirms breach of Romanian back office systems
Hacking TelecommunicationsCleveland Municipal Court
Cyber incident closed Cleveland Municipal Court for more than two weeks
Ransomware GovernmentAnne Arundel County, Maryland
Anne Arundel County closed buildings after ransomware attack on its network
Ransomware GovernmentDISA Global Solutions, Inc.
DISA Global Solutions breach exposed data on 3.3 million screening subjects
Hacking Business ServicesHCRG Care Group
Medusa gang demanded $2m from UK healthcare provider HCRG Care Group
Ransomware HealthcareInspira Financial Trust, LLC
Call center contractor accessed data on 2,308 Inspira Financial savers
Third-Party Data Breach Financial ServicesRainbow District School Board
Rainbow District School Board cyberattack exposed decades of student and staff data
Ransomware EducationHipshipper
Hipshipper left 14.3 million shipping records exposed in open cloud bucket
Misconfiguration Transportation & LogisticsGenea
Genea discloses breach after Termite ransomware attack on IVF clinics
Ransomware HealthcareNioCorp Developments Ltd.
NioCorp Developments lost $500,000 to an email compromise scam
Business Email Compromise Mining & Natural ResourcesThe Agency
Rhysida claimed a ransomware attack on London talent agency The Agency
Ransomware Media & EntertainmentOffice of the Attorney General of Virginia
Cyberattack knocked the Virginia Attorney General's office offline
Hacking GovernmentUnimicron Technology
Sarcoma ransomware group claims 377 GB stolen from PCB maker Unimicron
Ransomware ManufacturingNippon Steel
BianLian claims theft of 500 GB from Nippon Steel's US operations
Ransomware ManufacturingMars Hydro
Unsecured Mars Hydro database exposed 2.7 billion IoT records
Misconfiguration ManufacturingPinehurst Radiology Associates, PLLC
Pinehurst Radiology Associates closed indefinitely after cyberattack
Hacking HealthcareSault Ste. Marie Tribe of Chippewa Indians
Ransomware shut Kewadin Casinos and Sault Tribe services across Michigan
Ransomware Travel & LeisureMemorial Hospital and Manor
Memorial Hospital and Manor notified 120,085 people after ransomware attack
Ransomware HealthcareSanrio Entertainment
Sanrio Entertainment ransomware attack put up to 2 million records at risk
Ransomware EntertainmentCPI UK
Ransomware attack halted book printer CPI UK's production for weeks
Ransomware Printing & PublishingIMI plc
IMI plc disclosed unauthorised access to its systems in a stock exchange filing
Hacking EngineeringGrubhub
Grubhub breach traced to a third-party customer support provider
Third-Party Data Breach Online Food DeliveryLee Enterprises
Cyberattack halted printing and publishing across Lee Enterprises newspapers
Ransomware MediaCommunity Health Center, Inc.
Community Health Center breach exposed data on more than 1 million patients
Hacking HealthcareTata Technologies
Tata Technologies reports ransomware attack in stock exchange filing
Ransomware Engineering ServicesMizuno USA
Mizuno USA said attackers spent two months copying files from its network
Ransomware ManufacturingDeepSeek
DeepSeek left a database of chat logs and API keys exposed online
Misconfiguration Technology (Artificial Intelligence)New York Blood Center Enterprises
Ransomware attack on New York Blood Center disrupts collections
Ransomware HealthcareSmiths Group plc
Smiths Group discloses unauthorized access to its systems
Hacking Engineering & ManufacturingARDEX Australia
Medusa ransomware group claims attack on ARDEX Australia
Ransomware Construction ProductsThe British Museum
British Museum partly closed after dismissed contractor shut down systems
Malicious Insider Arts and CultureConduent
Conduent confirms cyberattack behind US government service outages
Hacking Business ServicesMortgage Investors Group
Mortgage Investors Group discloses December breach after Black Basta claim
Ransomware Financial ServicesHewlett Packard Enterprise
HPE investigates IntelBroker claim of stolen source code and repositories
Hacking TechnologyDivimast
Akira ransomware lists Italian ERP consultancy Divimast on its leak site
Ransomware Information TechnologyOtelier
Otelier breach exposes hotel guest reservations for Marriott, Hilton and Hyatt
Credential Compromise Hospitality TechnologyChemeketa Community College
Chemeketa Community College staff data exposed in Carruth Compliance breach
Third-Party Data Breach EducationAvery Products Corporation
Avery says card skimmer sat on its website for nearly five months
Hacking ManufacturingWillow Pays
Willow Pays left customer bill payment database open on the internet
Misconfiguration Financial ServicesRoseltorg
Roseltorg confirms cyberattack on Russia's state procurement platform
Hacking GovernmentEindhoven University of Technology (TU/e)
Eindhoven University of Technology shuts down network after cyberattack
Hacking EducationUnacast
Unacast tells Norwegian regulator hackers took Gravy Analytics location data
Credential Compromise TechnologyGeodesy, Cartography and Cadastre Office of the Slovak Republic (UGKK)
Ransomware shuts Slovakia's land registry office UGKK, stalling property deals
Ransomware GovernmentAlcool NB Liquor (NB Liquor)
NB Liquor shut down point of sale systems after suspected cyberattack
Hacking RetailIndiana University Health
Indiana University Health email compromise exposed patient records
Credential Compromise HealthcareInternational Civil Aviation Organization
ICAO confirms recruitment database breach affecting nearly 12,000 people
Hacking GovernmentPowerSchool
PowerSchool breach exposes K-12 student and teacher records worldwide
Credential Compromise Education TechnologyPolicía de Seguridad Aeroportuaria
Argentina's airport security police hit by payroll data breach
Hacking GovernmentRegionTransService LLC
Ukraine's HUR claims destructive attack on rail firm RegionTransService
Hacking Logistics & TransportFraunhofer Institute for Industrial Engineering IAO
Ransomware attack hit Germany's Fraunhofer IAO research institute in Stuttgart
Ransomware Research & EducationBank of America
Bank of America notifies loan customers after third-party provider breach
Third-Party Data Breach Banking & FinanceLas Palmas Del Sol Healthcare (El Paso Healthcare System, Ltd.)
Las Palmas Del Sol Healthcare told 1,854 patients a former employee viewed their records
Malicious Insider HealthcareDE Photo
DE Photo hit by back-to-back intrusions over Christmas 2024
Hacking Photography ServicesU.S. Department of the Treasury
Chinese state hackers breached US Treasury workstations through BeyondTrust
Supply Chain Attack GovernmentNikki-Universal Co., Ltd.
Nikki-Universal confirms ransomware attack on its servers
Ransomware Chemical ManufacturingYouth Eastside Services
Youth Eastside Services breach exposed mental health client records in Washington
Ransomware HealthcareTurks and Caicos Islands Government
Turks and Caicos government recovers from pre-Christmas ransomware attack
Ransomware GovernmentCenter for Vein Restoration
Center for Vein Restoration breach exposed data on 446,094 patients and staff
Hacking HealthcareWood County, Ohio
Ransomware sends Wood County, Ohio emergency dispatch back to pen and paper
Ransomware GovernmentArtivion
Artivion tells SEC cyberattack disrupted order and shipping processes
Ransomware Medical DevicesKurita Water Industries (Kurita America Inc.)
Ransomware hit Kurita Water Industries' US arm, exposing customer and staff data
Ransomware Water TreatmentLuka Rijeka d.d. (Port of Rijeka)
8Base ransomware group claimed a data theft at Croatia's Port of Rijeka
Ransomware Logistics & TransportChemonics International
Chemonics International discloses 2023 intrusion affecting 263,136 people
Hacking Government ContractorBT Group
BT Group confirms attempted attack on conferencing unit claimed by Black Basta
Ransomware TelecommunicationsENGlobal Corporation
ENGlobal discloses ransomware attack that limited access to its IT systems
Ransomware EnergyRefinadora Costarricense de Petróleo (RECOPE)
Ransomware forced Costa Rica's state fuel company RECOPE to sell fuel manually
Ransomware Energy & UtilityUganda - Bank of Uganda
Bank of Uganda lost millions after international payments were diverted
Hacking FinanceItaly - Bologna FC 1909
Bologna FC confirmed ransomware attack after RansomHub leaked club data
Ransomware Sports and EntertainmentU.S. Veterans Health Administration
Veterans Health Administration notifies 2,302 veterans after vendor attack
Third-Party Data Breach Government HealthcareUK - Alder Hey Children's NHS Foundation Trust
INC Ransom published data stolen from Alder Hey Children's NHS trust
Ransomware HealthcareCabot Financial (Ireland)
Cabot Financial Ireland tells High Court 394,000 files were stolen
Hacking Financial ServicesCity of Hoboken, New Jersey
Ransomware attack shut down City of Hoboken government operations
Ransomware GovernmentWirral University Teaching Hospital NHS Foundation Trust
Wirral University Teaching Hospital NHS trust declares major incident after cyberattack
Hacking HealthcareVogue Homes
KillSec claims data theft from Australian home builder Vogue Homes
Ransomware ConstructionTexas Tech University Health Sciences Center
Texas Tech University Health Sciences Center breach hit 1.46 million patients
Ransomware HealthcareStarbucks
Starbucks fell back on manual payroll after Blue Yonder ransomware attack
Supply Chain Attack Food and Beverage RetailPacific Pulmonary Medical Group
Everest gang dumped Pacific Pulmonary Medical Group patient records
Credential Compromise HealthcareJapan - Kumamoto Prefecture Anti-Violence Movement Promotion Center
Kumamoto anti-violence counseling center warned of possible data leak
Phishing NonprofitBlue Yonder
Blue Yonder ransomware attack disrupts grocery and retail supply chains
Ransomware SoftwareFinastra
Finastra investigates breach of internal file transfer platform
Credential Compromise Financial TechnologyBojangles' Restaurants, Inc.
Bojangles notifies employees of data breach months after intrusion
Hacking RestaurantsInternational Game Technology
International Game Technology takes systems offline after cyberattack
Hacking Gambling TechnologyT-Mobile US
T-Mobile named in Salt Typhoon espionage campaign against US telecoms
Hacking TelecommunicationsGovernment of Mexico (gob.mx)
RansomHub claimed 313 GB stolen from Mexican government legal office
Ransomware GovernmentHungarian Defence Procurement Agency (VBU)
Hungary confirmed INC Ransom hack of its defence procurement agency
Ransomware GovernmentDemandScience
DemandScience confirms leaked 122 million record database came from its systems
Hacking Business ServicesAmerican Associated Pharmacies
Embargo ransomware group claimed attack on American Associated Pharmacies
Ransomware PharmacyAlberta Innovates
Alberta Innovates confirmed unauthorized access to its network
Hacking Government AgencyTEAM Software
TEAM Software breach exposed personal data on 99,525 people
Hacking SoftwareBBS Financial Services, LLC
BBS Financial Services paid a ransom after breach affecting 70,168 people
Ransomware Accounting ServicesAmazon
Amazon employee contact data surfaced in MOVEit leak from a vendor
Third-Party Data Breach RetailHot Topic
Hot Topic breach exposed records on nearly 57 million retail customers
Third-Party Data Breach RetailAhold Delhaize USA
Ahold Delhaize cyberattack disrupted US grocery pharmacies and online orders
Hacking RetailNewpark Resources
Newpark Resources discloses ransomware attack in SEC filing
Ransomware EnergyStandard Bank
Standard Bank employee copied client data to an unprotected personal device
Malicious Insider BankingSchneider Electric
Schneider Electric investigated Hellcat theft of 40GB from its Jira server
Ransomware EnergyNokia
Nokia denied breach after IntelBroker leaked contractor source code
Third-Party Data Breach TelecommunicationsBelle Tire Distributors
Belle Tire notifies nearly 30,000 people after June 2024 network intrusion
Hacking Automotive RetailHousing Authority of the City of Los Angeles (HACLA)
Los Angeles housing authority HACLA confirms second ransomware attack
Ransomware GovernmentVan Wagner Group
Van Wagner Group breach exposed Social Security numbers of 5,354 people
Hacking Advertising and MarketingSouth East Technological University
Cyberattack shut down IT systems at South East Technological University
Hacking EducationMicrolise
Microlise cyberattack knocked out DHL and Serco vehicle tracking in the UK
Ransomware TechnologyInterbank
Interbank confirms customer data breach after dark web listing
Hacking Financial ServicesAustralian Nursing Home Foundation
Abyss ransomware claims 1.5TB from Australian Nursing Home Foundation
Ransomware HealthcareAEP GmbH
German pharmaceutical wholesaler AEP hit by ransomware attack
Ransomware HealthcareFree SAS
French ISP Free confirms breach of subscriber data
Hacking TelecommunicationsLandmark Admin, LLC
Landmark Admin breach exposed data of more than 800,000 insurance customers
Ransomware Insurance ServicesBronxWorks Inc.
BronxWorks disclosed 2023 email breach exposing client and employee data
Hacking Non-profitArkansas Blue Cross and Blue Shield
Vendor breach at Healthmine exposed Arkansas Blue Cross member data
Third-Party Data Breach Health InsuranceJohnson & Johnson, Inc. (insurance firm)
Insurance firm Johnson & Johnson disclosed August 2024 breach affecting 3,200
Hacking InsuranceBerufsbildungszentrum Schaffhausen (BBZ)
Ransomware attack blocked systems at Swiss vocational school BBZ Schaffhausen
Ransomware EducationKansas City Hospice & Palliative Care
BlackSuit ransomware listed Kansas City Hospice and Palliative Care
Ransomware HealthcareNidec Corporation
Nidec confirms 50,694 files leaked from Vietnamese subsidiary
Ransomware ManufacturingGlobe Life Inc.
Globe Life extorted over data stolen from American Income Life
Hacking InsuranceCisco Systems
Cisco traces IntelBroker data leak to public DevHub portal
Misconfiguration TechnologyFunlab
Funlab confirms Lynx ransomware attack on Australian entertainment group
Ransomware EntertainmentVarsity Brands
Varsity Brands breach exposed data of more than 65,000 people
Hacking Apparel ManufacturingCasio Computer Co., Ltd.
Casio confirms data theft after Underground ransomware attack
Ransomware Consumer ElectronicsIntesa Sanpaolo
Intesa Sanpaolo insider accessed 3,500 accounts including Italy's prime minister
Malicious Insider BankingCalgary Public Library
Calgary Public Library closed all branches after cyberattack
Hacking GovernmentAxis Health System
Axis Health System investigates Rhysida ransomware attack in Colorado
Ransomware HealthcarePerfection Fresh
Perfection Fresh confirms breach after Sarcoma ransomware listing
Ransomware AgricultureFidelity Investments
Fidelity Investments breach exposed personal data of 77,099 customers
Hacking Financial ServicesGame Freak
Game Freak confirms server breach behind Pokemon TeraLeak data dump
Hacking Video GamesThe Plastic Bag Company
Sarcoma ransomware group leaks data from Sydney's The Plastic Bag Company
Ransomware ManufacturingInternet Archive
Internet Archive breach exposed 31 million user records
Hacking NonprofitAmerican Water Works Company, Inc.
American Water pauses billing after cyberattack on internal systems
Hacking UtilitiesADT Inc.
ADT discloses second breach in two months after partner credentials stolen
Credential Compromise Home SecurityWayne County, Michigan
Cyberattack shut down Wayne County, Michigan websites and county offices
Ransomware GovernmentWard Transport & Logistics Corp.
Ward Transport and Logistics notified victims of March 2024 network breach
Ransomware Transportation and LogisticsRed Barrels
Red Barrels breach delayed Outlast development after 1.8TB theft claim
Ransomware Video GamesDutch National Police
Dutch national police breach exposes contact details of every officer
Hacking GovernmentAgence France-Presse
Agence France-Presse reported potential data breach after cyberattack
Hacking MediaCasino Fandango
Casino Fandango disclosed June 2024 breach of its computer network
Hacking Hospitality and GamingMoneyGram International
MoneyGram confirms cyberattack behind days-long global outage
Hacking Financial ServicesCity of Arkansas City, Kansas
Arkansas City, Kansas water plant switches to manual after cyberattack
Hacking GovernmentMC2 Data
MC2 Data left 2.2TB background check database exposed online
Human Error Data BrokerageDell Technologies
Hacker claimed two Dell Technologies breaches within days in September 2024
Hacking TechnologyTotal Tools
Total Tools data breach exposed about 38,000 customer accounts
Hacking RetailCompass Group Australia
Compass Group Australia confirmed Medusa ransomware attack
Ransomware Food ServicesFireworks Software, Inc.
Fireworks Software breach exposed data tied to Rowan College at Burlington County
Hacking SoftwareElitecare Emergency Hospital
Elitecare Emergency Hospital notifies 24,754 patients of data breach
Hacking HealthcareKawasaki Motors Europe
Kawasaki Motors Europe restored servers after RansomHub attack
Ransomware AutomotiveDavid's Bridal
David's Bridal notified customers and staff of January 2024 data breach
Hacking RetailFortinet
Fortinet confirmed customer data taken from third-party cloud file drive
Third-Party Data Breach TechnologyIndustrial and Commercial Bank of China (ICBC), London branch
Hunters International claimed 6.6TB theft from ICBC's London branch
Ransomware Financial ServicesAccess Sports Medicine and Orthopaedics
Access Sports Medicine breach exposed data on about 88,000 patients
Ransomware HealthcareAramark
Aramark employees phished through fake myPay site in payroll diversion scheme
Phishing Food ServicesSlim CD, Inc.
Slim CD breach exposed card data for about 1.7 million people
Hacking Payment ProcessingT. Rowe Price Retirement Plan Services
T. Rowe Price named in Infosys McCamish breach affecting 6 million people
Third-Party Data Breach Financial ServicesKemperSports
KemperSports breach exposed Social Security numbers of over 62,000 people
Hacking HospitalityAvis Rent A Car System
Avis breach of a business application exposed data on 299,006 customers
Hacking Travel & TourismCharles Darwin School
Ransomware attack closed Charles Darwin School in Bromley for three days
Ransomware EducationNationwide Recovery Service
Nationwide Recovery Service reports breach of debt collection records
Hacking Debt CollectionHighline Public Schools
Highline Public Schools closed for three days after a cyberattack
Ransomware EducationSt. Charles Parish Government
St. Charles Parish lost over $1.2 million to a vendor email compromise
Business Email Compromise GovernmentCenters for Medicare & Medicaid Services
CMS said a MOVEit hack at contractor WPS exposed 946,801 Medicare beneficiaries
Third-Party Data Breach HealthcarePlanned Parenthood of Montana
RansomHub claimed a cyberattack on Planned Parenthood of Montana
Ransomware HealthcareTewkesbury Borough Council
Tewkesbury Borough Council shut down its systems after a suspected cyberattack
Human Error GovernmentTracelo
Tracelo phone tracking service breach exposed 1.4 million customers and targets
Hacking Location Tracking ServiceMt. Carmel Behavioral Healthcare
Mt. Carmel Behavioral Healthcare disclosed email breach exposing patient data
Phishing HealthcareJAS Worldwide
JAS Worldwide confirms ransomware attack behind freight operation disruptions
Ransomware LogisticsToronto District School Board
Toronto District School Board says student data stolen in June ransomware attack
Ransomware EducationDick's Sporting Goods
Dick's Sporting Goods discloses intrusion and locks employees out of email
Hacking RetailFota Wildlife Park
Fota Wildlife Park told customers to cancel cards after a website breach
Hacking Tourism & AttractionsUSAA
USAA notified about 32,000 members after update error misdelivered documents
Misconfiguration InsuranceYoung Consulting
Young Consulting breach exposed data on 954,177 people, including Blue Shield members
Ransomware SoftwareMeli
Qilin ransomware gang claims 215 GB theft from Australian charity Meli
Ransomware NonprofitPort of Seattle (Seattle-Tacoma International Airport)
Rhysida ransomware attack disrupted Seattle-Tacoma International Airport systems
Ransomware AviationBloom Hearing Specialists
Bloom Hearing Specialists ransomware attack exposed patient and staff records
Ransomware HealthcareHalliburton Company
Halliburton took systems offline after August 2024 cyberattack
Hacking Energy ServicesCaja Los Andes
Unsecured database at Chile's Caja Los Andes exposed data on 10 million people
Misconfiguration Financial ServicesOregon Zoo
Oregon Zoo warned 117,000 online ticket buyers of payment card theft
Hacking Zoos and AttractionsToyota
Toyota confirms customer data exposed after 240 GB leak blamed on third party
Third-Party Data Breach AutomotiveMicrochip Technology Incorporated
Microchip Technology cut manufacturing output after August 2024 cyberattack
Hacking Semiconductor ManufacturingVeriSource Services, Inc.
VeriSource Services disclosed February 2024 breach of employee benefits data
Hacking Employee Benefits AdministrationCannonDesign
CannonDesign notified 13,000 people of 2023 AvosLocker ransomware breach
Ransomware Architecture and EngineeringFlightAware
FlightAware configuration error exposed account data for over three years
Misconfiguration Aviation TechnologySpecialty Networks, Inc.
Specialty Networks breach exposed data on more than 411,000 patients
Hacking Healthcare TechnologyCity of Flint, Michigan
Ransomware attack knocked City of Flint payment and phone systems offline
Ransomware Municipal GovernmentThe Washington Times
Rhysida ransomware group put Washington Times data up for auction
Ransomware MediaAutoCanada Inc.
AutoCanada disclosed cyberattack on its internal IT systems
Hacking Automotive RetailRodl Management, Inc.
Rodl Management breach exposed tax client data from Jamestown and JT Tax Services
Hacking Professional ServicesGrand Palais Reunion des musees nationaux
Ransomware attack hit Grand Palais and dozens of French museums during Paris Olympics
Ransomware Museums and Cultural VenuesZB Financial Holdings
Mad Liberator leaked ZB Financial Holdings data after Zimbabwe group refused ransom
Ransomware Financial ServicesSable International
BianLian emailed Sable International customers after immigration firm breach
Hacking Immigration ServicesFresnillo plc
Fresnillo disclosed unauthorised access to IT systems and data
Hacking MiningMcDowall Affleck
RansomHub claimed 470GB of data from engineering firm McDowall Affleck
Ransomware EngineeringJerico Pictures Inc. (National Public Data)
National Public Data faced suit over a claimed 2.9 billion record breach
Hacking Data BrokerageOneBlood
Ransomware attack on OneBlood disrupted blood supply across the Southeast
Ransomware Nonprofit Blood ServicesC-Edge Technologies
Ransomware at C-Edge Technologies knocked roughly 300 Indian banks offline
Ransomware Financial ServicesGemini
Gemini discloses breach at banking partner exposing customer account details
Third-Party Data Breach Cryptocurrency ExchangeLite-On Technology Corporation
RansomEXX claimed a 142GB data theft from Taiwan's Lite-On Technology
Ransomware Electronics ManufacturingSquirrel
Squirrel breach exposed ID documents of up to 600 New Zealand investors
Hacking Financial ServicesLeidos Holdings
Leidos internal documents leaked online after third-party vendor breach
Third-Party Data Breach IT ServicesSplit Airport
Akira ransomware attack disrupts flights at Croatia's Split Airport
Ransomware AviationFirstNet (AT&T)
AT&T reversed course and said most FirstNet numbers were in the breached data
Third-Party Data Breach Public Safety CommunicationsSuperior Court of Los Angeles County
Ransomware closed all 36 Los Angeles County Superior Court courthouses
Ransomware JudiciaryWattle Range Council
LockBit posts data stolen from South Australia's Wattle Range Council
Ransomware Local GovernmentMichigan Medicine
Michigan Medicine notifies about 57,000 patients after email account breach
Hacking HealthcareCity of Columbus, Ohio
Rhysida claimed 6.5TB of data from the City of Columbus ransomware attack
Ransomware Municipal GovernmentPueblo County School District 70
Pueblo County School District 70 disclosed ransomware breach of student records
Ransomware EducationAtlassian (Trello)
Trello data on 15 million users leaked after an open API was scraped
Hacking SoftwareRite Aid
Rite Aid says June cyberattack exposed data on 2.2 million people
Ransomware Retail PharmacyThe Walt Disney Company
Disney investigates leak of 1.1 TB of internal Slack data
Hacking EntertainmentBassett Furniture Industries
Bassett Furniture halted manufacturing after ransomware encrypted data files
Ransomware Furniture ManufacturingAT&T
AT&T discloses theft of call and text records for nearly all wireless customers
Credential Compromise TelecommunicationsGoshen Central School District
Goshen Central School District hit by ransomware attack
Ransomware EducationSibanye-Stillwater
Sibanye-Stillwater cyberattack hit the mining group's IT systems worldwide
Hacking MiningAdvance Auto Parts
Advance Auto Parts notifies 2.3 million after Snowflake-linked breach
Credential Compromise RetailThe Heritage Foundation
SiegedSec leaks Heritage Foundation data in protest over Project 2025
Hacking Think TankRoblox
Roblox developer conference attendee data exposed in FNTech vendor breach
Third-Party Data Breach GamingFlorida Department of Health
Florida Department of Health data published after RansomHub attack
Ransomware GovernmentElite Fitness
Elite Fitness confirms DragonForce ransomware attack in New Zealand
Ransomware RetailRoll20
Roll20 discloses breach of an administrative account exposing user records
Hacking GamingAlabama State Department of Education
Alabama State Department of Education breached in a halted ransomware attack
Hacking EducationFédération Internationale de l'Automobile (FIA)
FIA discloses data breach after phishing attacks on two email accounts
Phishing Sports Governing BodyHealthEquity, Inc.
HealthEquity breach traced to a compromised business partner account
Credential Compromise Health Benefits AdministrationPatelco Credit Union
Patelco Credit Union ransomware attack shuts down banking systems for weeks
Ransomware Financial ServicesMass General Brigham
Mass General Brigham fired staff who let outsiders view patient records
Malicious Insider HealthcareFederated Co-operatives Limited
Federated Co-operatives cyberattack disrupted Co-op stores and fuel cardlocks
Ransomware Retail and WholesaleTeamViewer
TeamViewer's corporate network was breached by APT29
Credential Compromise SoftwareKadokawa Corporation
Kadokawa confirmed a ransomware attack on its data centre and Niconico
Ransomware Media and EntertainmentUniversity Hospital Centre Zagreb (KBC Zagreb)
LockBit claims attack on Croatia's largest hospital, KBC Zagreb
Ransomware HealthcareCambridge University Press & Assessment
Cambridge University Press & Assessment hit by INC Ransom attack
Ransomware PublishingEvolve Bank & Trust
LockBit's claimed Federal Reserve hack was really Evolve Bank & Trust data
Ransomware BankingNeiman Marcus Group
Neiman Marcus confirmed a Snowflake-linked breach affecting 64,472 people
Credential Compromise RetailGeisinger
Geisinger notified over a million patients after a vendor insider breach
Third-Party Data Breach HealthcareNational Health Laboratory Service (NHLS)
Ransomware halts test reporting at South Africa's National Health Laboratory Service
Ransomware HealthcarePusat Data Nasional (Indonesia National Data Center)
Indonesia's Pusat Data Nasional crippled by Brain Cipher ransomware
Ransomware GovernmentFinancial Business and Consumer Solutions
Debt collector FBCS breach grew from 1.9 million to more than 3 million people
Hacking Debt CollectionJollibee Foods Corporation
Jollibee investigated a data breach affecting 11 million customers
Hacking Food ServiceDisability Rights Wisconsin
Disability Rights Wisconsin email breach exposed 19,150 Medicaid members
Hacking NonprofitAccenture
Accenture disputed a BreachForums claim of 32,000 leaked employee records
Hacking Professional ServicesCDK Global
CDK Global ransomware attack halted software at 15,000 car dealerships
Ransomware SoftwareVictoria Racing Club
Medusa ransomware gang demanded US$700,000 from Victoria Racing Club
Ransomware Sports and RecreationTruist Bank
Truist Bank confirms October 2023 breach after employee data listed for sale
Hacking BankingNewberg-Dundee School District
Newberg-Dundee School District hit by ransomware in June 2024
Ransomware EducationLife360 (Tile)
Life360 says hacker stole Tile customer data and tried to extort the company
Credential Compromise Consumer TechnologyCity of Cleveland, Ohio
City of Cleveland confirms ransomware attack that closed City Hall for two weeks
Ransomware Municipal GovernmentVietnam Post
Ransomware attack took Vietnam Post's delivery systems offline
Ransomware Postal ServicesVerny
Cyberattack forces Russian discount chain Verny to take cash only across 1,000 stores
Hacking RetailSynnovis
Synnovis ransomware attack disrupts pathology services at London NHS hospitals
Ransomware HealthcareHeineken
Heineken employee data offered for sale after 888 claimed a breach
Hacking Food and BeverageKing's College Hospital NHS Foundation Trust
Synnovis ransomware attack disrupted King's College Hospital and other London trusts
Supply Chain Attack HealthcareChristian Democratic Union (CDU)
Germany's CDU took IT systems offline after a serious cyberattack
Hacking PoliticsEasterseals Central Illinois
Rhysida ransomware gang demanded $1.3 million from Easterseals Central Illinois
Ransomware Non-profitTicketek Australia
Ticketek Australia customer data exposed via third-party cloud platform
Third-Party Data Breach TicketingSnowflake
Snowflake says up to 165 customer accounts hit in credential theft campaign
Credential Compromise Cloud ComputingGuardian Childcare
Guardian Childcare breach exposed scanned ID documents of Australian families
Hacking ChildcareLive Nation Entertainment (Ticketmaster)
Live Nation disclosed Ticketmaster data theft from a third-party cloud database
Third-Party Data Breach Entertainment and TicketingEverbridge
Everbridge told customers attackers reached corporate files after employee phishing
Phishing SoftwareBBC
BBC Pension Scheme breach exposed data on more than 25,000 members
Hacking BroadcastingSmith & Caughey's
Smith & Caughey's crypto-locked by ransomware on the day it announced its closure
Ransomware RetailThe Seattle Public Library
Ransomware attack knocked The Seattle Public Library's systems offline
Ransomware Public LibraryDecathlon
Decathlon confirmed Spanish employee email addresses leaked from third-party app
Third-Party Data Breach RetailSav-Rx (A&A Services)
Sav-Rx breach exposed data of 2.8 million prescription plan members
Hacking Pharmacy BenefitsCencora
Eleven drug companies disclose patient data loss from Cencora breach
Hacking Pharmaceutical ServicesTRC Staffing Services, Inc. (TRC Talent Solutions)
TRC Talent Solutions ransomware breach exposed 158,593 job seekers
Ransomware StaffingWelsh Rugby Union
Welsh Rugby Union investigated leak of supporters club member data
Misconfiguration Sports Governing BodyAlbany County, New York
Albany County, New York investigates possible cybersecurity breach
Hacking GovernmentMerrill Lynch, Pierce, Fenner & Smith Incorporated
Merrill email error exposed Social Security numbers of Walmart 401(k) savers
Human Error Financial ServicesFirst Nations Health Authority
First Nations Health Authority reported a cyberattack on its corporate network
Hacking HealthcareAmerican Radio Relay League (ARRL)
ARRL cyberattack takes Logbook of The World offline
Ransomware Membership AssociationGuam Seventh-Day Adventist Clinic
Guam Seventh-Day Adventist Clinic email breach exposed 56,635 people
Hacking HealthcareMediSecure
MediSecure ransomware attack hits Australian e-prescription provider
Ransomware Healthcare TechnologyRockford Public Schools
Ransomware attack knocks out Rockford Public Schools network
Ransomware EducationNissan North America
Nissan North America breach exposed Social Security numbers of 53,000 employees
Ransomware AutomotiveAffiliated Dermatologists & Dermatologic Surgeons, P.A.
Affiliated Dermatologists breach hit about 380,000 patients and staff
Ransomware HealthcareBanco Santander
Santander says third-party database breach hit customers and staff
Third-Party Data Breach BankingKeytronic
Keytronic confirms data theft after Black Basta ransomware attack
Ransomware Electronics ManufacturingPalomar Health Medical Group
Palomar Health Medical Group cyberattack knocked outpatient systems offline for months
Hacking HealthcareMedStar Health
MedStar Health email breach exposed data on about 183,000 patients
Hacking HealthcareDocGo
DocGo discloses cyberattack that exposed patient health data
Hacking HealthcareCity of Wichita, Kansas
Ransomware forces the City of Wichita to shut down its network
Ransomware Municipal GovernmentMonash Health
Monash Health records exposed in ZircoDATA ransomware breach
Third-Party Data Breach HealthcareDropbox
Dropbox Sign production systems breached, user credentials exposed
Hacking TechnologyFirstmac Limited
Firstmac confirms breach after EMBARGO ransomware attack
Ransomware Financial ServicesJPMorgan Chase
Software flaw at J.P. Morgan exposed data on 451,000 retirement savers
Misconfiguration Financial ServicesKaiser Foundation Health Plan (Kaiser Permanente)
Kaiser Permanente website trackers exposed data on 13.4 million members
Misconfiguration HealthcareLondon Drugs
London Drugs closed all 79 stores across Western Canada after a ransomware attack
Ransomware Retail PharmacyState Security Committee of the Republic of Belarus (KGB)
Cyber-Partisans claim breach of Belarus state security service
Hacking GovernmentCoffee County, Georgia
Coffee County, Georgia cut its link to the state voter roll after a cyberattack
Ransomware Local GovernmentLivaNova
LivaNova notified about 130,000 people after LockBit ransomware attack
Ransomware Medical DevicesSkanlog
Ransomware at Nordic distributor Skanlog empties Systembolaget shelves
Ransomware LogisticsTipton Municipal Utilities
Russia-linked group claimed cyberattack on Tipton, Indiana wastewater plant
Hacking Water UtilityGrodno Azot
Cyber-Partisans encrypt systems at Belarusian fertilizer maker Grodno Azot
Ransomware Chemical ManufacturingCarpetright
Carpetright cyberattack halts UK store and online trading for a week
Hacking RetailThe MITRE Corporation
MITRE said nation-state hackers breached its NERVE network via Ivanti zero-days
Hacking Nonprofit ResearchPandemonium Rocks
Pandemonium Rocks refund form exposed ticketholders' bank details
Misconfiguration Live EventsDistrict of Columbia Department of Insurance, Securities and Banking (DISB)
LockBit claimed DC insurance regulator data taken via Tyler Technologies cloud
Third-Party Data Breach GovernmentFrontier Communications Parent, Inc.
Frontier Communications disclosed April 2024 breach of its IT environment
Hacking TelecommunicationsSolano County Library
Ransomware took Solano County's SPLASH library network offline for weeks
Ransomware Public LibrariesOctapharma Plasma
Ransomware shut Octapharma Plasma donation centers across 35 US states
Ransomware HealthcareCentre Hospitalier Simone Veil de Cannes (CHC-SV)
Cannes hospital CHC-SV reverted to paper after LockBit ransomware attack
Ransomware HealthcareUnited Nations Development Programme (UNDP)
UNDP confirmed data theft after ransomware attack on Copenhagen IT systems
Ransomware International DevelopmentWells Fargo
Wells Fargo employee sent customer data to a personal account
Malicious Insider BankingThe Heritage Foundation
Heritage Foundation shut down its network after April 2024 cyberattack
Hacking Think TankSisense
CISA warned Sisense customers to reset credentials after vendor breach
Hacking Business Analytics SoftwareCity of Saint-Nazaire
Ransomware paralyzed Saint-Nazaire and four neighboring French communes
Ransomware Municipal GovernmentU.S. Environmental Protection Agency (EPA)
EPA denies breach after hacker posts 8.5 million contact records
Hacking GovernmentThe Home Depot
Home Depot confirmed a vendor exposed employee data leaked by IntelBroker
Third-Party Data Breach RetailNew Mexico Highlands University
New Mexico Highlands University canceled a week of classes after ransomware attack
Ransomware Higher EducationCVS Group plc
CVS Group took systems offline after unauthorised access to UK IT servers
Hacking Veterinary ServicesEBlock Corp.
EBlock notified nearly 2,000 people of breach of legacy ABS Auto Auctions systems
Hacking Automotive AuctionsPanera Bread
Panera Bread ransomware attack caused week-long nationwide IT outage
Ransomware RestaurantsJackson County, Missouri
Jackson County, Missouri declared a state of emergency after ransomware attack
Ransomware Local GovernmentOmni Hotels & Resorts
Daixin ransomware attack took Omni Hotels & Resorts systems offline for a week
Ransomware HospitalityIxMetro PowerHost
SEXi ransomware encrypted IxMetro PowerHost's ESXi servers and its backups
Ransomware Hosting and Data CentersAT&T
AT&T confirmed data on 73 million current and former customers leaked online
Hacking TelecommunicationsHot Topic, Inc.
Hot Topic notifies customers after November 2023 credential stuffing attacks
Credential Compromise RetailActivision Blizzard
Activision warns players after infostealer malware harvested gaming logins
Credential Compromise Video GamesCarolina Foods Inc.
Black Basta claims ransomware attack on snack maker Carolina Foods
Ransomware Food ManufacturingThe Big Issue Group
Qilin ransomware gang leaked data stolen from The Big Issue Group
Ransomware MediaGiant Tiger Stores Limited
Giant Tiger customer contact data exposed in third-party vendor breach
Third-Party Data Breach RetailCommunications Workers Union (CWU)
UK Communications Workers Union confirms cyberattack on its IT systems
Hacking Trade UnionAir Europa
Air Europa told customers passport and ID data was exposed in 2023 breach
Hacking AirlineRadiant Logistics
Radiant Logistics isolated Canadian operations after March 2024 cyberattack
Hacking LogisticsCrinetics Pharmaceuticals
LockBit claimed attack on Crinetics Pharmaceuticals and demanded $4 million
Ransomware PharmaceuticalsMediaWorks
MediaWorks said 403,000 New Zealanders' data was taken in competition hack
Hacking Media and BroadcastingOffice of the Colorado State Public Defender
Colorado public defender says ransomware attack exposed client data
Ransomware GovernmentInternational Monetary Fund (IMF)
IMF said 11 email accounts were compromised in a February 2024 breach
Hacking International Financial InstitutionNHS Dumfries and Galloway
NHS Dumfries and Galloway hit by focused and ongoing cyberattack
Ransomware HealthcareFujitsu
Fujitsu confirms malware on work computers and possible data theft
Hacking TechnologyScranton School District
Ransomware attack knocks out Scranton School District systems
Ransomware EducationNations Direct Mortgage
Nations Direct Mortgage notified 83,000 people of a December 2023 breach
Hacking Financial ServicesFrance Travail
France Travail breach exposes data on up to 43 million job seekers
Credential Compromise GovernmentEquiLend
EquiLend tells employees data was stolen in January ransomware attack
Ransomware Financial ServicesMarineMax
Rhysida claims ransomware attack on boat retailer MarineMax
Ransomware RetailCybersecurity and Infrastructure Security Agency (CISA)
CISA took two systems offline after Ivanti gateway flaws were exploited
Hacking GovernmentRoku
Roku disclosed credential stuffing attack affecting 15,363 accounts
Credential Compromise Streaming MediaLeicester City Council
Leicester City Council shut down IT systems and phone lines after cyberattack
Ransomware Municipal GovernmentJersey Financial Services Commission (JFSC)
Jersey Financial Services Commission registry flaw exposed 66,806 records
Misconfiguration Financial RegulatorSouth St. Paul Public Schools
South St. Paul Public Schools took systems offline after network intrusion
Ransomware EducationDuvel Moortgat
Ransomware halted brewing at Duvel Moortgat's Belgian and US sites
Ransomware Food and BeverageFinancial Transactions and Reports Analysis Centre of Canada (FINTRAC)
FINTRAC took corporate systems offline after a March 2024 cyber incident
Hacking GovernmentScottish Ambulance Service
Scottish Ambulance Service apologizes after first responder spreadsheet emailed in error
Human Error Emergency ServicesAmerican Express
American Express warns cardholders of breach at third-party merchant processor
Third-Party Data Breach Financial ServicesFidelity Investments Life Insurance Company
Fidelity Investments Life Insurance notified 28,000 after Infosys McCamish breach
Third-Party Data Breach InsuranceChunghwa Telecom
Chunghwa Telecom breach put 1.7TB of Taiwanese government data on the dark web
Hacking TelecommunicationsYX International
YX International left SMS database of one-time passcodes exposed online
Misconfiguration TelecommunicationsCutout.Pro
Cutout.Pro records for about 20 million accounts leaked on hacking forum
Hacking TechnologyU-Haul International, Inc.
U-Haul notified 67,000 customers after reservation system breach
Credential Compromise Vehicle RentalCity of Hamilton, Ontario
Ransomware disabled most of the City of Hamilton's network for weeks
Ransomware Municipal GovernmentQuik Pawn Shop
Akira ransomware group claimed an attack on Alabama's Quik Pawn Shop
Ransomware Consumer LendingRoyal Canadian Mounted Police (RCMP)
Royal Canadian Mounted Police opened criminal probe into network cyberattack
Hacking Law EnforcementDas Team AG (dasteam ag)
Black Basta leaked 200GB stolen from Swiss staffing firm Das Team AG
Ransomware Staffing and RecruitmentMalawi Department of Immigration and Citizenship Services
Malawi halts passport printing after immigration system hack and ransom demand
Hacking GovernmentTangerine Telecom
Tangerine Telecom breach exposed data on 232,000 Australian customers
Credential Compromise TelecommunicationsChange Healthcare
Cyberattack on Change Healthcare disrupted US pharmacies and claims processing
Ransomware Healthcare TechnologyRobert Half International
IntelBroker and Sanggiero claimed a data breach at staffing firm Robert Half
Hacking Staffing and RecruitmentStratford-on-Avon District Council
Stratford-on-Avon council insider took 79,000 resident email addresses
Malicious Insider Local GovernmentGolden Corral Corporation
Golden Corral breach exposed data on more than 183,000 employees
Hacking RestaurantsINTEGRIS Health
INTEGRIS Health said a 2023 breach exposed data on 2.4 million patients
Hacking HealthcarePSI Software SE
Ransomware attack forced German control systems vendor PSI Software offline
Ransomware Industrial SoftwareWashington County, Pennsylvania
Washington County, Pennsylvania paid a $350,000 ransom after January cyberattack
Ransomware Local GovernmentTrans-Northern Pipelines
ALPHV claimed a data theft at Canada's Trans-Northern Pipelines
Hacking EnergyBank of America
Bank of America notified 57,028 customers after Infosys McCamish breach
Third-Party Data Breach Financial ServicesVarta AG
Cyberattack halted production at German battery maker Varta AG
Hacking ManufacturingPrudential Financial
Prudential Financial disclosed breach of employee and contractor data
Ransomware Financial ServicesSlobozia County Emergency Hospital
Slobozia hospital among Romanian hospitals hit by Hipocrate ransomware attack
Ransomware HealthcareHyundai Motor Europe
Black Basta claimed three terabytes of data from Hyundai Motor Europe
Ransomware AutomotiveWinStar World Casino and Resort
WinStar app customer data exposed by unsecured Dexiga database
Misconfiguration Casinos and GamingService Employees International Union (SEIU) Local 1000
LockBit ransomware attack disrupted SEIU Local 1000 in California
Ransomware Labor UnionMedical Management Resource Group, LLC (American Vision Partners)
Medical Management Resource Group breach hit 2.35 million eye care patients
Hacking Healthcare ServicesMunicipality of Korneuburg, Austria
Ransomware attack on Austria's Korneuburg municipality postponed funerals
Ransomware Municipal GovernmentAnyDesk
AnyDesk confirms attackers breached its production systems
Hacking SoftwareFootball Australia
Football Australia exposed player passports and contracts through leaked AWS keys
Human Error Sports Governing BodyAnn & Robert H. Lurie Children's Hospital of Chicago
Ransomware attack took Lurie Children's Hospital systems offline for weeks
Ransomware HealthcareCity of Jacksonville Beach, Florida
Jacksonville Beach said ransomware attack exposed data on about 49,000 people
Ransomware Municipal GovernmentKeenan & Associates
Keenan & Associates breach exposed data of more than 1.5 million people
Hacking InsuranceGlobal Affairs Canada
Global Affairs Canada breach exposed employee data through a compromised VPN
Hacking GovernmentSchneider Electric
Cactus ransomware hit Schneider Electric's Sustainability Business division
Ransomware Energy ManagementFulton County, Georgia
Cyberattack knocked out Fulton County, Georgia government systems
Ransomware Local GovernmentFreehold Township School District
Freehold Township School District closes schools after cybersecurity incident
Hacking EducationHewlett Packard Enterprise
Russian group APT29 read Hewlett Packard Enterprise email for seven months
Hacking TechnologyCaravan and Motorhome Club
Caravan and Motorhome Club outage in UK traced to a cyberattack
Ransomware Membership OrganizationSouthern Water
Black Basta claims ransomware attack on UK utility Southern Water
Ransomware Water UtilitiesJason's Deli
Jason's Deli customer accounts breached in credential stuffing attack
Credential Compromise RestaurantsCity of Frederick, Maryland
City of Frederick lost $280,527 to a phishing driven wire fraud scheme
Business Email Compromise Municipal GovernmentDENHAM the Jeanmaker
DENHAM the Jeanmaker confirms cyberattack linked to Akira ransomware
Ransomware Fashion RetailBucks County, Pennsylvania
Bucks County, Pennsylvania loses emergency dispatch system in ransomware attack
Ransomware Local GovernmentMicrobe & Lab (CoronaLab)
Dutch COVID testing lab CoronaLab exposed 1.3 million records in open database
Misconfiguration Medical LaboratoryGALA Hispanic Theatre
GALA Hispanic Theatre recovers $255,000 drained in bank fraud
Business Email Compromise Arts and CultureTrezor
Trezor support portal breach exposes contact data of 66,000 users
Third-Party Data Breach CryptocurrencyVeolia North America
Veolia North America discloses ransomware attack on Municipal Water division
Ransomware Water UtilitiesMicrosoft
Microsoft says Midnight Blizzard read senior leaders' corporate email
Credential Compromise TechnologyTilbury District Family Health Team
Tilbury District Family Health Team patient data taken in TransForm ransomware attack
Third-Party Data Breach HealthcareFoxsemicon Integrated Technology
LockBit defaces Foxsemicon website and claims 5TB of stolen data
Ransomware Semiconductor ManufacturingKansas State University
Kansas State University cyberattack knocks out VPN, email and campus services
Hacking Higher EducationHal Leonard Australia
Qilin leaks 37.6 GB of data from music publisher Hal Leonard Australia
Ransomware Music PublishingWater for People
Medusa gang listed nonprofit Water for People with a $300,000 demand
Ransomware NonprofitClearview Resources Ltd.
Clearview Resources loses C$1.5 million to email account takeover
Business Email Compromise EnergyLush
Lush confirms cyber incident later described as a ransomware attack
Ransomware RetailInspiring Vacations
Inspiring Vacations left 112,000 travel records in an open cloud bucket
Misconfiguration TravelHMG Healthcare
HMG Healthcare breach hit residents and staff at 40 nursing facilities
Hacking HealthcareToronto Zoo
Toronto Zoo discloses ransomware incident, employee records taken
Ransomware ZooMidwives of Windsor
Midwives of Windsor tells clients an email account was breached in April 2023
Credential Compromise HealthcareCooper Aerobics
Cooper Aerobics notifies patients almost a year after network intrusion
Hacking HealthcareHousing Authority of the County of San Bernardino
San Bernardino County housing authority breach exposed 18,689 people
Hacking Local GovernmentOrrick, Herrington & Sutcliffe
Orrick law firm breach exposed data on more than 637,000 people
Hacking Legal ServicesGallery Systems
Gallery Systems ransomware attack took museum collection databases offline
Ransomware SoftwareHealthEC LLC
HealthEC breach exposed records of about 4.5 million patients
Hacking Healthcare TechnologyCommunaute de communes du Pays Fouesnantais
Cyberattack shut down IT services across France's Pays Fouesnantais
Ransomware Local GovernmentCourt Services Victoria
Court Services Victoria breach exposed years of court hearing recordings
Ransomware GovernmentOrbit Chain
Orbit Chain lost about $81 million in New Year's Eve bridge exploit
Hacking CryptocurrencyMemorial University of Newfoundland
Memorial University delays Grenfell Campus classes after ransomware attack
Ransomware Higher EducationKatholische Hospitalvereinigung Ostwestfalen
LockBit ransomware hit three German hospitals run by KHO on Christmas Eve
Ransomware HealthcareFallon Ambulance Service
Defunct Fallon Ambulance Service breach exposed data on 911,757 people
Ransomware Emergency Medical ServicesNational Amusements
National Amusements disclosed a December 2022 breach affecting 82,128 people
Hacking Media and EntertainmentMint Mobile
Mint Mobile told customers a hacker obtained their account data
Hacking TelecommunicationsAteam Inc.
Ateam Google Drive misconfiguration exposed data on 935,779 people
Misconfiguration TechnologyComcast Xfinity
Comcast Xfinity breach exposed data of 35.8 million customers via Citrix Bleed
Hacking TelecommunicationsInsomniac Games
Rhysida leaks 1.67TB of Insomniac Games data after Sony studio refuses ransom
Ransomware Video GamesVF Corporation
VF Corporation reported a ransomware attack in one of the first SEC cyber filings
Ransomware Apparel and FootwearFred Hutchinson Cancer Center
Fred Hutchinson Cancer Center ransomware attack led to extortion of patients
Ransomware HealthcareLedger
Ledger Connect Kit compromised after phishing attack on a former employee
Phishing Cryptocurrency HardwareDelta Dental of California
Delta Dental of California MOVEit breach affected nearly 7 million people
Hacking Dental InsuranceLondon Public Library
London Public Library in Ontario shut down services after a cyberattack
Hacking Public LibraryAsper Biogene
Asper Biogene breach exposed genetic and health data of 10,000 in Estonia
Hacking Genetic TestingKyivstar
Kyivstar cyberattack knocked out mobile service for millions in Ukraine
Hacking TelecommunicationsGreater Richmond Transit Company (GRTC)
Greater Richmond Transit Company hit by Play ransomware over Thanksgiving
Ransomware Public TransportationNorton Healthcare
Norton Healthcare ransomware breach exposed data on 2.5 million people
Ransomware HealthcareCity of Huber Heights, Ohio
Huber Heights, Ohio spends months rebuilding after BlackSuit ransomware attack
Ransomware Municipal GovernmentBinghamstown/Drum Group Water Scheme
Hacktivists cut water to Irish group scheme over Israeli-made pump controller
Hacking Water UtilityAustal USA
Austal USA confirms data incident after Hunters International leak claim
Hacking ShipbuildingHTC Global Services
HTC Global Services confirms cyberattack after ALPHV leaks stolen files
Ransomware IT ServicesNissan Oceania
Nissan warns Australian and New Zealand customers after Akira ransomware breach
Ransomware AutomotiveWeMystic
WeMystic left 13.3 million user records exposed in an open database
Misconfiguration Consumer Web ServicesStaples
Staples took systems offline after a Cyber Monday intrusion
Hacking Office Supply RetailJapan Aerospace Exploration Agency (JAXA)
JAXA confirms intruders reached its internal network
Hacking GovernmentYanfeng Automotive Interiors
Qilin ransomware group claims attack on auto supplier Yanfeng
Ransomware Automotive ManufacturingZeroedIn Technologies
ZeroedIn Technologies breach exposed data of about 2 million Dollar Tree workers
Hacking Human Resources TechnologyNational Aerospace Laboratories
LockBit claims ransomware attack on India's National Aerospace Laboratories
Ransomware Aerospace ResearchArdent Health Services
Ardent Health Services ransomware attack diverted ambulances at US hospitals
Ransomware HealthcareMunicipal Water Authority of Aliquippa
Cyber Av3ngers hijacked a controller at Aliquippa's water authority
Hacking Water UtilityIndian Hotels Company Limited (Taj Hotels)
Taj Hotels investigates claimed leak of data on 1.5 million guests
Hacking HospitalityFidelity National Financial (FNF)
Fidelity National Financial shut down systems after ALPHV ransomware attack
Ransomware Title InsuranceBrookfield Global Relocation Services (BGRS)
BGRS and SIRVA Canada breach exposed decades of federal relocation files
Ransomware Relocation ServicesIdaho National Laboratory
Idaho National Laboratory confirmed HR system breach claimed by SiegedSec
Hacking Nuclear ResearchService public de l'assainissement francilien (SIAAP)
Paris-area wastewater agency SIAAP hit by cyberattack
Hacking Water UtilityBlue Shield of California
Blue Shield of California members hit by MOVEit breach at vision benefits vendor
Third-Party Data Breach Health InsuranceToyota Financial Services
Medusa ransomware hit Toyota Financial Services in Europe and Africa
Ransomware Automotive FinanceMeridianLink
MeridianLink confirmed a cyberattack after ALPHV reported it to the SEC
Ransomware Financial SoftwareStanley Steemer
Stanley Steemer breach exposed data on about 67,000 customers
Hacking Consumer ServicesSamsung Electronics
Samsung UK store breach exposed contact details of 2019 and 2020 shoppers
Hacking Consumer ElectronicsCity of Long Beach, California
Long Beach declared a local emergency after a November 2023 network breach
Hacking Municipal GovernmentDP World Australia
DP World Australia halts four container ports after network intrusion
Hacking Ports and LogisticsWashington State Department of Transportation
Cyberattack disrupts Washington State Department of Transportation services
Hacking GovernmentHenry County Schools
Henry County Schools network shut down by BlackSuit ransomware attack
Ransomware EducationIndustrial and Commercial Bank of China (ICBC)
ICBC's US broker-dealer hit by LockBit ransomware, disrupting Treasury trades
Ransomware Financial ServicesState of Maine
State of Maine says MOVEit breach exposed data on 1.3 million people
Hacking GovernmentElectric Ireland
Electric Ireland says contractor staff member accessed 8,000 customers' data
Malicious Insider EnergyMarina Bay Sands
Marina Bay Sands breach exposed data on 665,000 loyalty members
Hacking HospitalitySutter Health
Sutter Health says MOVEit breach at vendor Welltok exposed 845,000 patients
Supply Chain Attack HealthcareShimano
LockBit claims 4.5TB of data stolen from bicycle component maker Shimano
Ransomware ManufacturingCook County Health
Cook County Health notifies 1.2 million patients of breach at vendor PJ&A
Third-Party Data Breach HealthcareBoeing
Boeing confirms cyberattack on its parts and distribution business
Ransomware AerospaceQueretaro Intercontinental Airport
Queretaro Intercontinental Airport confirms cyberattack claimed by LockBit
Ransomware AviationThe British Library
Rhysida ransomware attack kept British Library services offline for weeks
Ransomware Libraries and ArchivesMr. Cooper Group
Mr. Cooper shuts down systems after cyberattack, blocking mortgage payments
Hacking Financial ServicesTruepill (Postmeds Inc.)
Truepill breach exposed prescription records of about 2.3 million patients
Hacking PharmacyAllied Pilots Association
Ransomware hits Allied Pilots Association, the American Airlines pilots union
Ransomware Labor UnionSudwestfalen IT
Ransomware at Sudwestfalen IT disrupts more than 70 German municipalities
Ransomware IT ServicesAce Hardware
Ace Hardware cyberattack downs 1,202 devices and halts online orders
Hacking RetailToronto Public Library
Toronto Public Library cyberattack takes down digital services at 100 branches
Ransomware Public LibrariesStanford University
Akira claimed 430 GB from Stanford's public safety department
Ransomware Higher EducationClark County School District (CCSD)
Hackers emailed stolen student records to Clark County School District parents
Hacking EducationAmerican Family Insurance
American Family Insurance confirmed a cyberattack behind week-long outages
Hacking InsuranceSeiko Group Corporation
Seiko says ransomware attack exposed about 60,000 items of personal data
Ransomware ManufacturingWelltok
Welltok MOVEit breach exposed data on 8.5 million US patients
Hacking Healthcare SoftwareGrupo GTD
Rorschach ransomware disrupts Chilean telecom operator Grupo GTD
Ransomware TelecommunicationsOrange County District Attorney's Office
Orange County District Attorney shut down IT systems after a cyberattack
Hacking GovernmentTransForm Shared Service Organization
Ransomware at TransForm knocked out systems at six Ontario health facilities
Ransomware Healthcare ITWestchester Medical Center Health Network (WMCHealth)
WMCHealth diverted ambulances after a cyberattack on Hudson Valley hospitals
Hacking HealthcareKwik Trip
Kwik Trip confirmed a cyberattack caused its two-week systems outage
Hacking RetailD-Link
D-Link confirmed a phishing attack exposed old registration records
Phishing Networking HardwareArietis Health, LLC
Arietis Health reported a MOVEit breach affecting nearly 2 million patients
Hacking Healthcare BillingAmpersand
Ampersand confirmed ransomware attack claimed by Black Basta
Ransomware AdvertisingHenry Schein
Henry Schein confirms a cybersecurity incident as ALPHV claims the attack
Ransomware HealthcareMorrison Community Hospital
BlackCat claimed 5TB data theft from Morrison Community Hospital
Ransomware HealthcareQuality Service Installation (QSI), Inc.
ALPHV claimed 5TB of data from ATM installer Quality Service Installation
Ransomware Banking TechnologyCDW
LockBit demanded $80 million from CDW after breaching Sirius Federal servers
Ransomware Technology ServicesPerry Johnson & Associates (PJ&A)
PJ&A transcription breach exposed data of nearly 9 million patients
Hacking Medical TranscriptionLDLC ASVEL Villeurbanne
LDLC ASVEL confirmed data theft after NoEscape ransomware listing
Ransomware SportsShadow
Shadow said hacker stole customer data after employee lured on Discord
Credential Compromise Cloud GamingSimpson Manufacturing
Simpson Manufacturing took systems offline after October 2023 cyberattack
Hacking ManufacturingVolex plc
Volex said attackers accessed IT systems and data at international sites
Hacking Electronics ManufacturingLyca Mobile
Lyca Mobile confirmed customer data theft after cyberattack
Hacking TelecommunicationsDistrict of Columbia Board of Elections (DCBOE)
DC Board of Elections says voter roll was stolen from its hosting provider
Third-Party Data Breach GovernmentFlagstar Bank
Flagstar Bank told 837,000 customers their data was taken in Fiserv MOVEit breach
Third-Party Data Breach Financial Services23andMe
23andMe user profiles scraped after credential stuffing attack
Credential Compromise Consumer GeneticsThe Royal Women's Hospital
Royal Women's Hospital notified 192 patients after staff email account hacked
Credential Compromise HealthcareSony Interactive Entertainment
Sony Interactive Entertainment notified about 6,800 people of MOVEit breach
Hacking Video GamesEstes Express Lines
Estes Express Lines confirms cyberattack behind multi-day IT outage
Ransomware Transportation and LogisticsFirst Judicial Circuit Court of Florida
ALPHV claimed ransomware attack on Florida's First Judicial Circuit Court
Ransomware GovernmentMotel One
Motel One confirms data theft after ALPHV/BlackCat ransomware attack
Ransomware HospitalityMcLaren Health Care
McLaren Health Care confirms ransomware attack claimed by ALPHV/BlackCat
Ransomware HealthcareBuilders Mutual Insurance Company
Builders Mutual Insurance notified 64,761 people of a 2022 network intrusion
Hacking InsuranceWorld Baseball Softball Confederation (WBSC)
World Baseball Softball Confederation exposed 4,600 passport scans in open AWS bucket
Misconfiguration Sports Governing BodyEuropean Telecommunications Standards Institute (ETSI)
ETSI says attackers stole its online user database
Hacking Standards BodyFlair Airlines
Flair Airlines left database and email credentials exposed on its website
Misconfiguration AirlineBORN Ontario (Better Outcomes Registry & Network)
BORN Ontario says MOVEit breach exposed health data on 3.4 million people
Supply Chain Attack HealthcareAuckland University of Technology
Auckland University of Technology hit by cyberattack claimed by Monti ransomware
Ransomware Higher EducationPizza Hut Australia
Pizza Hut Australia told 193,000 customers their data was accessed
Hacking RestaurantsProgressive Leasing
Progressive Leasing discloses cyberattack that exposed Social Security numbers
Ransomware Consumer LeasingAir Canada
Air Canada says internal system breached, limited employee data accessed
Hacking AirlineLakeland Community College
Lakeland Community College notified 285,948 people of a data breach
Ransomware Higher EducationInternational Criminal Court
International Criminal Court detected intrusion into its information systems
Hacking JudiciaryCity of Pittsburg, Kansas
Cyberattack knocked out email, phones and payments in Pittsburg, Kansas
Hacking Local GovernmentVirginia Department of Medical Assistance Services
Virginia Medicaid agency reports breach affecting 1.2 million people
Hacking GovernmentShell (BG Group Australia)
Shell says BG Group Australia employee data taken in MOVEit breach
Supply Chain Attack Oil and GasGreater Manchester Police
Greater Manchester Police officer data exposed in supplier ransomware attack
Supply Chain Attack Law EnforcementCaesars Entertainment
Caesars Entertainment disclosed loyalty database theft and paid a ransom
Ransomware Hospitality and GamingAuckland Transport
Auckland Transport ticketing systems disrupted by ransomware attack
Ransomware Public TransportORBCOMM
ORBCOMM ransomware attack knocked out trucking fleet management and ELDs
Ransomware Transportation TechnologyAirbus
Airbus supplier data leaked after credentials stolen from airline employee
Credential Compromise AerospaceMGM Resorts International
MGM Resorts shut down IT systems across its casinos after a cyberattack
Ransomware Hospitality and GamingCanadian Nurses Association
Canadian Nurses Association confirmed data theft after Snatch leaked 37GB
Ransomware Professional AssociationDymocks
Dymocks blamed an external data partner for a breach of 836,000 customers
Third-Party Data Breach RetailInternational Joint Commission
NoEscape claimed an 80GB theft from the US-Canada International Joint Commission
Ransomware GovernmentSabre Corporation
Dunghill Leak claimed a 1.3TB data theft from travel technology firm Sabre
Ransomware Travel TechnologyJohnson & Johnson
IBM breach exposed Johnson & Johnson's Janssen CarePath patient data
Third-Party Data Breach PharmaceuticalsNXP Semiconductors
NXP Semiconductors told portal account holders their contact data was exposed
Hacking SemiconductorsZaun
LockBit attack on UK fencing maker Zaun exposed military site documents
Ransomware ManufacturingFreecycle
Freecycle disclosed a breach affecting more than 7 million members
Hacking NonprofitTissuPath
TissuPath patient records leaked after breach at a third-party IT supplier
Supply Chain Attack HealthcareMom's Meals (PurFoods, LLC)
Mom's Meals discloses ransomware breach affecting more than 1.2 million people
Ransomware Healthcare ServicesMetropolitan Police Service
Metropolitan Police supplier breach exposed details of 47,000 officers and staff
Supply Chain Attack Law EnforcementOhio History Connection
Ohio History Connection ransomware attack exposed data on about 7,600 people
Ransomware NonprofitPôle emploi
Pole emploi says MOVEit breach at a contractor exposed data on 10 million people
Supply Chain Attack GovernmentPareto Phone
Pareto Phone breach leaked Australian charity donor data to the dark web
Ransomware TelemarketingUniversity of Minnesota
University of Minnesota investigates claim that 7 million records were stolen
Hacking Higher EducationGEICO
GEICO tells employees their data was exposed in MOVEit-linked vendor breach
Supply Chain Attack InsuranceCloudNordic
CloudNordic and AzeroCloud lost nearly all customer data in ransomware attack
Ransomware Cloud HostingEnergy One
Energy One takes systems offline after cyberattack on Australian and UK operations
Hacking Energy SoftwareauDA (.au Domain Administration)
auDA finds no evidence of breach after NoEscape claimed to hold its data
Ransomware Internet InfrastructureTesla, Inc.
Tesla blamed insider wrongdoing for breach affecting 75,000 employees
Malicious Insider AutomotiveSwan Retail
Swan Retail cyberattack knocks around 300 UK independent retailers offline
Hacking Retail SoftwarePrince George's County Public Schools
Cyberattack on Prince George's County Public Schools hit 4,500 accounts
Hacking EducationThe Clorox Company
Clorox took systems offline after unauthorized activity on its network
Hacking Consumer Goods ManufacturingColorado Department of Health Care Policy and Financing
Colorado health agency notified 4.1 million people after IBM MOVEit breach
Supply Chain Attack Government Health AgencyFreeport-McMoRan Inc.
Freeport-McMoRan disclosed a cybersecurity incident affecting its IT systems
Hacking MiningCumbria Constabulary
Cumbria police accidentally published names and salaries of all staff
Human Error Law EnforcementIndiana Family and Social Services Administration
Indiana FSSA said Maximus MOVEit breach exposed 744,000 Medicaid members
Supply Chain Attack Government Health AgencyAlberta Dental Service Corporation
Ransomware at Alberta Dental Service Corporation hit 1.47 million people
Ransomware Health Benefits AdministrationRapattoni Corporation
Rapattoni cyberattack froze MLS property listings across the US
Hacking Real Estate TechnologyThe Electoral Commission (United Kingdom)
UK Electoral Commission revealed hack exposing 40 million voters' details
Hacking Government AgencyPolice Service of Northern Ireland
PSNI accidentally published details of about 10,000 officers and staff
Human Error Law EnforcementColorado Department of Higher Education
Colorado Department of Higher Education breach exposed 16 years of records
Ransomware State GovernmentProspect Medical Holdings
Prospect Medical Holdings cyberattack shut hospital services in four states
Ransomware HealthcareAristocrat Leisure Limited
Aristocrat Leisure confirmed employee data stolen through MOVEit flaw
Hacking Gaming TechnologyOregon Health Plan
MOVEit breach at PH Tech exposed 1.7 million Oregon Health Plan members
Supply Chain Attack Health InsuranceHot Topic
Hot Topic disclosed credential stuffing attacks on Rewards accounts
Credential Compromise RetailHealth Employers Association of British Columbia
Cyberattack on B.C. health recruitment sites exposed up to 240,000 records
Hacking HealthcareThe Prudential Insurance Company of America
Prudential said MOVEit hack at vendor PBI exposed 320,840 people
Supply Chain Attack InsuranceTempur Sealy International
Tempur Sealy shut down IT systems after July 2023 cyberattack
Hacking ManufacturingSouthern Association of Independent Schools (SAIS)
Unsecured SAIS database exposed 682,000 school records
Misconfiguration EducationAllegheny County, Pennsylvania
Allegheny County MOVEit breach exposed data on more than 950,000 people
Hacking Local GovernmentMaximus Inc.
Maximus says MOVEit hack exposed data on up to 11 million people
Supply Chain Attack Government ServicesNational Disability Insurance Agency
Australia's disability agency assessed exposure from the HWL Ebsworth hack
Third-Party Data Breach Government AgencyRite Aid
Rite Aid says vendor software flaw exposed data on 24,400 customers
Supply Chain Attack Retail PharmacyPacific Premier Bancorp
Pacific Premier Bancorp customer data stolen in vendor's MOVEit breach
Supply Chain Attack Financial ServicesCardioComm Solutions
CardioComm Solutions took systems offline after cyberattack
Hacking Medical TechnologyYamaha Canada Music
Yamaha Canada Music confirmed attack claimed by two ransomware gangs
Ransomware Musical Instruments1st Source Corporation
1st Source Bank reports about 450,000 records exposed in MOVEit hack
Supply Chain Attack Financial ServicesTSG Interactive US Services Limited (PokerStars)
PokerStars US notifies 110,291 people of MOVEit related data theft
Supply Chain Attack Online GamingGeorge County, Mississippi
Ransomware encrypts all three servers at George County, Mississippi
Ransomware Local GovernmentTampa General Hospital
Tampa General Hospital says data on 1.2 million patients was stolen
Ransomware HealthcareThe Estee Lauder Companies
Estee Lauder confirmed data theft as Clop and BlackCat both claimed attacks
Ransomware Consumer GoodsTOMRA Systems ASA
TOMRA isolates systems after extensive cyberattack on Norwegian group
Hacking Industrial TechnologyCharter Oak Federal Credit Union
Charter Oak Federal Credit Union pulls online banking offline after attack
Hacking Financial ServicesHillsborough County, Florida
Hillsborough County notified more than 70,000 people after MOVEit breach
Supply Chain Attack Local GovernmentSun Life Financial
Sun Life US members exposed in MOVEit breach at vendor PBI
Third-Party Data Breach InsuranceChoice Hotels International
Choice Hotels confirmed Radisson guest records taken in MOVEit attacks
Supply Chain Attack HospitalityRazer
Razer investigated claims that Razer Gold data and source code were stolen
Hacking Consumer ElectronicsHCA Healthcare
HCA Healthcare breach exposed data on about 11 million patients
Hacking HealthcareVentia
Ventia took key systems offline after weekend cyberattack
Hacking Infrastructure ServicesAutoZone
AutoZone notified 184,995 people of a MOVEit-related data breach
Hacking Automotive Parts RetailUniversity of the West of Scotland
University of the West of Scotland data auctioned by Rhysida ransomware gang
Ransomware Higher EducationDeutsche Bank
Deutsche Bank customer data exposed in service provider's MOVEit breach
Third-Party Data Breach BankingNational Institutes of Health Federal Credit Union (NIHFCU)
NIH Federal Credit Union notified 14,706 members after an email account breach
Credential Compromise Financial ServicesZooTampa at Lowry Park
ZooTampa disclosed cyberattack claimed by BlackSuit ransomware group
Ransomware Leisure and AttractionsPort of Nagoya
Ransomware halted container operations at Japan's Port of Nagoya
Ransomware Ports and Logisticsdaa (Dublin Airport Authority)
About 2,000 Dublin Airport staff had pay data taken in the Aon MOVEit breach
Third-Party Data Breach AviationImagine360, LLC
Imagine360 notifies over 112,000 after two file transfer breaches
Hacking HealthcareBarts Health NHS Trust
BlackCat claimed a seven terabyte data theft from Barts Health NHS Trust
Ransomware HealthcareU.S. Department of Health and Human Services (HHS)
HHS told Congress a MOVEit breach at contractors affected more than 100,000 people
Third-Party Data Breach Federal GovernmentAdvanced Medical Management, LLC
Advanced Medical Management breach exposed data on 319,485 people
Hacking HealthcareTaiwan Semiconductor Manufacturing Company (TSMC)
TSMC faced a $70 million LockBit ransom after supplier Kinmax was breached
Third-Party Data Breach Semiconductor ManufacturingDozor-Teleport CJSC
Russian satellite operator Dozor-Teleport knocked offline in June 2023 hack
Hacking TelecommunicationsU.S. Patent and Trademark Office (USPTO)
USPTO exposed about 61,000 trademark applicants' home addresses for three years
Misconfiguration Federal GovernmentLaw Foundation of Silicon Valley
Ransomware at the Law Foundation of Silicon Valley exposed data on 42,525 people
Ransomware Legal ServicesSuncor Energy
Suncor Energy cyberattack disrupted payments at Petro-Canada stations
Hacking Oil and GasPilot Credentials
Pilot Credentials breach exposed data on American and Southwest pilot applicants
Hacking Recruitment TechnologyCalifornia Public Employees' Retirement System (CalPERS)
CalPERS said 769,000 retirees were exposed by a vendor's MOVEit breach
Third-Party Data Breach Public Pension FundGen Digital
Gen Digital said employee data was exposed in the MOVEit breach
Supply Chain Attack Consumer SoftwareBlackCat threatened to leak 80GB of Reddit data taken in a February breach
Phishing Social MediaSmartpay Holdings
Smartpay confirmed customer data was stolen in a ransomware attack
Ransomware PaymentsU.S. Department of Agriculture
USDA said fewer than 30 employees may have been hit by a vendor's MOVEit breach
Third-Party Data Breach Federal GovernmentLouisiana Office of Motor Vehicles
Louisiana warned all driver's license and ID holders were exposed in MOVEit breach
Hacking State GovernmentDevelopment Bank of Southern Africa
Development Bank of Southern Africa disclosed an Akira ransomware attack
Ransomware BankingComisión Nacional de Valores (CNV), Argentina
Medusa ransomware group attacked Argentina's National Securities Commission
Ransomware Financial RegulatorIntellihartx
Intellihartx told about 490,000 people data was taken in GoAnywhere hack
Hacking Healthcare ServicesOfcom
Ofcom said MOVEit hack took data on 412 staff and companies it regulates
Hacking Government RegulatorFIIG Securities
ALPHV claimed theft of 385GB from Australian bond broker FIIG Securities
Ransomware Financial ServicesJamaica Ministry of National Security
Jamaica's Ministry of National Security confirmed cyberattack on JamaicaEye website
Hacking GovernmentGovernment of Nova Scotia
Nova Scotia government detailed scope of MOVEit data theft affecting about 100,000
Hacking Regional GovernmentUK National Health Service (NHS)
NHS research data on 1.1 million patients accessed in University of Manchester hack
Third-Party Data Breach HealthcareInfotel JSC
Ukrainian hacktivists took Russian bank connectivity provider Infotel JSC offline
Hacking TelecommunicationsMahony Horner Lawyers
Mahony Horner Lawyers warned clients of leak after IT provider was hacked
Third-Party Data Breach Legal ServicesPflegia
German healthcare recruiter Pflegia exposed job seeker files in open AWS bucket
Misconfiguration RecruitmentAscension Seton
Ascension Seton disclosed breach of two legacy websites run by vendor Vertex
Third-Party Data Breach HealthcareZellis
MOVEit zero-day at payroll provider Zellis exposed staff data at BA, BBC and Boots
Supply Chain Attack Payroll ServicesHillsborough County Supervisor of Elections
Hillsborough County elections office breach exposed data on 58,000 Florida voters
Hacking Local GovernmentiSpace, Inc.
iSpace notified consumers of a breach exposing Social Security and health data
Hacking Business ServicesCasepoint
BlackCat claimed a breach of legal platform Casepoint used by US agencies
Ransomware Legal TechnologySimpleTire
SimpleTire left 2.8 million customer records in an open database
Misconfiguration RetailIdaho Falls Community Hospital
Cyberattack forced Idaho Falls Community Hospital to divert ambulances
Hacking HealthcareEjercito de Chile (Chilean Army)
Rhysida ransomware group published documents stolen from the Chilean Army
Ransomware MilitaryOnix Group
Onix Group ransomware attack exposed data on about 320,000 patients and employees
Ransomware Real Estate and Healthcare ServicesMCNA Dental
MCNA Dental breach affected 8.9 million people after LockBit attack
Ransomware Health InsuranceXplain
Play ransomware attack on Swiss supplier Xplain reached federal government data
Ransomware IT ServicesInsurance Information Bureau of India
Insurance Information Bureau of India hit by ransomware, refused $250,000 demand
Ransomware InsuranceCity of Augusta, Georgia
BlackByte ransomware gang claimed attack on the City of Augusta, Georgia
Ransomware Municipal GovernmentApria Healthcare
Apria Healthcare disclosed 2019 and 2021 breaches affecting 1.87 million people
Hacking HealthcareSuzuki Motorcycle India
Cyberattack halted production at Suzuki Motorcycle India for about a week
Hacking ManufacturingUintah Basin Healthcare
Uintah Basin Healthcare breach affected 103,974 patients in rural Utah
Hacking HealthcareBank Syariah Indonesia
LockBit published 1.5TB of data stolen from Bank Syariah Indonesia
Ransomware BankingFresh Del Monte Produce
Fresh Del Monte Produce notified employees after network intrusion
Hacking AgricultureCollectivité Territoriale de Martinique
Rhysida claimed the ransomware attack on Martinique's territorial government
Ransomware Regional GovernmentScanSource
ScanSource confirmed ransomware attack behind multi-day outages
Ransomware Technology DistributionCredit Control Corporation
Credit Control Corporation disclosed March 2023 breach affecting hundreds of thousands
Hacking Debt CollectionairBaltic
airBaltic sent booking details to the wrong passengers after email system error
Human Error AviationLacroix
Lacroix shut three electronics plants for a week after ransomware attack
Ransomware Electronics ManufacturingToyota Motor Corporation
Toyota cloud misconfiguration exposed vehicle data for 2.15 million customers
Misconfiguration AutomotiveAmbulance Victoria
Ambulance Victoria exposed paramedic drug and alcohol test results on staff intranet
Human Error Emergency ServicesU.S. Department of Transportation
US Department of Transportation breach exposed data on 237,000 federal employees
Hacking GovernmentIllinois Department of Healthcare and Family Services
Illinois benefits portal breach exposed Medicaid, SNAP and TANF recipient data
Credential Compromise GovernmentABB
Black Basta ransomware hits Swiss automation giant ABB
Ransomware Industrial TechnologyMurfreesboro Medical Clinic & SurgiCenter
Murfreesboro Medical Clinic shut down for two weeks after a ransomware attack
Ransomware HealthcareTechnologyOne
TechnologyOne halts ASX trading after back-office systems breached
Hacking SoftwareNational Gallery of Canada
National Gallery of Canada recovers from ransomware attack
Ransomware Arts and CultureNextGen Healthcare
NextGen Healthcare breach exposed data on more than one million patients
Credential Compromise Health ITCrown Princess Mary Cancer Centre
Medusa ransomware group claims data from Sydney's Crown Princess Mary Cancer Centre
Ransomware HealthcareConstellation Software
ALPHV claims ransomware attack on Constellation Software
Ransomware SoftwareLa Malle Postale
La Malle Postale left data on about 90,000 hiking clients publicly exposed
Misconfiguration TransportationCity of Dallas, Texas
Royal ransomware disrupted City of Dallas police, court and dispatch systems
Ransomware Municipal GovernmentSysco Corporation
Sysco discloses breach affecting customer, supplier and employee data
Hacking Food DistributionAvidXchange
AvidXchange hit by RansomHouse in its second ransomware incident of 2023
Ransomware Financial TechnologyHWL Ebsworth
ALPHV ransomware group claims 4TB of data from Australian law firm HWL Ebsworth
Ransomware Legal ServicesUnitedHealthcare
UnitedHealthcare notified members after credential stuffing attack on its mobile app
Credential Compromise Health InsuranceAmericold Realty Trust
Americold network breach shut down cold storage operations
Ransomware Cold Storage and LogisticsNational Small-bore Rifle Association
Cyber attack on the UK National Small-bore Rifle Association exposes member data
Hacking Sports and RecreationAmnesty International Australia
Amnesty International Australia disclosed a December 2022 hack four months later
Hacking Non-ProfitDiocese of Las Vegas
Diocese of Las Vegas disclosed a data breach affecting parishioners and donors
Hacking Religious OrganizationHardenhuish School
Hardenhuish School in Wiltshire disrupted by a ransomware attack
Ransomware EducationBitmarck
Bitmarck took systems offline across German health insurers after a cyberattack
Hacking Healthcare ITEdisonLearning
Royal ransomware gang claimed 20GB of data stolen from EdisonLearning
Ransomware Education ServicesCIC Group, Inc.
CIC Group notified 4,500 people after a breach exposed Social Security numbers
Hacking Engineering and ConstructionYellow Pages Group
Yellow Pages Canada confirmed Black Basta attack after data leak
Ransomware Digital Media and DirectoriesAmerican Bar Association
American Bar Association breach exposed credentials of 1.4 million members
Hacking Professional AssociationFincantieri Marine Group
Ransomware attack halted work at Fincantieri Marine Group's Wisconsin shipyard
Ransomware ShipbuildingConsumer Financial Protection Bureau
Former CFPB employee sent data on 256,000 consumers to a personal email
Malicious Insider Government AgencyPoint32Health
Point32Health ransomware attack disrupted Harvard Pilgrim member services
Ransomware Health InsuranceEvide
Ransomware at Derry data firm Evide hit charities serving abuse survivors
Ransomware Information Technology ServicesGateway Casinos & Entertainment
Gateway Casinos ransomware attack closed 14 Ontario properties
Ransomware Gaming and HospitalityCommScope
Vice Society leaked CommScope employee data after March ransomware attack
Ransomware Network Infrastructure ManufacturingNCR Corporation
BlackCat ransomware knocked out NCR's Aloha point-of-sale platform
Ransomware Payment TechnologyDimas Volvo
Brazilian Volvo dealer Dimas Volvo leaked database credentials for a year
Misconfiguration Automotive RetailColes Group
Coles customer credit card data caught up in Latitude Financial breach
Third-Party Data Breach RetailRheinmetall
Rheinmetall cyberattack hit civilian division, defence business unaffected
Ransomware Defence and Automotive ManufacturingNorthOne
Unsecured database exposed over a million NorthOne-branded invoices
Misconfiguration Financial TechnologyEnzo Biochem
Enzo Biochem said ransomware attack exposed test data on 2.47 million people
Ransomware BiotechnologyKodi
Kodi disclosed forum breach affecting about 400,000 users
Credential Compromise SoftwareLürssen
Lürssen hit by ransomware attack over the Easter weekend
Ransomware ShipbuildingWebster Bank
Webster Bank customer data exposed in Guardian Analytics vendor breach
Third-Party Data Breach BankingSD Worx
SD Worx shut down UK and Ireland payroll systems after cyberattack
Hacking Payroll and HR ServicesGroupe Nordik
Groupe Nordik breach exposed gift certificate buyers' card data
Hacking HospitalityMicro-Star International (MSI)
Money Message ransomware gang claimed 1.5TB theft from MSI
Ransomware Computer HardwarePacific Union College
Pacific Union College discloses ransomware breach affecting 56,041 people
Ransomware Higher EducationCamden County Police Department
Camden County Police Department locked out of case files by ransomware
Ransomware Law EnforcementMunicipality of Herselt
Cyberattack shut municipal services in Herselt, Belgium
Supply Chain Attack Local GovernmentACRO Criminal Records Office
UK's ACRO Criminal Records Office pulled portal offline after cyber incident
Hacking GovernmentProskauer Rose
Proskauer Rose left confidential client M&A files exposed on an unsecured cloud server
Misconfiguration Legal ServicesOCR Labs
OCR Labs exposed credentials tied to banking clients in misconfigured file
Misconfiguration Identity VerificationRoyal Dutch Football Association (KNVB)
Royal Dutch Football Association says hackers stole employee data
Ransomware SportsCapita plc
Capita cyberattack disrupted Microsoft 365 access and exposed client data
Ransomware Business ServicesWestern Digital
Western Digital network breach takes My Cloud services offline
Hacking Computer HardwareTMX Finance
TMX Finance discloses breach affecting 4.8 million TitleMax and InstaLoan customers
Hacking Consumer LendingMeriton
Meriton breach exposes staff financial records and guest incident reports
Hacking Hospitality and PropertyPharMerica
PharMerica breach exposed data of 5.8 million patients
Ransomware HealthcareLumen Technologies
Lumen Technologies discloses two separate cyberattacks in SEC filing
Ransomware TelecommunicationsCrown Resorts
Crown Resorts confirms Clop extortion attempt after GoAnywhere zero-day
Supply Chain Attack Casinos and EntertainmentTwitter source code leaked on GitHub, company subpoenas for leaker's identity
Malicious Insider Social MediaNCB Management Services
NCB Management breach grows past 1.5 million, starting with Bank of America customers
Hacking Debt CollectionWalsall Healthcare NHS Trust
Walsall Healthcare NHS Trust contains cyberattack on its network
Hacking HealthcareCity of Toronto
City of Toronto confirms data theft through GoAnywhere file transfer vendor
Supply Chain Attack Municipal GovernmentAlliance Healthcare Espana
Cyberattack on Alliance Healthcare Espana disrupts Spanish medicine distribution
Hacking Pharmaceutical DistributionCity of Oak Ridge, Tennessee
Malware attack disrupts services in the City of Oak Ridge, Tennessee
Hacking Municipal GovernmentUS Wellness Inc.
US Wellness vendor breach exposed Blue Cross Blue Shield of Arizona members
Supply Chain Attack Healthcare ServicesQIMR Berghofer Medical Research Institute
QIMR Berghofer skin cancer study data exposed in Datatime breach
Third-Party Data Breach Medical ResearchPuerto Rico Aqueduct and Sewer Authority (PRASA)
Vice Society claims cyberattack on Puerto Rico water utility PRASA
Ransomware Water UtilityNational Basketball Association
NBA notifies fans after breach at third-party email provider
Third-Party Data Breach SportsHitachi Energy
Hitachi Energy confirms employee data breach in Clop GoAnywhere campaign
Supply Chain Attack Energy TechnologyDocomo Pacific
Docomo Pacific cyberattack knocks out internet and phone services in Guam and the CNMI
Hacking TelecommunicationsLatitude Financial
Latitude Financial says stolen staff login led to theft of 328,000 records
Credential Compromise Financial ServicesGSC Game World
GSC Game World breached, hackers threaten to leak STALKER 2 material
Hacking Video Game DevelopmentLansing Community College
Lansing Community College breach exposed data on 757,832 people
Hacking Higher EducationEssendant
LockBit claims ransomware attack behind Essendant's multi-week outage
Ransomware Wholesale DistributionNorthStar Emergency Medical Services
NorthStar EMS notifies about 82,000 patients of 2022 network intrusion
Hacking Emergency Medical ServicesCHU Saint-Pierre
Cyberattack diverts ambulances from Brussels hospital CHU Saint-Pierre
Hacking HealthcarePostal Prescription Service (Healthy Options Inc., Kroger)
Kroger's Postal Prescription Service exposed 82,466 customers' details
Human Error PharmacyAT&T
AT&T notifies about 9 million customers after marketing vendor breach
Third-Party Data Breach TelecommunicationsDC Health Link
DC Health Link breach exposes data on 56,000 people including members of Congress
Misconfiguration Health InsuranceBlack & McDonald
Ransomware hits Black & McDonald, contractor to Canada's military
Ransomware Engineering and ConstructionAcer
Acer confirms breach of repair technician document server
Hacking Technology ManufacturingSundaySky Inc.
SundaySky notifies 37,095 people after files copied from its cloud servers
Hacking Marketing TechnologyCerebral
Cerebral tells 3.1 million people tracking pixels leaked their health data
Human Error TelehealthRoyal Dirkzwager
Play ransomware group hits Dutch maritime firm Royal Dirkzwager
Ransomware Maritime LogisticsHospital Clínic de Barcelona
RansomHouse attack forces Hospital Clínic de Barcelona to cancel surgeries
Ransomware HealthcareDenver Public Schools
Denver Public Schools breach exposed employee Social Security numbers
Hacking EducationWH Smith PLC
WH Smith said attackers stole current and former employee data
Hacking RetailChick-fil-A
Chick-fil-A confirmed 71,473 accounts hit by credential stuffing
Credential Compromise RestaurantsMinneapolis Public Schools
Medusa ransomware gang leaked Minneapolis Public Schools student records
Ransomware EducationGroup 1001 Insurance Holdings
Group 1001 insurance units restored operations after February ransomware attack
Ransomware InsuranceDISH Network Corporation
DISH Network confirms ransomware attack behind multi-day outage
Ransomware TelecommunicationsU.S. Marshals Service
U.S. Marshals Service ransomware attack hit a sensitive investigative system
Ransomware Federal GovernmentSoutheastern Louisiana University
Southeastern Louisiana University took its network offline after cyberattack
Hacking Higher EducationReventics, LLC
Reventics breach exposed data on more than 250,000 patients
Ransomware Healthcare ServicesCornell University
Cornell ticket buyers hit by AudienceView Campus platform breach
Supply Chain Attack Higher EducationThe Good Guys
The Good Guys told 1.85 million loyalty members of a supplier breach
Third-Party Data Breach RetailDole plc
Dole shut down North American operations after ransomware attack
Ransomware AgribusinessU.S. Department of Defense
U.S. Department of Defense notified 20,600 people of 2023 email exposure
Misconfiguration Federal GovernmentTusla, Ireland's Child and Family Agency
Tusla began notifying 20,000 people whose data was stolen in the 2021 HSE attack
Third-Party Data Breach GovernmentLehigh Valley Health Network
Lehigh Valley Health Network refused ransom after BlackCat attack on physician practice
Ransomware HealthcareStanford University
Stanford University exposed files of 897 economics PhD applicants
Misconfiguration Higher EducationU.S. Federal Bureau of Investigation
FBI confirmed a cyber incident on its own network at the New York field office
Hacking Federal GovernmentCity of Hilliard, Ohio
City of Hilliard, Ohio lost $219,000 to a vendor impersonation scam
Business Email Compromise Municipal GovernmentRailYatri
RailYatri data on more than 31 million users posted to a hacking forum
Hacking Travel TechnologyBurton Snowboards
Burton Snowboards halted online orders after a February 2023 cyber incident
Hacking Sporting GoodsLiverpool University Hospitals NHS Foundation Trust
Liverpool University Hospitals NHS trust leaked payroll data of 14,000 staff
Human Error HealthcareCity of Oakland, California
Oakland declared a local emergency after ransomware took city systems offline
Ransomware Local GovernmentPepsi Bottling Ventures LLC
Pepsi Bottling Ventures breach hit more than 28,000 employees and contractors
Hacking Food and BeverageIndigo Books & Music Inc.
Indigo Books & Music shut down its website after a cyberattack
Ransomware RetailWeee!
Weee! confirmed a breach after order data for 1.1 million customers leaked
Hacking RetailAguas e Energia do Porto
LockBit claimed a ransomware attack on Porto's municipal water utility
Ransomware UtilitiesMKS Instruments, Inc.
Ransomware at MKS Instruments halted production at some facilities
Ransomware ManufacturingVesuvius plc
Vesuvius plc shut down systems after cyber incident at steel industry supplier
Ransomware ManufacturingMunster Technological University
Munster Technological University closed Cork campuses after ransomware attack
Ransomware Higher EducationPeopleConnect, the parent company of TruthFinder and Instant Checkmate
TruthFinder and Instant Checkmate Suffer Data Breach: 20 Million Customers Affected
Hacking Background Checking Services988 Suicide and Crisis Lifeline
Cyberattack on vendor Intrado knocked out 988 Lifeline calls for nearly a day
Supply Chain Attack Public HealthSharp HealthCare
Sharp HealthCare notified about 63,000 patients after a web server breach
Hacking HealthcareAtlantic General Hospital (Maryland)
Maryland’s Atlantic General Hospital hit by Ransomware: Patient Care Impacted
Ransomware HealthcareION Group
LockBit ransomware attack on ION Group disrupted global derivatives trading
Ransomware Financial SoftwarePlanet Ice
Planet Ice breach exposed data on more than 240,000 UK skating customers
Hacking Leisure and EntertainmentCharter Communications
Telecom Giant Charter Communications Discloses Vendor Security Breach: Customer Data Exposed
Supply Chain Attack TelecommunicationsJD Sports Fashion plc
JD Sports data breach hit around 10 million UK customers
Hacking RetailExco Technologies
Cyber Attack Cripples Exco Technologies: Three Production Facilities Still Recovering
Hacking Manufacturer of diecast auto parts and toolsRunning Room
Running Room Canada Data Breach - Customer Data Compromised
Hacking Sporting goods retailZacks Investment Research
Zacks Investment Research Confirms Data Breach Affecting 280,000 Customers
Hacking Investment Research and AnalysisSolar Industries India Limited
BlackCat claimed a 2TB theft from Indian defence manufacturer Solar Industries
Ransomware Defence ManufacturingGoTo (formerly LogMeIn)
GoTo (formerly LogMeIn) Suffers Data Breach
Credential Compromise Enterprise softwareFive Guys Enterprises, LLC
Five Guys Data Breach: Job Applicant Information Compromised
Ransomware Food ServiceSAIF Corporation
SAIF Data Breach: Oregon's Leading Workers' Compensation Provider Experiences Security Incident
Hacking Oregon Workers' Compensation Insurance and BenefitsCott Systems
400 Local Governments Forced to Resort to Manual Processes as a Result of Cott Systems Cyber Attack
Hacking Government Records ManagementToronto Hospital for Sick Children (SickKids Hospital)
Toronto’s SickKids Hospital Confirms Ransomware Attack
Ransomware HealthcareSuperior Plus
Superior Plus Discloses Ransomware Attack Over The Weekend
Ransomware Distribution, PropaneDesjardins
Desjardins Class Action Lawsuit Over 2019 Breach Settles For $200M
Malicious Insider Financial ServicesDNA Diagnostics Center (DDC)
DNA Testing Centre Admits To Data Breach Affecting Over 2 Million People
Credential Compromise Healthcare ServicesMonoX
Hackers Victimize MonoX Leaving Losses Up To $30M in Digital Tokens
Hacking Fintech, CryptocurrencyGale Healthcare Solutions
30K Healthcare Workers’ Info Found On Unprotected Database
Misconfiguration Healthcare, Staffing ServicesLake County Board of Commissioners
FBI Investigating Attempted Data Breach During Election Fraud
Malicious Insider Government, Local ServicesButler County Community College
Classes Cancelled As School Recovers From Ransomware Attack
Ransomware EducationSupernus Pharmaceuticals
Ransomware Gang Threatens to Leak 1.5TB of Data
Ransomware PharmaceuticalThe Virginia Division of Legislative Automated Systems (DLAS)
Virginia’s Government IT Agency Hit By Ransomware
Ransomware Government, Technology ServicesCox Communications
Fraudster Impersonates Support Agent In Cox Vishing Attack
Phishing Media, Digital Cable ProviderAtalanta
Food Importer Admits Data Breach After Previous Ransomware Attack
Ransomware Food & Beverage, Distributor/ImporterGovernor General of Canada
Governor General of Canada Detects Internal Network Breach
Hacking Federal GovernmentSocial Enterprise for Canada (SEC)
Ontario Non-Profit Warning Clients After Ransomware Attack
Ransomware Non-Profit, Family ServicesKronos, Ultimate Group
Ransomware Attack Could Affect Customer Payroll Services For Weeks
Ransomware Technology, Payroll ServicesPlanned Parenthood
400,000 Patients’ Information Compromised In Ransomware Attack
Ransomware Healthcare, Non-ProfitGoDaddy
Over 1 Million Users Affected In GoDaddy Data Breach
Credential Compromise Technology, Web HostingToronto Transit Commission (TTC)
Toronto Transit System Hit By Ransomware Attack
Ransomware Government Agency, TransportationSchreiber Foods
Ransomware Shuts Down Production Distribution For Schreiber Foods
Ransomware Agriculture, ManufacturerPracticeMax
Patient Data Exposed In 3rd Party Healthcare Ransomware Attack
Ransomware Healthcare Services, TechnologyNational Rifle Association (NRA)
Threat Actors Demand Ransom from NRA After Leaking Files On Dark Web
Ransomware Advocacy GroupCoinMarketCap
3.1 Million Users’ Email Addresses Leaked In Data Breach
Hacking Technology, FinancialFerrara Candy Company
Candy Maker Hit By Ransomware During Halloween Rush
Ransomware Food and Beverage, ManufacturerSinclair Broadcast Group
Ransomware Knocks Programs Offline for Nationwide Broadcast Group
Ransomware MediaHewlett Packard Enterprise (HPE)
Stolen Access Key Used to Breach HPE’s Aruba Central
Credential Compromise Technology, ManufacturingRobinhood
7 Million Users Affected In Robinhood Data Breach
Phishing FintechWest Virginia Parkways Authority
Cyberattack on Government Agency Disrupts Computer Systems
Ransomware Government Agency, TransportationFederal Bureau of Investigation (FBI)
FBI Email System Compromised In Cyberattack
Business Email Compromise Federal Government, AgencyNewfoundland and Labrador Health
Experts Deem N.L. Cyberattack as Canada’s Worst Ever
Ransomware Government, HealthcareElectronic Warfare Associates
US Defense Contractor Reveals Employee Phishing Attack
Phishing Government, Defense ContractorDiamond Comic Distributors
Major Comic Book Distributor Hit By Ransomware
Ransomware Distributor, Publications & EntertainmentRideau Valley Health Centre
Ransomware Attack On Ottawa Clinic Disrupts Patient Care
Ransomware Healthcare, Medical ClinicIKEA
IKEA Hit By Ongoing, Highly Sophisticated Reply-Chain Attack
Phishing RetailRonmor Holdings
Calgary Real Estate Developer Hit By Ransomware Attack
Ransomware Real EstateCalifornia Pizza Kitchen
Over 100,000 Employees Affected By California Pizza Kitchen Data Breach
Hacking Food & Beverage, RestaurantDefence Construction Canada
Defence Construction Canada Recovering After Cyber Attack On IT Systems
Hacking Construction, Federal GovernmentTurner Construction Co.
5,600 Construction Employees Potentially Impacted By Phishing Scam
Phishing ConstructionClark Builders
Edmonton Construction Company Warns Industry After $11.8M Phishing Scam
Phishing ConstructionProfessional Excavators and Construction
Over $100k In Ransomware Recovery Costs for Calgary Construction
Ransomware ConstructionKemptville District Hospital
Ontario Hospital Resumes Emergency Services After ‘Cyber Incident’
Hacking Healthcare, MedicalUniversity of Colorado
30,000 University Students Potentially Impacted By 3rd Party Data Breach
Hacking EducationOlympus Corporation of the Americas
Global Medical Manufacturer’s IT Systems Down After 2nd Consecutive Ransomware Attack
Ransomware Manufacturer, Medical TechnologyDurham Regional Government
Hackers Leak More Troubling Data for Local Ontario Government
Ransomware Government, MunicipalSandhills Global
Systems And Operations Shut Down For Digital Publisher After Ransomware
Ransomware Technology, Digital PublishingTwitch
Twitch Suffers Massive Source Code Data Breach
Misconfiguration Technology, Streaming PlatformPremier Patient Healthcare
Terminated Executive Turns Insider Threat After 37,000 Patients’ Data Compromised
Malicious Insider HealthcareOregon Eye Specialists
Independent Optometry Chain Hit By Employee Email Breach
Credential Compromise Healthcare, OptometryUnity Health Toronto
Toronto Hospital Network Investigating After Malicious Insider Threatens Data Exposure
Third-Party Data Breach HealthcareNext Level Apparel
Several Employee Email Accounts Compromised in Phishing Attack
Phishing Manufacturer, ClothingCoinbase
Hackers Steal Cryptocurrency from 6,000 Coinbase Users
Hacking Technology, Financial AppNeiman Marcus
4.9 Million Affected by Retail Giant Neiman Marcus Data Breach
Hacking RetailNavistar
Employees Seek Class Action Lawsuit After Info Stolen In Data Breach
Hacking Manufacturing, AutomobileMoneyLion
Fintech Customer Accounts Locked After Credential Stuffing Attack
Credential Compromise Financial, FintechMarcus & Millichap
Ransomware Group Targets Commercial Real Estate Firm
Ransomware Real EstateMarketron
Thousands of Customers Impacted By Marketron Ransomware Attack
Ransomware Technology, Marketing ServicesPortpass
Privacy Breach Could Affect 650K Canadians Using COVID-19 Passport App
Misconfiguration Technology, Vaccine Passport PlatformEpik
Hacktivist Group Anonymous Leaks 180GB of Far-Right Data
Hacking Technology, Web HostingNew Cooperative And Crystal Valley Cooperative
Twin Ransomware Attacks Halt Business For Agriculture Industry
Ransomware Manufacturing, AgricultureSimon Eye And US Vision
Hackers Victimize Healthcare Providers in Dual Hacking Breaches
Hacking Healthcare, OptometryDotty’s
F&B Customer’s Data Exposed In Ransomware Attack
Ransomware Food and Beverage, GamingTTEC
TTEC Ransomware Attack Encrypts Data Disrupting Business Operations
Ransomware Technology, Customer Service ProviderWalgreen’s
Millions Possible Affected By Walgreen’s Website Error
Misconfiguration Retail, PharmacyUnited Nations
Hackers Infiltrate United Nations IT Networks
Hacking Intergovernmental OrganizationTexas Right To Life
Hundreds of Job Applicants’ Data Exposed on Misconfigured Website
Misconfiguration Political Rights OrganizationPacific City Bank
Ransomware Attack Hits Community Bank
Ransomware FinancialCareer Group Inc.
Company Warns 49,000 Customers After Ransom Paid In Cyber Attack
Ransomware Staffing AgencyDuPage Medical Group
600,000 Patients Warned After Medical Group Discovers Data Breach
Hacking Healthcare, MedicalAustin Cancer Centers
Cyber Attack Exposes Over 36,000 Cancer Clinic Patients’ Data
Ransomware HealthcareCanpar Express
No Explanation on Ransomware Attack Leaves Customers Complaining
Ransomware LogisticsCanada Revenue Agency
Thousands Affected By CRA Data Breach
Credential Compromise GovernmentMajor Bitcoin Scam Rocks Twitter
Hacking Social MediaMGM Resorts
Over 142 Million Affected in MGM Resorts Data Breach
Credential Compromise Travel, HotelPEI Provincial Government
$900,000 In Costs For PEI Taxpayers After Ransomware Attack (Update)
Ransomware GovernmentOneClass
Over 1 Million Students’ Personal Info Exposed on Unsecured Database
Misconfiguration EducationChartered Professional Accountants of Canada (CPA)
329,000 Affected By CPA Canada Phishing Attack
Phishing FinancialNorthwest Territories Power Corporation (NTPC)
NTPC Customers Facing “Financial Hardships” After Ransomware Attack
Ransomware Services, Utilities ProviderGoDaddy
Approximately 28,000 GoDaddy Users Affected by Data Breach
Hacking Technology, Web HostingWorld Health Organization
450 Active WHO Email Credentials Leaked Online
Credential Compromise Not-For-Profit, HealthcareThe Ottawa Hospital
Ottawa Police Warning New COVID-19 Hospital Phishing Scam
Phishing HealthcareQuebec Treasury Board
360,000 Quebec Teachers Affected By Data Breach
Credential Compromise EducationPEI Government
PEI Government Investigating Ransomware Attack
Ransomware GovernmentSimon Fraser University
SFU Ransomware Attack Compromises Personal Info for Students, Faculty & Alumni
Ransomware EducationSouthern First Nations Network of Care
Non-Profit IT Systems Paralyzed for 6 Weeks In Ransomware Attack
Ransomware Non-ProfitPublic Service and Procurement Canada
Canadian Government's Internal Data Breach: 69,000 Federal Workers' Information Compromised
Human Error GovernmentConfederation College
Malware Disables Canadian College’s IT Systems
Hacking EducationCanadian Government, Federal Departments
144,000 Canadians’ Personal Info Mishandled by Federal Departments
Human Error GovernmentRogers Communication
Rogers Communications Notified of Minor Data Leak
Misconfiguration Technology, TelecommunicationsBird Construction
Ransomware Hits Canadian Federal Contractor Bird Construction
Ransomware ConstructionCity of Corner Brook
City’s Privacy Breach Handed Over to Provincial Privacy Commissioner
Misconfiguration Government, MunicipalityeHealth
eHealth Sask Sees Downtime Costs Escalate After Ransomware Attack
Ransomware Medical ServicesPlanetDrugsDirect
Hackers Access Personal Health Info From Online Pharmacy
Hacking Online Retail, HealthcarePlenty of Fish
Plenty of Fish Private User Info Accidental Data Leaked
Misconfiguration Technology, Dating Services AppCIBC, Scotiabank, RBC, TD Canada Trust
2 Year Phishing Campaign Targeting Major Canadian Banks Uncovered
Phishing Financial ServicesAndrew Agencies
Financial Company Sees 245 Computers Encrypted with Ransomware
Ransomware Financial ServicesLife Labs
15 Million Canadians Potentially Affected By Life Labs’ Massive Data Breach
Ransomware Medical ServicesShaw
Shaw Warns Customers of Potential Data Leak 6 Months Later
Lost or Stolen Device Technology & CommunicationsCraftsman Collision
$100s of Thousands in Ransomware Remediation For Craftsman Collision
Ransomware Service, Automobile RepairCity of Woodstock
Local Canadian Govt Accrues $667,000 in Costs After Ransomware
Ransomware Local GovernmentAlectra Utilities
Utilities Company Urging Customers To Be Alert After Data Breach
Misconfiguration Utilities DistributorWaterloo Catholic District School Board
ON Catholic School Faces Rising Downtime Costs After Ransomware
Ransomware EducationWaterloo Brewing Company
$2.1 Million Lost In Phishing Attack for Waterloo Brewing
Business Email Compromise Food and Beverage, ManufacturingNunavut Government Services Impacted By Ransomware
Ransomware GovernmentPipestone Kin-Ability Centre
Over $400K Siphoned In Not-For-Profit System Hack
Hacking Not-for-Profit, Health ServicesOntario Science Centre
3rd Party Data Breach Affects Ontario Science Centre
Third-Party Data Breach Educational InstitutionTransUnion
37,000 Potentially Affected By TransUnion Data Breach
Credential Compromise FinancialPAL Airlines
Hacked Email Provides Access To Airline’s Sensitive Data
Credential Compromise Travel, AirlinesNational Basketball Association Canada (NBA Canada)
NBA Canada Suffers Massive Data Breach
Misconfiguration EntertainmentListowel Wingham Hospital Alliance
Ontario Hospital Network Faces Increasing Downtime Costs After Ransomware
Ransomware Medical, Health ServicesDoorDash
Nearly 5 Million DoorDash Users Impacted After Server Hack
Hacking Food and BeverageScotiabank
Scotiabank's Major Security Breach: 25 Million Scotiabank Customers’ Data Left Exposed
Misconfiguration FinancialYves Rocher
Yves Rocher Data Leak Impacts 2.5 Million Canadians
Misconfiguration RetailEastern Ontario Municipality
$7-$10K Ransom Request Refused by Municipal Ontario Government
Ransomware Government, MunicipalBoyd Group Income Fund
Well Prepared Boyd Group Hit By Ransomware Attack
Ransomware Service, Automobile RepairDesjardins
Former Credit Union Employee Creates Data Breach Affecting 2.9 Million Customers
Malicious Insider Financial ServicesCity of Burlington
BEC Phishing Scam Tricks City into Transferring $530K
Business Email Compromise GovernmentNova Scotia Health Authority
2,841 Patients Impacted by Phishing Attack
Phishing Government, Health ServicesFreedom Mobile
Thousands Impacted By Freedom Mobile Server Leak
Misconfiguration Technology, TelecommunicationsMitsubishi Aerospace
Ransomware Leaves Mitsubishi Aerospace Without Internet and Network Access
Ransomware TechnologyBC Pension Corporation
8,000 People Warned After BC Pension Plan Data Leak
Lost or Stolen Device GovernmentPrecise Parklink
Small Risk, High Costs After Ransomware hits CIRA Parking Garage
Ransomware Service, Parking GarageNorsk Hydro ASA
Norsk Hydro ransomware attack forced aluminum plants onto manual operations
Ransomware ManufacturingNatural Health Services Ltd.
Alberta Patients Warned After Data Breach Exposes Medical Info
Hacking Healthcare, RetailContainer World
Richmond, BC Facility’s System Shutdown in Lieu of Ransom Payment
Ransomware LogisticsNWT Department of Health and Social Services
40K Canadians Potentially Impacted By Lost Gov’t Employee Laptop
Lost or Stolen Device Government, Healthcare500px
14.8 Million Accounts Exposed In 500px Data Breach
Hacking TechnologyCarePartners
CarePartners Ransomware Attack: $60K Bitcoin Demand Threatens Data Exposure
Ransomware HealthcareCanada Revenue Agency (CRA)
Thousands of Canadians Affected As CRA Employees Caught Snooping
Malicious Insider Government AgencyCoast Capital Savings
$100’s of Thousands Stolen as Coast Capital Members Targeted In Phishing Ring
Phishing FinancialNothing matches those filters.