Editor's Message

Welcome to DBD. Cybercrime is making headlines globally. Attacks on well-known brands and organizations are raising public awareness of the severity, frequency and impact of cyber attacks. Proving cybercrime is growing at an alarming rate, DBD has recorded more ransomware attacks this year than any other, and we continue to provide visibility of these in our PRiSM application. This Cybersecurity Awareness Month, please be extra vigilant and mindful that cybercriminals CAN and WILL strike where and when you least expect it. Thanks again for your support. Stay safe. :)


“Data Breaches Digest and its PRiSM portal provide Dentons Global Security Team with valuable insights into the ransomware landscape, from the latest incidents to trends over time, as well as the ability to customize visual analytics. Timely reports and tracking by Data Breaches Digest help inform cyber intelligence for the world’s largest law firm and thus our cybersecurity posture across more than 80 countries worldwide.”
Dentons Senior Analyst, Washington D.C.



Monday, 27 October 2025

Data Breaches Digest - Week 44 2025

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 27th October and 2nd November 2025.


30th October

UK retailers hit by surge in AI-powered phishing & vishing scams

29th October

10 npm Packages Caught Stealing Developer Credentials on Windows, macOS, and Linux

Active Exploits Hit Dassault and XWiki - CISA Confirms Critical Flaws Under Attack

AI agents can leak company data through simple web searches

Amid Shutdown, Cyber Attack Thwarts Georgia Supplemental Nutrition Assistance Program (SNAP) Recipients

Apache Warns of Critical Tomcat Vulnerabilities Impacting Versions 9, 10, and 11

Average Cyber-attack Now Costs Firms £2.8 Million, Report Warns

Banking & payroll details stolen in Merkle data breach, Dentsu warns staff

Beast Ransomware Targets Active SMB Connections to Infect Entire Networks

British Standards Institution (BSI) Warns of Looming AI Governance Crisis

Canada says hacktivists breached water and energy facilities

Central Intelligence Agency (CIA) launched cyber attack on Venezuela five years ago

Cisco, Citrix VPNs at 7X higher ransomware risk

Cloud Atlas hackers target Russian agriculture sector ahead of industry forum

Conduent Data Breach Hits Thousands of Blue Cross Blue Shield Members in Montana

Cyber Attack Reported Inside Walt Disney World Theme Park

Data breach hits Dentsu subsidiary Merkle

Dentsu warns staff of data breach after Merkle hit by cyber ‘security incident’

Early reporting helps credit unions stop fraudulent transfers faster

Emerging Cyber Threats Featuring QR Codes ClickFix and LOLBins Challenging SOC Defenses

Employee data from advertising giant Dentsu leaked in hacker attack

Everest Ransomware Group Claims Theft of 1.5 Million Passenger Records from Dublin Airport

Experts Reports Sharp Increase in Automated Botnet Attacks Targeting PHP Servers and IoT Devices

False Reports of Gmail Data Breach Alarm Internet

Former L3Harris Trenchant boss pleads guilty to selling zero-day exploits to Russian broker

Former Security Company Official Pleads Guilty to Stealing Trade Secrets to Sell to Russian Buyer

Former Trenchant executive pleads guilty to selling cyber exploits to Russian broker

GCash data breach report false

GCash denies dark web data breach, assures customers funds are safe

GCash warns users against fake news on alleged data breach

Goosehead Insurance hit with lawsuit over alleged data breach notification delay

Gunra Ransomware Leveraging Attacking Windows and Linux Systems with Two Encryption Methods

Gunra Ransomware Targeting Windows and Linux Systems Through Two Encryption Techniques

Gunra Ransomware Targets Windows and Linux with Dual Encryption

Hackers Hijack Corporate XWiki Servers for Crypto Mining

Hackers Use Near Field Communication (NFC) Relay Malware to Clone Tap-to-Pay Android Transactions

Halloween scams spike as 63% of festive spam found malicious

How Businesses Should Approach the Post-Quantum Cryptography Transition

HSBC USA caught in data breach controversy after Cyber Attack

If you get an email saying you’re dead...it’s the new LastPass phishing scam

Intensifying Iranian, Russian global cyberattacks expand to target small businesses

Jaguar Land Rover cyber attack 'could take six months to recover from'

Korea launches AI-based platform to bolster fight against voice phishing

Korea Telecom (KT) will provide free data and discounts to victims of data breach

LG Uplus joins three major South Korean telecoms hacked this year

'Living off the land' allowed Russia-linked group to breach Ukrainian entities this summer

Malicious Typosquatted npm Packages Deliver Cross-Platform Credential Stealer, Researchers Warn

Marina Bay Sands fined for data breach affecting over 665,000 patrons

Marina Bay Sands fined more than US$243,000 for 2023 data breach that impacted 665,495 rewards members

Marina Bay Sands Fined US$243,400 For Data Breach Involving Over 665,000 Rewards Members

Marks & Spencer cyberattack leads to profit for other UK retailers

Massive Credential Leak Sparks Google Data Breach Allegations

MedImpact purportedly hacked by Qilin

More than 10 million impacted by breach of government contractor Conduent

Nearly Half of Ransomware Victims Who Pay Ransom Can’t Recover Data

New AI-Targeted Cloaking Attack Tricks AI Crawlers Into Citing Fake Info as Verified Facts

New Atroposia RAT Surfaces on Dark Web

New Beast Ransomware Actively Scans for Active SMB Port from Breached System to Spread Across Network

New Beast Ransomware Expands Through Network by Scanning Active SMB Ports

New Phishing Attack Using Invisible Characters Hidden in Subject Line Using MIME Encoding

New research reveals human cost of Ministry of Defence Afghan data leak

NOYB demands criminal sanctions against Clearview AI for GDPR violations

Npm Malware Uses Invisible Dependencies to Infect Dozens of Packages

On-premises VPNs up odds of ransomware victimization

Only 23% of Ransomware Victims Pay the Ransom

Over 1.5 Million Sensitive Records Targeted in Collins Aerospace Data Breach, Hackers Claim

Paterson & Dowding confirms data breach by ransomware group

PhantomRaven attack floods npm with credential-stealing packages

Phishing scams are all trick, no treat

PHP Servers and IoT Devices Face Growing Cyber-Attack Risks

Preparing for the Digital Battlefield of 2026: Ghost Identities, Poisoned Accounts, & AI Agent Havoc

Ransomware Attacks Against Critical Industries Surge

Ransomware hackers are now running Linux encryptors in Windows to stay undetected

Ransomware Predictions for the Rest of 2025: Ecosystem in Flux

Ransomware Spotlight: DragonForce

Reacting slowly to a security breach opens up your business to more threats

Reputation.com exposes 120 million logs in major data leak

Rethinking Data Collection in Identity Security

Russian Hackers Target Ukrainian Organizations Using Stealthy Living-Off-the-Land Tactics

Safepay ransomware gang claims hack on German surveillance provider Xortec

Sanctions won’t stop cyberattacks, but they can still “bite”

Scammers target international students by threatening their visa status

SideWinder Targets Indian Embassy and South Asian Organizations in Sophisticated Phishing Campaign

South Korea: Financial Authorities Launch AI Platform to Block Voice Phishing

‘Stealer Logs’ & ‘Credential Stuffing Lists’ Data Breach Leaks 183 Million Email Passwords

Survey Surfaces Rise in Email Security Incidents Tied to Ransomware

Tasmanian government agencies hit by cyber attack

The US refuses to sign UN’s cybercrime treaty

UK firms confident on ransomware but face rising AI-driven risks

UK watchdog announces rules to stop scammers in their tracks

Were 183 Million Gmail Passwords Stolen? Google Responds to Claims of Data Breach

When Money Moves, Hackers Follow: Europe’s Financial Sector Under Siege

WordPress security plugin exposes private data to site subscribers

28th October

40 Billion Records Exposed From Marketing and Email Data Platform

76% of organizations struggle to combat AI attacks

183 Million Email Passwords Leaked in Global Data Breach

A Quarter of Scam Victims Have Considered Self-Harm

Actively Exploited WSUS Bug Added to CISA Known Exploited Vulnerabilities (KEV) List

Advertising giant Dentsu reports data breach at subsidiary Merkle

Are All Ransomware Gangs Interconnected

At least 49 relatives and colleagues of Afghans affected by the Ministry of Defence's mass data breach 'have been killed'

Australia & New Zealand lag in rapid ransomware recovery rates

Beatings, killings, and lasting fear: The human toll of Ministry of Defence's Afghan data breach

Bengaluru’s Central Crime Branch (CCB) Cyber Crime Wing Busts ₹47 Crore ($5.6 Million) International Cybercrime Racket Linked to Dubai

Booking.com Impersonation Targets Crypto Users in Fake Dubai Summit Scam

Caller ID Spoofing Is a Big Problem. Europol Wants Solutions

CEO of spyware maker Memento Labs confirms one of its government customers was caught using its malware

Chain of security weaknesses found in smart air compressor model

Chrome Zero-Day Actively Exploited in Attacks by Mem3nt0 mori

Chrome Zero-Day Exploited to Deliver Italian Memento Labs' LeetAgent Spyware

CISA warns of two more actively exploited Dassault vulnerabilities

CISA Warns that DELMIA Apriso Vulnerabilities Are Under Attack

Clearview AI sued in Europe over alleged privacy violations

Colegio de Abogados de Rosario Data Breach Exposes Attorneys

Copeland Auto Group Data Breach Affects Dealerships

Critical Flaw CVE-2025-55315 Exposes QNAP NetBak PC Agent to Security Bypass Attacks

Critical Microsoft WSUS Security Flaw is Being Actively Exploited

Cyber extortion success rate declining

Cyber Security Must Be a Board Priority – And It Starts With Cyber Essentials

Cybercriminals Use Invisible Characters in Subject Lines for New Phishing Attack

Data breach at Conduent linked to months-old system compromise

Delay responding to email breaches likely to lead to ransomware attacks

Delayed Breach Response Tied to Higher Ransomware Risk

Dentsu warns staff of data breach after Merkle hit by cyber 'security incident'

Email Passwords Confirmed in Major 183 Million Account Data Breach

Europol calls for European response against caller ID spoofing

Everest group claimed the hack of Sweden’s power grid operator Svenska kraftnät

Everest Leaks AT&T Records, Demands $1M for Dublin Airport Passenger Data

Everest ransomware group claims breach at Sweden’s Svenska kraftnät

Federal Communications Commission (FCC) adopts new rule targeting robocalls

FIA Data Breach Exposes Sensitive Personal Information of F1 Drivers, Including Max Verstappen’s Passport

Form Energy, Inc. Data Breach Affects 622 in Massachusetts

From phishing to deepfakes: Africa faces next generation of cyber threats

Gamaredon Launches New Phishing Campaign Against Government Entities Exploiting WinRAR Vulnerability

Gamaredon Phishing Campaign Exploits WinRAR Vulnerability to Target Government Agencies

Gmail Passwords Confirmed Within 183 Million Account Infostealer Leak

Gmail security alert: 183 Million credentials exposed - are you at risk?

Gmail users told urgent action needed after millions of passwords stolen in data breach

Gmail-Linked Credentials Exposed in Massive Breach

Google Denies Data Breach Claims, Refutes Rumors of 183 million Accounts Leaked

Google Denies Gmail Data Breach Amid Widespread Misreporting

Google pushed to publicly deny false reports of massive Gmail breach

Google says reports of a Gmail breach have been greatly exaggerated

Hackers put 8 Million records of Mexicans’ debt data up for sale

How many companies really shut down after a data breach?

How Threat Intelligence Feeds Help Organizations Quickly Mitigate Malware Attacks

Investment Scams Spread Across Asia With International Reach

Iran-Linked Hacker Group Claims Breach of Israeli Defense Contractor MAYA

Ireland: Cyber Threats Could Force 1 in 4 SMEs to Shut Down After a Ransomware Attack

Italian-made spyware Dante linked to Chrome zero-day exploitation campaign

Jaguar Land Rover (JLR) cyber attack impact 'could last for six months' as small firms hit hard

Jaguar Land Rover (JLR) cyber attack impact 'may last for six months'

Jersey Financial Services Commission (JFSC) avoids fine after data breach impacting nearly 67k people

Kaspersky links spyware attack to Hacking Team successor

LastPass warns of a new phishing campaign involving death certificates and a nefarious email that demands you reply to it if you're not dead

Lawsuit against New York Police Department (NYPD) alleges its surveillance system is unconstitutional

LG Uplus is latest South Korean telco to confirm cybersecurity incident

Managing legacy medical devices that can no longer be patched

Marina Bay Sands fined S$315,000 for 2023 data breach

Marina Bay Sands fined $315,000 over 2023 data breach involving over 600k visitors

Marina Bay Sands fined over major 2023 data breach

Mass Attack Targets WordPress via GutenKit and Hunk Companion Plugins

Massive Data Breach at Kenyan Health Platform M-TIBA; Sensitive Medical and Personal Data of 4.8 Million Users Reportedly for Sale

Massive Data Breach Hits M-Tiba: Millions of Kenyan Health Records Allegedly Exposed

Massive Data Breach Hits Safaricom-Backed M-TIBA, Exposing Millions of Kenyan Patients’ Records

Massive risk: 92% of Exchange servers in Germany unprotected after Microsoft support ends

Mexican Bank Debtor Database Leaked on Dark Web

Microsoft Teams will snitch your location in the office to your boss

Millions of Gmail passwords exposed in massive data breach, experts urge users to act immediately

More Than 10 Million Patients Affected by Conduent Business Solutions Data Breach

Multibillion-dollar bitcoin bridge called out for helping North Koreans launder stolen funds

Nation-State Cyber Ecosystems Weakened by Sanctions, Report Reveals

New Android malware mimics human typing to evade detection, steal money

New Android Trojan 'Herodotus' Outsmarts Anti-Fraud Systems by Typing Like a Human

New Atroposia malware comes with a local vulnerability scanner

New Counter Ransomware Initiative (CRI) guidance calls on organizations to tighten cyber hygiene, risk assessments across supply chains

New Gamaredon Phishing Attack Targeting Govt Entities Exploiting WinRAR Vulnerability

New Herodotus Android malware fakes human typing to avoid detection

New TEE.Fail Side-Channel Attack Extracts Secrets from Intel and AMD DDR5 Secure Enclaves

New Phishing Attack Using Invisible Characters Hidden in Subject Line Using MIME Encoding

No one pays ransomware demands anymore - so attackers have a new goal

Oracle EBS zero-day attacks claim Emerson, Schneider Electric as victims

Organizations That Delay Responding to Email Breaches are 79% More Likely to Suffer a Ransomware Hit

Over 183 million Gmail users issued urgent warning after password data breach

People's Postcode Lottery suffers data breach exposing players' personal details

Premera Members’ Personal Information Exposed in Conduent Data Breach

Proof-of-Concept (PoC) code drops for remotely exploitable BIND 9 DNS flaw (CVE-2025-40778)

Qilin claims large pharmacy benefit manager MedImpact

Qilin ransomware abuses Windows Subsystem for Linux (WSL) to run Linux encryptors in Windows

Qilin Ransomware Targets Windows with Linux-Based Payload

Qilin uses Linux ransomware to evade Windows defenses

Ransomware attacks jumped 28% in September

Ransomware Hackers Look for New Tactics Amid Falling Profits

Ransomware in the healthcare sector: Extortion at all-time high, ransom demands down, stress among teams

Ransomware payments hit record low: only 23% Pay in Q3 2025

Ransomware Profits Plunge to 23% as Victims Shun Payments in 2025

Ravin Academy confirms data breach

RedTiger Malware Steals Data, Discord Tokens and Even Webcam Images

Researchers Expose GhostCall and GhostHire: BlueNoroff's New Malware Chains

Researchers warn of Qilin ransomware gang after group hit hundreds of orgs this year

SideWinder Adopts New ClickOnce-Based Attack Chain Targeting South Asian Diplomats

Sinobi ransomware targets Cavalry Consulting

Surprised, Not Surprised, Ransomware Attacks Have Ticked Up

Svenska kraftnät investigates data breach linked to Everest ransomware group

Sweden power grid confirms cyberattack, ransomware suspected

Swedish Power Grid Operator Confirms Data Breach Following Everest Ransomware Gang Claim

Swedish power grid operator confirms it was hit by hacker attack

SymbolTransport Data Breach Exposes Source Code and Databases

Tata Motors confirms it fixed security flaws, which exposed company and customer data

TEE.Fail attack breaks confidential computing on Intel, AMD, NVIDIA CPUs

The end of ransomware? Report claims the number of firms paying up is plummeting

Treasure Coast Hospice Reports Data Breach Affecting Staff Information

UK: Defense Ministry data breach could have led to the deaths of at least 49 Afghans

UN’s First Global Cybercrime Treaty Sparks Debate Over Privacy and Surveillance

Warning to every Gmail user in Ireland as passwords exposed in massive data breach

Western Australia law firm confirms cyber attack following Anubis ransomware claims

Western Sydney University suffers data breach, again

When Security Is a Matter of Life and Death: The UK Afghan Data Leak

27th October

72 states sign first global UN Convention against Cybercrime

183 Million Email Accounts Breached: Is Yours Affected?

183 Million Gmail accounts leaked in latest online data breach - are you affected?

AI writes code like a junior developer, and security is feeling it

Artificial intelligence fuelling cyber frauds on SMEs

Beware fake credit card account restriction scams

Bristol Student Union data breach saw society instructors' private information accessible

Bug enables researchers to access F1 race drivers’ information via FIA portal

ChatGPT Atlas Browser Can Be Tricked by Fake URLs into Executing Hidden Commands

‘ChatGPT Tainted Memories’ Exploit Enables Command Injection in Atlas Browser

Chiapas Health Secretariat Data Breach Hits State Agency

China-Linked ‘Smishing Triad’ Exploits 194,000 Domains In Global Phishing Campaign

Chrome 0-Day Vulnerability Actively Exploited in Attacks by Notorious Hacker Group

CISA orders feds to patch Windows Server WSUS flaw used in attacks

CISA releases warning about Windows Server Update Service bug, orders agencies to patch

Cities reverse course on automated license plate reader cameras amid privacy concerns

City of Gloversville hit by ransomware attack

Co-op 'told staff to boost vape promotion' in revelation after cyber attack

Crafted URLs can trick OpenAI Atlas into running dangerous commands

Critical WordPress Plugin Bugs Exploited En Masse

Cross-platform ransomware: Qilin weaponizes Linux binaries against Windows hosts

CrowdStrike warns AI-driven ransomware outpacing legacy defenses

Crypto24 Ransomware Hits Bayu Buana Travel and Meinhardt Group

Cyberattack on Jaguar Land Rover Costs Company £1.9 Billion

Cybersecurity executive charged with stealing and selling trade secrets to Russia

Cybersecurity grapples with acute skill gap as threats increase

Cyble warns of sharp rise in ransomware incidents

DDoS, data theft, and malware are storming the gaming industry

Dimarco Group LLC Data Breach Affects 9 in Massachusetts

DomeWatch Leak Exposed Personal Data of Capitol Hill Applicants

Dozens of Afghans say colleagues, relatives killed after UK data breach

Dublin Airport Data Breach Hits 1.5 Million Passengers

Europol Warns of Rising Threat From Caller ID Spoofing Attacks

GCash: No evidence of data breach

GCash assures systems secure amidst alleged data breach

GCash denies 8-million user data breach, even as National Privacy Commission (NPC) launches investigation

GCash denies data breach as privacy commission starts probe

GCash denies data breach claims, assures users of security

GCash finds no evidence of data breach, assures users

GCash says no data breach; Privacy watchdog launches probe, urges vigilance

GCash says no data breach found, systems remain secure

Gerar data breach exposes over 500 GB of youth records

Gloversville hit by ransomware attack, paid ransom

Gmail Data Breach: 183 Million Accounts Compromised - Infostealer Malware Behind Massive Leak

Gmail Data Breach Exposes 183 Million Passwords

Gmail Data Breach Exposes 183 Million Passwords Worldwide

Gmail data breach hits 183 Million Accounts

Gmail Passwords Confirmed As Part Of 183 Million Account Data Leak

Gmail users put on red alert after millions of passwords stolen in huge data breach

Gmail warning as millions of passwords stolen in huge data breach

Gmail warning issued as millions of passwords stolen in data breach

Google disputes false claims of massive Gmail data breach

Google issues statement after reports of Gmail 'data breach' affecting 183 million users

Hackers exploiting Windows updates: Microsoft urges users to patch

HSBC USA data breach exposes client transactions, hackers claim

Investigation launched after Dublin airport passenger data published online in Collins Aerospace data breach

Iran's school for cyberspies could've used a few more lessons in preventing breaches

Iranian Intel-Linked Cybersecurity School Hit by Data Breach

Israeli IT Firm Sensory Hit by Major Data Extortion Attack

Italian spyware vendor linked to Chrome zero-day attacks

Italian-made spyware spotted in breaches of Russian, Belarusian systems

Journalists outline Ministry of Defence (MOD) secrecy in Afghan data breach

Landmark data breach penalty a warning to Australian businesses, with more penalties expected

LastPass ‘digital will’ phishing attack uses fake death certificate emails

Linux variant of Qilin Ransomware targets Windows via remote management tools and BYOVD

LockBit 5.0 expands targeting amid ransomware escalation

LockBit ransomware reemerges after 2024 takedown

M-TIBA Data Breach Exposes Kenyan Healthcare Platform Data

Major Gmail data breach as 183 million users 'compromised'

Marina Bay Sands fined US$243k over 2023 data breach involving 665,000 clients

Marks & Spencer Cuts Ties With Tata Consultancy Services Amid £300m Cyber Attack Fallout

Marks & Spencer (M&S) ditches IT service desk tie up with Tata Consultancy Services (TCS) following high profile cyber attack on UK retailer

Marks & Spencer ends contract with IT service desk Tata Consultancy Services (TCS) months after cyberattack

Marks & Spencer (M&S) ends IT contract with Tata Consultancy Services (TCS) following £300m cyber-attack

Massive China-Linked Smishing Campaign Leveraged 194,000 Domains

Microsoft Copilot Studio agents exploited in new phishing campaign

Millions of Gmail passwords stolen in massive data breach

Millions of passengers possibly affected by cyber breach at Dublin Airport supplier

Muji Online Stores Taken Offline After Ransomware Attack on Logistics Partner Askul

Netherlands Software Firm Irias Suffers Source Code Data Breach

New ChatGPT Atlas Browser Exploit Lets Attackers Plant Persistent Hidden Commands

New corporate espionage claims emerge, centered on two highly valued 401(k) admin startups

New HyperRat Android Malware Sold as Ready-Made Spy Tool

'Not due to cyber attack': Tata Consultancy Services (TCS) dismisses UK media report; reveals why Marks & Spencer didn't renew contract

Over a million airline records stolen in Everest group hack

PayPal Warns Consumers About Rising Phishing Scams This Cybersecurity Month

Phishing emails target LastPass users

Phishing scam uses fake death notices to trick LastPass users

QBE predicts 40% rise in ransomware incidents by 2026

Qilin Ransomware Combines Linux Payload With Bring Your Own Vulnerable Driver (BYOVD) Exploit in Hybrid Attack

Qilin ransomware escalates rapidly in 2025, targeting critical sectors with 700 attacks amid RansomHub shutdown

Qilin Ransomware Exploits MSPaint and Notepad to Find Sensitive Information

Qilin Ransomware Exploits MSPaint and Notepad to Locate Sensitive Files

Qilin Ransomware Gang Claims Attack on City of Sugar Land, 800GB Allegedly Leaked

Qilin Ransomware Group Publishes Over 40 Cases Monthly

Qilin Ransomware Group’s TTPs Examined by Researchers

Qilin Ransomware Leveraging Mspaint and Notepad to Find Files with Sensitive Information

Qilin Ransomware’s Evolving Attack Methods Include Leveraging VPN Credentials Exposed on the Dark Web

Qilin Targets Windows Hosts With Linux-Based Ransomware

QNAP warns of critical ASP.NET flaw in its Windows backup software

Ransomware Group Everest Takes Credit for Collins Aerospace Breach

Ransomware Payments Dropped in Q3 2025

Ransomware profits drop as victims stop paying hackers

Ransomware, extortion groups adapt as payment rates reach historic lows

RIBridges Data Breach Affects 650,000 Individuals

Rising brute-force attacks signal looming ransomware threats, experts warn

Royal Thai Army Enlistment Portal Data Breach

Russian hackers claim Dublin airport hack

South Africa Faces Surge in Cyber Attacks, Leads Africa in Reported Incidents

Sweden’s Power Grid Operator Admits Data Breach Linked to Everest Ransomware Gang

Sweden’s power grid operator confirms data breach claimed by ransomware gang

Tata Consultancy Services Refutes Losing Marks & Spencer (M&S) Contract After Cyber-Attack

Thailand’s Department of Agricultural Extension (DOAE) Data Breach

The Philippines: National Privacy Commission (NPC) probes alleged GCash data breach; e-wallet denies leak

The Philippines: National Privacy Commission (NPC) probes alleged GCash data breach; firm says systems remain secure

Three Factors Determine Whether a Ransomware Group is Successful

Travere Therapeutics Data Breach Exposes Social Security Numbers

Turkiye: 6 arrested in Istanbul data breach probe linked to app

UK Fraud Cases Surge 17% Annually

UK issues safeguards against supply chain ransomware attacks

Urgent warning to Gmail users as 183 MILLION passwords are stolen in data breach - here's how to check if your account is affected

US declines to join more than 70 countries in signing UN cybercrime treaty

Vibra Hospital Data Breach: Employee Emails Hacked

Whisper 2FA: The New Phishing Tool That Steals Microsoft 365 Credentials

Why ransomware group names don’t matter for defense

Xortec reportedly targeted by Safepay ransomware group

Your logins could be among 180 Million just added to Have I Been Pwned - how to check for free

Wednesday, 22 October 2025

Ransomware Operator Claims - Week 42 2025

Welcome to last week's ROC Report, an exclusive summary of Ransomware Operator's global victims that were claimed during the period between 13th October and 19th October 2025, kindly assisted by our partners.

DBD discovered and researched 201 Ransomware Victims over 39 Countries and Islands claimed by 33 Data-Leaking Ransomware Operators including 1 Newly Discovered Ransomware Operator last week.

For further analysis on these (and any historic) Ransomware Operator Claims, including the Victim Names and Industry Sectors attacked, please use our PRiSM application.

Download PDF



Data Source: Data Breaches Digest. Flag Icons created by Freepik and provided by Flaticon.


Monday, 20 October 2025

Data Breaches Digest - Week 43 2025

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 20th October and 26th October 2025.


26th October

AI-Driven Ransomware: A Rising Danger That Could Jeopardize Your Business

Clickfix Scams Skyrocket 500%, Outpace Phishing Defenses

Collins Aerospace: Old Passwords and Delayed Response Enable Data Theft

Cyberattack on Dublin Airport supplier could’ve affected millions customers

Cybersecurity Threats Targeting Medical Practices And How to Stay Ahead

DAA (Dublin Airport Authority) launches probe into data breach at Dublin Airport

Dublin Airport bosses issue urgent ‘unusual activity’ alert to customers over data breach affecting month of travel

Everest Ransomware Says It Stole 1.5 Million Dublin Airport Passenger Records

Find Out If Your Email Was Compromised in a Massive Data Breach Affecting 183 Million Addresses

Gloversville hit by ransomware attack

Gmail Passwords Confirmed As Part Of 183 Million Account Data Breach

Hackers steal Discord accounts with RedTiger-based infostealer

Harbor Data Breach Exposes Patients' Social Security Numbers

Households urged to follow 5 Wi-Fi router rules as nearly half of Brits at risk of cyber attack

Phishing Scam: Hackers Target LastPass Users With Fake Legacy Account Emails

Qilin ransomware by the numbers: a look inside one of the most prolific groups

Right at Home confirms data breach following ransomware attack

Safepay ransomware group claims the hack of professional video surveillance provider Xortec

Scammers Take Advantage of LastPass Legacy Recovery

Sixty-Five Nations Sign First UN Treaty To Fight Cybercrime, In Milestone For Digital Cooperation

South Africa is under cyber attack

Uncovering Qilin attack methods exposed through multiple cases

Why Britain is struggling to stop the ransomware cyberattacks

25th October

17,600,000 Customers Impacted by Massive Data Breach at US Fintech Firm – Names, Social Security Numbers, Credit Records and More Potentially Exposed

Agenda Ransomware Actors Deploying Linux RAT on Windows Systems Targeting VMware Deployments

AI-Powered Ransomware Is the Emerging Threat That Could Bring Down Your Organization

AVKiller + HeartCrypt: The Combo That Opens the Door to Ransomware

Co-op staff told to boost promotion of vapes after costly cyber-attack, document shows

CoPhish Attack Exploits Copilot Studio Agents to Steal Microsoft OAuth Tokens

Defective block homeowners warned their data may have been accessed in a cyberattack

Incarcerated hacker Anonymous hacked prison system and cut off prisoners’ sentences

La Vergne City Services to Partially Reopen Following Suspected Cyber Attack

LastPass Warns ‘Are You Dead?’ Master Password Hack Attacks Ongoing

Massive Data Breach at Dublin and Cork Airports Exposes Millions of Passengers - Is Your Travel Information at Risk

New CoPhish attack steals OAuth tokens via Copilot Studio agents

New cyber attack campaign by the BO Team group

New Phishing Attack Bypasses Using UUIDs Unique to Bypass Secure Email Gateways

New Text Message Based Phishing Attack from China Targeting Users Around the Globe

Number of passengers affected by DAA (Dublin Airport Authority) data breach not yet clear

Passenger data breach in Dublin and Cork airports affecting full month of holiday travel

Payroll scam hits US universities as phishing wave tricks staff

Phishing Alert: Scammers Exploit LastPass Legacy Account Recovery

Pro-Russian hackers tried to take down Spain - Here’s what really happened

Probe underway following data breach at Dublin Airport

Ransomware: the digital threat Zimbabwe can’t ignore

Ransomware Actors Targeting Global Public Sectors and Critical Services in Targeted Attacks

Taylor Swift Eras Tour hacker pleads guilty to felony charge over $635k ticket resale scheme

Toys R Us Canada Data Breach Leaks Customer Info on Dark Web

UN cybercrime treaty to be signed in Hanoi to tackle global offences

Western Sydney University data breach saga continues

24th October

3,000 YouTube Videos Exposed as Malware Traps in Massive Ghost Network Operation

A stealthy new phishing kit targeting Microsoft 365, Barracuda uncovers

Agenda ransomware abusing remote access, backup tools to escalate attacks on critical infrastructure in 2025

Agenda Ransomware Actors Target VMware Deployments with Linux-Based RAT on Windows Systems

Agri-Food and Biosciences Institute (AFBI) data breach relates to lab tests

AI Can’t Fix Human Error, But It Can Redesign Cybersecurity Around It

Air passenger boarding pass data breach under investigation

Albert Heijn franchisee targeted by ransomware attack, passports and personal information stolen

APT36 Targets Indian Government with Golang-Based DeskRAT Malware Campaign

Are AI browsers worth the security risk? Why experts are worried

Assemblée Nationale Data Breach Exposes Personal Information

Baohuo Android Malware Hijacks Telegram Accounts via Fake Telegram X

Blitz Spear Phishing Campaign Targets NGOs Supporting Ukraine

Car production plunged in September as the UK's motor manufacturing sector reeled from Jaguar Land Rover's cyber attack shutdown

CDS Data Breach Exposes 7,295 Texans' Information

China-Linked Smishing Triad’s $1 Billion Phishing Campaign Targets Banks, Crypto

Cocamar Cooperativa Agroindustrial Data Breach

Comcast data exposed by Medusa ransomware gang

Compromised YouTube Accounts Used to Distribute Infostealer Malware

Confidence in ransomware recovery is high but actual success rates remain low

Counter Ransomware Initiative stresses importance of supply-chain security

Critical WSUS flaw in Windows Server now exploited in attacks

Cyber Insurance for Small and Medium-Sized Businesses

Cyberattack on Russia’s food safety agency reportedly disrupts product shipments

Data breach impacts Toys “R” Us Canada customers

Delete this mobile internet browser immediately, it hides a malicious virus and steals data

Did you shop at Toys ‘R’ Us Canada? Company warns of data breach. Here’s what Ontario customers need to know

Digital WarRoom Data Breach Exposes Social Security Numbers

Dublin Airport passenger data could be compromised following cyber breach by criminal gang

Emojis cover your child’s face in photos, but not their identity

Europol Dismantles SIM Farm Operation Linked to International Cybercrime Network in 80 Countries

Everest Ransomware Claims AT&T Careers Breach with 576K Records

Extortion and ransomware drive over half of cyberattacks

Fake LastPass death claims used to breach password vaults

Fédération Internationale de l’Automobile (FIA) Data Breach exposes information of over 7000 drivers including Max Verstappen

Fujifilm Biotechnologies Data Breach Exposes Social Security Numbers

Google, TikTok, Comcast hand over “anarchist’s” data to FBI following United States Attorney General Pam Bondi death threat

Greater Cincinnati Behavioral Health Services to pay up to $850,000 in ransomware settlement

Hacker group infiltrates Israeli defense firm, exposes classified tech

Hackers hijack company e-mails for South African Revenue Service (SARS) court scam

Hackers launch mass attacks exploiting outdated WordPress plugins

Hackers steal medical records and financial data from 1.2 Million patients in massive healthcare breach

How Artificial Intelligence Is Amplifying Data Breach Risks - and Enhancing Mitigation

How to check if you're affected by data breach compromising 183,000,000 email addresses

How to Keep Ourselves Safe from AI as it Evolves

India targeted by new Transparent Tribe attack campaign

International Social Survey Programme (ISSP) Data Breach Exposes 7.3 Million Records

Investigation launched into Dublin Airport passenger data breach

iOS 26 update erases critical trace files used to identify Pegasus intrusions

Iran's MuddyWater wades into 100+ government networks in latest spying spree

Ireland: Data breach may have exposed details of almost 700 mica-affected homeowners

Ireland: Defective block grant scheme firm hit by cyber attack

Jaguar Land Rover (JLR) Cyber Attack: The Lasting Impact on Suppliers

Jaguar Land Rover (JLR) Cyber Attack Continues to Impact Parts Suppliers

Jaguar Land Rover (JLR) cyber attack drags UK car production down 27%

Jaguar Land Rover cyber attack hammers UK car production

Jaguar Land Rover cyber attack pushes overall UK car production down more than a quarter

Jaguar Land Rover (JLR) cyber-attack caused UK car production to hit 70-year low for September

Legacy Health Data Breach Affects 4,031 Texans

Linux RATs on Windows: Ransomware Actors Target VMware Deployments

Massive scam campaign lures CometAI users with fake downloads - don't fall for it

Microsoft blocks risky file previews in Windows File Explorer

Microsoft Issues Emergency Patch for Critical WSUS Remote Code Execution Flaw (CVE-2025-59287)

Microsoft releases urgent fix for actively exploited WSUS vulnerability (CVE-2025-59287)

New Details Emerge on January Ransomware Attack at OYO Las Vegas

New LockBit Ransomware Victims Identified by Security Researchers

New Phishing Wave Uses OAuth Prompts to Take Over Microsoft Accounts

Newcomers Fuel Ransomware Explosion in 2025 as Old Groups Fade

Newly Patched Critical Microsoft WSUS Flaw Comes Under Active Exploitation

Nintendo warns customers about Switch Online phishing scam

North Korean Hackers Deploy “Drone” Malware in Targeting of European UAV Manufacturers

North Korean hacking group targeting European drone maker with ScoringMathTea malware

OpenAI's Atlas browser has a security flaw that could expose your private info

Origin Energy Reports Data Breach Linked to Former Employee

OYO Las Vegas Ransomware Leak Exposes Data of Thousands

Phishing Campaign Exploits Unique UUIDs to Evade Secure Email Gateways

Phishing Campaign Uses Unique UUIDs to Evade Secure Email Gateways

Probe launched as Dundee City Council staff hit by pensions data breach

Ransomware: Increased attacks on hypervisors

Ransomware Actors Targeting Global Public Sectors and Critical Infrastructure

Ransomware Attacks Have Soared in 2025 as New Leaders Emerge

Ransomware Groups Launch Coordinated Attacks on Government and Critical Services Worldwide

Ransomware recovery perils: 40% of paying victims still lose their data

Ransomware Reporting Consultation: What Schools Need to Know

Ransomware Still Tops Maritime Cyber Risks

Scammers try to trick LastPass users into giving up credentials by telling them they’re dead

Self-Spreading 'GlassWorm' Infects VS Code Extensions in Widespread Supply Chain Attack

SessionReaper Exploits Erupt as Magento Sites Lag on Patching

'Severe vulnerability': World champion's private information caught up in FIA cyber incident

Soft opening planned for La Vergne city offices following cyber attack

Smart helmet tech points to the future of fighting audio deepfakes

Smishing Triad activity on the rise, report finds

Smishing Triad Linked to 194,000 Malicious Domains in Global Phishing Operation

South Korea: LG Uplus discloses data breach, joining rivals

Taylor Swift Eras Tour Hacker Pleads Guilty to Felony Charge Over $635K Ticket Resale Scheme

Teenagers appear in court over Transport for London (TfL) cyber attack

The cost of complacency: Navigating the high stakes of modern cybersecurity

The Cybersecurity Perception Gap: Why Executives and Practitioners See Risk Differently

The UK built fewer cars last month after Jaguar Land Rover cyber attack

Threat Actors Advancing Email Phishing Attacks to Bypass Security Filters

Threat Actors Ramp Up Public App Exploits as ToolShell Gains Traction

Toys “R” Us Canada Confirms Customer Data Breach After Dark Web Leak

Toys “R” Us Canada confirms data breach after customer information leaked online

Toys “R” Us Canada Confirms Data Breach – Customers Personal Data Stolen

Toys “R” Us Canada Confirms Data Breach Customers’ Personal Information Stolen

Toys “R” Us Canada Data Breach Exposes Customer Personal Information

Toys "R" Us customer data swiped and leaked online - here's what we know

Toys ‘R’ Us data breach: What customer data was exposed?

Turkiye: 15 arrested in data breach of Istanbul Municipal app affecting 4.7 million users

Turkiye: Probe launched over alleged data breach linked to Istanbul municipality

UK: Car production slumps to a 73-year low after Jaguar Land Rover (JLR) cyber-attack

UK: Cyber attack hits vehicle output with new risk arising from tax charge on auto workers

UK car industry 'under immense pressure' as production drops after Jaguar Land Rover cyber attack

UK car production hit by Jaguar Land Rover (JLR) cyber attack; workers’ access to cars at risk

UK car production plummets amid Jaguar Land Rover (JLR) cyber attack

UK car production plunges to lowest level since 1952 after Jaguar Land Rover cyber attack

UK leads global fight to stop ransomware attacks on supply chains

UK ramps up ransomware fightback with supply chain security guide

Universal Music Group Japan Data Breach Exposes Millions of Customer Records

US to attend UN cybercrime treaty signing in Hanoi despite industry concerns

Warlock Ransomware Actors Exploiting Sharepoint ToolShell Zero-Day Vulnerability in New Attack Wave

Western Sydney University Confirms Data Security Breach Affecting Students and Staff

What Microsoft’s 2025 report reveals about the new rules of engagement in cyberdefense

When AI writes code, humans clean up the mess

Windows Server emergency patches fix WSUS bug with PoC exploit

23rd October

$2.5 billion: The cost of the Jaguar Land Rover cyber attack

7.3 Million Job Seekers' Data Stolen by Hacker - Incruit Fined 463 Million Won

93% of Ransomware Victims Lose Data - Even After Paying

183 Million Synthient Stealer Credentials Added to Have I Been Pwned

A Real-Life Horror Story: When AI Ghouls Move Faster Than Defenses Can React

Agenda Ransomware Deploys Linux Variant on Windows Systems Through Remote Management Tools and Bring Your Own Vulnerable Driver (BYOVD) Techniques

Agri-Food and Biosciences Institute (AFBI) launches investigation into data breach

AI Agents Need Security Training - Just Like Your Employees

AI Sidebar Spoofing Attack: SquareX Uncovers Malicious Extensions that Impersonate AI Browser Sidebars

AI writes better scam emails than humans; here’s why that matters

AI-driven ransomware surges across Asia Pacific

AI-Powered Deepfakes and Phishing Put Africa on High Alert

Astounding cost of crippling Jaguar Land Rover ransomware attack revealed

Canada: Toys ‘R’ Us says a data breach this summer hit customers’ personal data

CISA warns of Lanscope Endpoint Manager flaw exploited in attacks

City of Hope Reaches Settlement Over 2023 Data Breach

Critical Adobe Commerce, Magento vulnerability under attack (CVE-2025-54236)

Critical Lanscope Endpoint Manager Bug Exploited in Ongoing Cyberattacks, CISA Confirms

Cryptocurrency platform Cryptomus hit with $176 million fine in Canada

Cyber attack on Jaguar Land Rover estimated to cost UK economy £1.9 billion

Cyber attack on Jaguar Land Rover 'single most financially damaging' to hit UK

Don't be fooled by this massive YouTube scam network - how to protect yourself

Elmcrest Children’s Center confirms data breach after ransomware attack compromises sensitive information

F5 breach exposes powerful backdoor exploited by China-linked hackers

Former Polish official indicted over spyware purchase

Gatineau gymnastics centre warns members of possible data breach

German state minister accuses Alternative für Deutschland (AfD) of spying for the Kremlin

GlassWorm Malware Targets Developers Through OpenVSX Marketplace

Global SMS Phishing Campaign Traced to China Targets Users Worldwide

Greater Cincinnati Behavioral Health Services Pays $850K to Settle Data Breach Litigation

Growing threat of Ransomware: AI's role in attacks

Hackers access F1 drivers’ private data in FIA security breach

Hackers breached Legal Aid Agency (LAA) system four months before attack

Hackers posing as Kyrgyzstan officials target Russian agencies in cyber espionage campaign

Hosteur Data Breach

How Lazarus Group used fake job ads to spy on Europe’s drone and defense sector

HSBC USA Customer Data Breach Exposes Sensitive Financial Info

Incident Response (IR) Trends Q3 2025: ToolShell attacks dominate, highlighting criticality of segmentation and rapid response

Iran-Linked MuddyWater Launches Phoenix Backdoor Espionage Campaign via Compromised Accounts

Iranian MuddyWater hackers use compromised mailboxes for global phishing scams

Jaguar Land Rover (JLR) cyber attack ‘most financially damaging in UK history’

Jaguar Land Rover (JLR) Cyber-Attack Costs UK Economy £1.9 Billion, Most Expensive in History

Jaguar Land Rover cybersecurity incident is the “most damaging event” in the history of the UK

Jaguar Land Rover hack cost UK economy an estimated $2.5 billion, report says

Japanese companies brace themselves for more attacks as cybercrimes climb

Jazeera Airways Data Breach Exposes 15 Million Passengers

Jewett-Cameron Discloses Security Breach Affecting Confidential Data

"Jingle Thief" Hackers Exploit Cloud Infrastructure to Steal Millions in Gift Cards

Jingle Thief Hackers Exploit the Festive Season with Weaponized Gift Card Scams

Lanscope Endpoint Manager vulnerability exploited in zero-day attacks (CVE-2025-61932)

Lazarus Group now using fake job ads to target European drone manufacturers

Lazarus Group’s Operation DreamJob Targets European Defense Firms

Lending Platform Prosper Leaks Sensitive Personal Information Following a Data Breach

LG Uplus reports cyberattack on servers following similar breaches at SK Telecom, Korea Telecom (KT)

LG Uplus Reports Suspected Data Breach, Claims Active Response to 'Hacking'

LockBit Returns - and It Already Has Victims

Lumma Stealer Vacuum Filled by Upgraded Vidar 2.0 Infostealer, Researchers Say

Major data breach at Australian university exposes private financial and health details of students

Major Sydney university reveals personal data including bank account details and legal information exposed in data breach

Major Vulnerabilities Found in TP-Link VPN Routers

Medusa Ransomware Leaks 834 GB of Comcast Data After $1.2M Demand

Meta offers its Facebook, Instagram and WhatsApp users new age AI Scam Review

MetaMask Leads $400 Million Push to Stop Global Crypto Phishing

Microsoft alerts Africa to AI-facilitated attacks, $484m losses to cybercriminals

Microsoft Digital Defense Report 2025: Extortion and Ransomware Lead Global Cybercrime Surge

Mimecast Report: AI Phishing and ClickFix Attacks Explode

Moroccan hackers caught using nation-state-levels of deception just to steal gift cards

Nelson woman accused of data breach to stand trial

North Korean Hackers Lure Defense Engineers With Fake Jobs to Steal Drone Secrets

North Korean Lazarus hackers targeted European defense companies

Origin confirms data breach after former staffer allegedly exfiltrated details of over 700 individuals

Origin Energy confirms data breach involving credit cards

Origin Energy hit by insider-led data breach

Over 250 Magento Stores Hit Overnight as Hackers Exploit New Adobe Commerce Flaw

OYO Las Vegas Hotel-Casino Data Breach Spurs Legal Battles

Pakistani-Linked Hacker Group Targets Indian Government

PhantomCaptcha RAT Attack Targets Aid Groups Supporting Ukraine

Phishing campaign across Mideast, North Africa is attributed to Iranian group

Prosper Marketplace Data Breach Expands: 17.6 Million Users Impacted in Database Intrusion

Qantas Phishing Scam Targets Frequent Flyers

Rad TV Data Breach Exposes 884k Users

Radiant Capital Hacker Launders $10.8M Through Tornado Cash Mixer

Radiant Capital hacker moves $10.8M into Tornado Cash

Radiant Capital Hack Sees $10.8M Laundered in Ethereum

Ransomware attack disrupts Jewett-Cameron operations

Ransomware Attacks Disrupt Global Companies

Ransomware groups surge as automation cuts attack time to 18 mins

RedTiger infostealer targeting gamers and Discord accounts

Remote Code Execution (RCE) Vulnerability (CVE-2025-62518) Discovered in Popular Rust Library async-tar and Its Forks

Report Details Russia’s Evolving Cybercrime Ties, Active Management of Domestic Hackers

Researchers expose large-scale YouTube malware distribution network

Researchers track surge in high-level Smishing Triad activity

Rhode Island Public Transit Authority (RIPTA), United Healthcare settle data breach lawsuit with Rhode Island American Civil Liberties Union (ACLU)

River City Eye Care reports data breach following cyberattack claimed by Genesis threat group

Security Alliance (SEAL) partners with MetaMask, others to strengthen global phishing defense network

Sedgebrook Data Breach Affects 3 Massachusetts Residents

Shadow Escape 0-Click Attack in AI Assistants Puts Trillions of Records at Risk

Shiba Inu Issues Urgent Warning Over New Phishing Scam Targeting Investors

Shiba Inu Security Alert: Phishing Scam Targets SHIB Holders’ Wallets

SideWinder APT Group Evolves Tactics, Deploys New ClickOnce Malware

SocGholish spreads ransomware via weaponized software updates

South African Revenue Service (SARS) phishing alert: What to do if you receive a ‘final demand - debt management’ email

South Korea: Half of Agricultural Cooperative Voice Phishing Damage Hits Seniors Over 60

South Korea: Personal Information Protection Commission (PIPC) Fines Incruit 400 Million Won for 7.27 Million Data Breach

SpaceX bricks thousands of Starlink kits used in scams

Spoofed AI sidebars can trick Atlas, Comet users into dangerous actions

Tax file numbers and health information: Western Sydney University suffers major cyber breach

Tea app banished from Apple App Store

The Laxmi Niwas Palace Hit by Nova Ransomware Attack

The next cyber crisis may start in someone else’s supply chain

The true cost of cyber attack losses - and why cyber cover should not be a hard sell

Toys "R" Us Canada customers notified of breach of personal information

Toys 'R' Us Canada notifies customers of breach that may have compromised personal data

Toys “R” Us Canada warns customers' info leaked in data breach

U.S. Accuses Former Security Company Official of Stealing Trade Secrets to Sell to Russian Buyer

U.S. government accuses former L3Harris cyber boss of stealing trade secrets

UK cyber law delays 'deeply concerning,' say MPs

Ukraine aid groups, officials hit with PhantomCaptcha spear-phishing campaign

UN cybercrime pact to be signed in Hanoi, Vietnam raises hopes, concerns

Warlock Ransomware Actors Target SharePoint ToolShell Zero-Day in Latest Attack Campaign

Warlock Ransomware Exploits SharePoint ToolShell Zero-Day in New Attack Campaign

WazirX to Resume Exchange Operations After 15-Month Hiatus Following Cyberattack

Western Sydney University confirms personal data stolen in latest cyber attack

When “It’s Always DNS” Becomes Your Security Advantage

Your phishing detection skills are no match for 2025's biggest security threats

Your wearable knows your heartbeat, but who else does?

Zero Trust Has a Blind Spot - Your AI Agents

22nd October

£1.9 billion price tag makes Jaguar Land Rover (JLR) Britain’s most expensive cyber attack

$400 Million Vanished in Crypto Heists - How MetaMask and Wallets Are Finally Fighting Back

1,600,000 Americans Set To Receive Up To $2,500 in Data Breach Lawsuit Involving Six Insurance Companies

Active Ransomware Gangs in the Current Cyber Landscape

AI-Powered Attacks Outpace Global Cyber Defenses

AI-Powered Ransomware Wave Sweeps APAC, Exploiting VPNs and Cloud Weaknesses

AI-powered tools advance Ransomware-as-a-Service (RaaS) operations

Attackers target retailers’ gift card systems using cloud-only techniques

Attackers turn trusted OAuth apps into cloud backdoors

Auction House Sotheby’s Data Breach Leaks Sensitive Personal Information

Bitter APT Exploiting Old WinRAR Vulnerability in New Backdoor Attacks

Blue Cross Blue Shield of Montana investigated over data breach

Bombay High Court Tells Department of Telecommunications (DoT) to Block Medusa Accounts After Generali Insurance Data Breach

Brazil: Gerar Targeted in Massive Data Breach

Brazilian “Caminho” Loader Turns Images into Malware Delivery Chain

China accuses US of cyberattack against National Time Service Center

Chinese Threat Actors Exploit ToolShell SharePoint Flaw Weeks After Microsoft's July Patch

Class-action lawsuit filed against Wilkes University over data breach

Companies want the benefits of AI without the cyber blowback

CrowdStrike 2025 Report Reveals AI-Driven Ransomware Surge in Asia-Pacific and Japan (APJ)

Cyber attack costs Jaguar Land Rover dearly

Cyber attack on Jaguar Land Rover 'most financially damaging' in UK history, experts say

Cyber incidents in Texas, Tennessee and Indiana impacting critical government services

Cyberattack Disrupts Operations at Heywood and Athol Hospitals in Massachusetts

Cybercrime costs in Africa soar to $484 million as AI reshapes attacks

DisplayMedia and DMCware Admin Access and Database Sale

Escaping the Detection Trap: Is Endpoint Detection and Response (EDR) Giving You a False Sense of Security?

Extortion and ransomware drive over half of cyberattacks

ExtraHop Report Finds Ransomware Payouts Hit Record Highs as Attackers Adapt

Fake job offers leveraged in Facebook credential phishing campaign

Fake Nethereum NuGet Package Used Homoglyph Trick to Steal Crypto Wallet Keys

Fencing and Pet Company Jewett-Cameron Hit by Ransomware

Figment POS Data Breach Results in Stolen Source Code

For blind people, staying safe online means working around the tools designed to help

Fraser Child and Family Center Agrees to $750,000 Data Breach Settlement

From Phishing To Skimming: 5 Smart Ways To Protect Yourself From Credit Card Fraud

George E. Weems Hospital Data Breach Affects Two Accounts

Google Recruiter Phishing Scam Targets Desperate Tech Workers

Hackers exploiting critical "SessionReaper" flaw in Adobe Magento

Hackers target Home Depot customers with new fall phishing scam

Half of 2025 ransomware attacks hit critical sectors as manufacturing, healthcare, and energy top global targets

Historic Cyber Attack Hits Jaguar Land Rover with $2.55 Billion Blow

Hong Kong: Lok Sin Tong Leung Kau Kui College investigated over student data breach during China trip preparation

How Clickfix and AI are helping hackers break into your systems - at an alarming rate

How Ransomware Contributes to Rising Healthcare Costs

How ransomware economics drives the global cybercrime industry

How “Unseeable Prompt Injections” Threaten AI Agents

Impact of Jaguar Land Rover (JLR) cyber attack estimated at almost £2 billion, say industry experts

India: dmwapp Data Breach Exposes User and Payment Records

Information Commissioner’s Office (ICO) insists it was right not to investigate Ministry of Defence (MoD) data breach

Inside the Growth of Insider Threats

Integris Health reaches $30 million settlement in data breach lawsuit affecting 2.4 million patients

Iran-Linked MuddyWater Targets 100+ Organisations in Global Espionage Campaign

Iranian hackers targeted over 100 government organizations with Phoenix backdoor

Jack's Family Restaurants Data Breach Affects Employee PII

Jaguar Land Rover (JLR) cyber attack becomes UK’s costliest ever, wiping £1.9bn from economy

Jaguar Land Rover (JLR) cyber attack causes record £1.9 billion UK impact

Jaguar Land Rover cyber attack confirmed as UK’s most costly, with £1.9 billion impact

Jaguar Land Rover cyber attack cost the UK economy $2.55 billion

Jaguar Land Rover cyber attack cost UK €2.2 billion

Jaguar Land Rover cyber attack could be most costly in UK history costing around £1.9 billion

Jaguar Land Rover (JLR) cyber attack 'most financially damaging ever to hit the UK'

Jaguar Land Rover cyber attack the costliest in UK history

Jaguar Land Rover Cyber-attack Estimated to be the Most Costly in UK History

Jaguar Land Rover (JLR) cyber-attack estimated to have cost £1.9 billion

Jaguar Land Rover cyberattack cost $2.5 billion, says monitoring group

Jaguar Land Rover (JLR) Hack: Inside the £1.9 Billion Cyber Attack

Jaguar Land Rover hack has cost UK economy £1.9 billion, experts say

Jaguar Land Rover (JLR) hack is costliest cyber attack in UK history, say analysts

Jaguar Land Rover (JLR) hack UK's Costliest Ever, Hitting Economy with £1.9 Billion Loss

Jaguar Land Rover ransomware attack had $2.8 Billion economic impact in UK

Life, death, and online identity: What happens to your online accounts after death?

Lithuanian police bust major bot farm, 75K SIM cards seized

Major crypto platforms team up against phishing threat

Major crypto wallets raise defense network as phishers jack $400 Million

Meta launches new anti-scam tools for WhatsApp and Messenger

MetaMask and wallets unite after $400 Million stolen in phishing attacks

MetaMask, Phantom join Security Alliance (SEAL) to launch real-time phishing defense network

MetaMask, Phantom Lead Global Phishing Defense Effort After $400 Million in Crypto Scams

Microsoft targeted by 40% of brand phishing attacks in Q3

Millions relying on just one password for everything: does it still matter?

Mo money, mo automation: The evolution of modern ransomware

MuddyWater Uses Compromised Mailboxes in Global Phishing Campaign

New Tykit Phishing Kit Mimics Microsoft 365 Login Pages to Steal Corporate Account Credentials

Nintendo Confirms Data Breach After Hacker Group Claims Theft of Sensitive Corporate Data

Patron Insurance confirms data breach after Akira ransomware attack exposes sensitive information

PhantomCaptcha Campaign Targets Ukraine Relief Organizations

PhantomCaptcha ClickFix attack targets Ukraine war relief orgs

'PhantomCaptcha' hackers impersonate Ukrainian president’s office in attack on war relief workers

Phishing Attacks and Crypto Payroll Security: A Growing Threat

Phishing drain of $400 Million drives wallets to create joint security shield

Phishing Scams Weaponize Common Apps to Fool Users

Protected health information of 462,000 members of Blue Cross Blue Shield of Montana involved in Conduent data breach

Protecting Payments: How a Multilayer Defense Addresses Modern Banking Scams

Qilin Ransomware Attack Hits Northern Light Technologies and ATR

Ransomware Activity Report Reveals 36% Increase in Q3 Ransomware Attacks

Ransomware Attack on Askul Disrupts Muji’s Retail Operations

Ransomware Attack on Askul Ripples Across Japan’s Retail Sector

Ransomware Attacks Escalate in APAC Targeting VPN Flaws, Microsoft 365 Logins, Python Scripts

Ransomware gang steals meeting videos, financial secrets from fence wholesaler

Ransomware Groups’ Evolving Tactics Spur 44% Increase in Ransom Demands

Ransomware payments surge despite dwindling attacks

Ransomware surge exploits VPN flaws & Microsoft 365 logins in APAC

Researchers Identify PassiveNeuron APT Using Neursite and NeuralExecutor Malware

Resilience After the Breach: 6 Cyber Incident Response Best Practices

Retail Cyberattacks Reveal Hidden Weaknesses In Supply Chain Security

Rival Hackers Dox Alleged Operators of Lumma Stealer

Russia’s Coldriver Ramps Up Malware Development After LostKeys Exposure

Russian Group Coldriver (Callisto) Adapts with New Malware Strains for Cyberespionage After Exposure

Scattered Lapsus$ Hunters Signal Shift in Tactics

Security Leaders Discuss Cyberattack on American Airlines Subsidiary

September 2025 Healthcare Data Breach Report

Sharepoint ToolShell attacks targeted orgs across four continents

Singapore: Cyber firm links worldwide phishing campaign to Iran-backed hackers

SocGholish Malware Using Compromised Sites to Deliver Ransomware

SOCs Have a Quishing Problem: Here’s How to Solve It

South Korea: 59 Repatriated from Cambodia Arrested in Voice Phishing Crackdown

SpaceX disables more than 2,000 Starlink devices used in Myanmar scam compounds

Staggering cost of Jaguar Land Rover cyber attack revealed as 5,000 firms hit in UK’s ‘most damaging hack’

State attorneys general stepping up privacy enforcement, watchdog finds

Strengthening Crypto Cybersecurity: Essential Strategies

Summit Golf Brands allegedly subjected to massive INC Ransom breach

TARmageddon flaw in abandoned Rust library enables RCE attacks

TARmageddon Flaw in Async-Tar Rust Library Could Enable Remote Code Execution

The Philippines: Personal data leaks jump 73% in Q3, compromising 4.3-million Filipinos

Threat Actors Advancing Email Phishing Attacks to Bypass Security Filters

Threat Actors Allegedly Selling Monolock Ransomware on Dark Web Forums

TikTok could quietly give Immigration and Customs Enforcement (ICE) and Department of Homeland Security (DHS) your IP address

ToolShell bug used by Chinese attackers against governments in Africa, South America

Top Crypto Wallets Unite to Battle Against Phishing Attacks

TP-Link Patches Four Omada Gateway Flaws, Two Allow Remote Code Execution

UK data regulator defends decision not to investigate MoD Afghan data breach

Ukraine Aid Groups Targeted Through Fake Zoom Meetings and Weaponized PDF Files

Vidal Health Insurance TPA Data Breach Exposes Patient Data

Vidar Stealer 2.0 Boosts Infostealer’s Credential Theft and Evasion Capabilities

Vivid Infotech Data Breach Exposes US User Information

Warlock Ransomware: Old Actor, New Tricks?

We’ve entered the ‘big game hunting’ era of ransomware

Wits University cyber attack shows education’s wider vulnerability

Why You Should Swap Passwords for Passphrases

21st October

52% of Attacks Driven by Ransomware and Extortion

76 Percent of Organizations Struggle to Match the Speed of AI-Powered Attacks

A detailed investigation into the TechCorp data breach incident

‘A few unrecorded meetings and a handshake’: Damning verdict of probe into major Afghan data breach

A shot in the dark: Can malware vaccines stop ransomware's rampage?

AdaptixC2 spread through malicious npm package

Agentic AI security: Building the next generation of access controls

AI ransomware attacks are coming

AI-driven social engineering surpasses ransomware as leading cybersecurity concern

AI-enabled ransomware attacks: CISO’s top security concern - with good reason

AI-fueled automation helps ransomware-as-a-service groups stand out from the crowd

AI-powered ransomware & cybercrime booming across Asia-Pacific and Japan (APJ) region

Amazon Web Services (AWS) Outage May Trigger Surge in Phishing Attacks, Experts Warn

American Airlines Subsidiary Suffers Data Breach

Apple alerts exploit developer that his iPhone was targeted with government spyware

Attackers abusing OAuth to maintain access long after passwords are reset

Barracuda uncovers an emerging, stealthy and persistent phishing-as-a-service kit

Bombay High Court Restrains Hackers After Ransomware Attack On Generali Central Life Insurance

Bombay High Court Restrains restrains 'John Doe' hacker from selling company data

Bovavet Data Breach Exposes 18k User Records

Canada: Fraudsters targeting St. John’s residents with fake parking tickets is just latest scam, warns mayor

China Alleges US Hacked National Time Center

Chinese marketplaces drive e-crime as Australia emerges as a top regional ransomware target

CISA confirms hackers exploited Oracle E-Business Suite SSRF flaw

CISA Warns of Active Exploitation of Critical Windows SMB Flaw CVE-2025-33073

CISA warns of Windows SMB flaw under active exploitation (CVE-2025-33073)

City of Hope Settles Class Action Data Breach Lawsuit

Co-op Credit Union Data Breach Affects 8 in Massachusetts

Critical WatchGuard Fireware OS Flaw Enables Remote Code Execution

CrowdStrike Highlights AI Role in Ransomware Surge Across Asia-Pacific and Japan (APJ)

Cursor, Windsurf IDEs riddled with 94+ n-day Chromium vulnerabilities

Cyber Attack on Generali Insurance: Bombay High Court Bars ‘Medusa’ Hacker from Data Leak

Cyber-Attack On Bectu’s Parent Union Sparks UK National Security Concerns

Cyberattack on Askul halts e-commerce for Muji, Loft and Sogo & Seibu in Japan

Cybercriminals turn to stealth to bypass malware detection

Desjardins Data Breach: Million Quebecers’ Information Resurfaces on Dark Web

Dodo, iPrimus data breach sees email and SIM cards hacked

Dutch regulator fines Odido €1.5 million for inadequate wiretapping system security

Envoy Air (American Airlines) Confirms Oracle EBS 0-Day Breach Linked to Cl0p

Envoy Air Confirms Cyberattack Linked to Clop Ransomware Group

Eticex Hosting Data Breach Exposes Customer Databases

Europol Cracks Massive $5.7 Million Crypto Phishing Network

Europol Dismantles Major Crypto Phishing Ring Behind $5.7 Million in Thefts

ExtraHop report finds ransomware payouts hit record highs as attackers adapt

Federal judge reduces fine for spyware company NSO Group from $167 Million to $4 Million

Florida: 3rd-party data breach resulted in Kissimmee police lieutenant's termination

For Ransomware, Payouts Go Up While Attacks Decline

Germany Suffers More Hacker Attacks Than Any Other EU Country

Global Ransomware Attacks Against Critical Industries Surge 34% in 2025

Google finds Russian state hackers replacing burned malware with new tools

Google Identifies Three New Russian Malware Families Created by COLDRIVER Hackers

Google introduces agentic threat intelligence for faster, conversational threat analysis

Hackers actively exploiting Windows SMB flaw, gaining SYSTEM privileges over networks

Hackers are now a serious risk to patients' lives as NHS records the first death due to a cyber crime

Hackers threaten to drop 47GB of top golf brand’s secrets

Hackers Used Snappybee Malware and Citrix Flaw to Breach European Telecom Network

Home Depot Halloween Phishing Scam Uses Fake Giveaway to Steal Personal and Financial Information

Hotel and Casino near Las Vegas Strip suffers data breach, documents say

How ransomware economics drives the global cybercrime industry

How To Counter Evolving Cybersecurity Threats: The North Korean IT Worker Edition

India: High Court grants protection to Generali Central Life Insurance after ransomware attack

India Faces Highest Ransomware Threat In Asia-Pacific and Japan (APJ) Region

Infrastructure gaps expose South African firms to cyber attacks

Integris Health reaches $30M class action data breach settlement

Ireland: Just half of office workers confident in spotting phishing attacks

Ireland: Office workers most concerned about AI phishing scams but only half say they would spot threat, survey shows

Japan Retailers Halt Online Sales on Supplier Cyber Attack

Japanese retailer Muji halted online sales after a ransomware attack on logistics partner

Kenya: Safaricom Data Breach Case Heads to High Court After Settlement Talks Collapse

Kettering Health Confirms Data breach Exposed Patient and Staff Data

Legal aid lawyers 'entitled to cyber attack compensation'

LOSTKEYS Malware Identified as Product of Russian State Hacker Unit COLDRIVER

LP Insurance Data Breach Exposes Sensitive PII and PHI

Lumma Stealer Developers Doxxed in Underground Rival Cybercrime Campaign

Meta Rolls Out New Tools to Protect WhatsApp and Messenger Users from Scams

Ministry of Defence (MoD) investigating another contractor breach

ModMed Data Breach Affects PII & PHI

Monolock Ransomware Allegedly Being Sold by Threat Actors on Dark Web

Muji halts online sales after ransomware attack on supplier

Muji's minimalist calm shattered as ransomware takes down logistics partner

New hacker attack targets FictorPay, a business services company

New LOSTKEYS Malware Linked to Russia State-Sponsored Hacker Group COLDRIVER

New LOSTKEYS Malware Tied to Russian State-Sponsored Hacker Group COLDRIVER

New Phishing Emails Pretend to Offer Jobs to Steal Facebook Logins

New Phishing-as-a-Service ‘Whisper 2FA’ Targets Microsoft 365, Barracuda Warns

New York: Attorney general reaches $60K settlement with accounting firm over data breach

NJ Lenders Corp Data Breach Compromises PII

Official Xubuntu website compromised to serve malware

Only half of Irish office workers confident in their ability to identify phishing attacks

Oracle E-Business Suite Vulnerability Exploited In Ransomware Attacks

Over 120,000 Bitcoin Private Keys Compromised Due to Flaw in Libbitcoin Explorer

Pakistani Cyber Actors Impersonating ‘NIC eEmail Services’ to Target Indian Government

Patron Insurance Data Breach Exposes 7GB of Sensitive Info

Phantom Hacker scam targets anyone, experts warn, and some have lost entire life savings

PolarEdge Targets Cisco, ASUS, QNAP, Synology Routers in Expanding Botnet Campaign

Ransomware against Indian businesses: Targeted & precise

Ransomware and extortion now drive over half of cyberattacks, Microsoft reveals

Ransomware Goes Cloud-Native

Ransomware Payments Get Bigger Even as Fewer Pay

Ransomware payments hit record highs as threats get harder to detect

Ransomware Payouts Surge to $3.6m Amid Evolving Tactics

Ransomware’s business model reshapes costs as cybercrime hits USD $10.5 trillion

Research shows ransomware payments reaching record levels

Rio Dental Data Breach Exposes Sensitive Patient Info

Russian Coldriver Hackers Deploy New 'NoRobot' Malware

Russian hackers evolve malware pushed in "I am not a robot" captchas

Russian State-Sponsored COLDRIVER Group Deploys New Malware After Exposure of LOSTKEYS

Safaricom’s 11.5 Million Subscribers Data Breach Case Stalls; Headed for a Full Hearing

Safaricom’s Sh115 Trillion Data Breach Scandal: How Kenya’s Telecom Giant Sold Out 11.5 Million Customers

Salt Typhoon APT Targets Global Telecom and Energy Sectors

ShinyHunters Site Message Changes After Arrest Reports

Singapore Officials Impersonated in Sophisticated Investment Scam

South Korea: Former Police Officer Receives Another Prison Term for Voice Phishing

The Dairy Farmers of America Confirms Data Breach Affecting Employees and Members

The evolving landscape of email phishing attacks: how threat actors are reusing and refining established techniques

The Unkillable Threat: How Attackers Turned Blockchain Into Bulletproof Malware Infrastructure

Third-Party Data Breach at Spanish Global Fashion Retailer MANGO Leaks Customer Information

Third-party ransomware attack disrupts Muji’s online store

This million-dollar leak from a Shopify rival went unnoticed for 2 years

Threat Actors Reportedly Marketing Monolock Ransomware on Dark Web Forums

Three lessons for the crypto industry and users after $3M theft

TP-Link warns of critical command injection flaw in Omada gateways

Two Arrested Following Hacker Attack on Verisure

Tykit SVG phishing kit tied to attacks targeting Microsoft 365 (M365) credentials

UK Government Denies China Data Breach Allegations

Verisure investigates data breach affecting alert alarm customers in Sweden

Vidar Stealer 2.0 adds multi-threaded data theft, better evasion

Volkswagen confirms security ‘incident’ amid ransomware breach claims

WhatsApp and Messenger add new warnings to help older people avoid online scams

When everything’s connected, everything’s at risk

When ransomware hijacks your active directory: an executive playbook

When the Backbone Breaks: Why the F5 Breach is a Five-Alarm Fire

Why Picture-Based Phishing Is Becoming the Internet’s Latest Security Blind Spot

Why You Need Cyber Resilience and Defence in Depth

Your smart building isn’t so smart without security

20th October

17 million hit in major lending company data breach - how to see if you're affected and what to do next

64 Repatriated South Koreans Suspected in Voice Phishing, Romance Scams

131 Chrome Extensions Caught Hijacking WhatsApp Web for Massive Spam Campaign

Abacusdesk Data Breach Exposes 73k User Records

AI girlfriend apps leak millions of private chats

AI-Driven Social Engineering Top Cyber Threat for 2026, ISACA Survey Reveals

Akumin Agrees to Pay $1.5 Million to Settle Class action Data Breach Lawsuit

Analysing ClickFix: 3 Reasons Why Copy/Paste Attacks Are Driving Security Breaches

Armenia: Cybercriminals impersonate Central Bank to launch phishing attacks

Armenia's Central Bank warns of phishing emails

Aurora City, the next battlefield for privacy threatened by facial recognition

Aussie Fluid Power confirms security incident following ransomware claims

Aussie Fluid Power hit by cyberattack as ransomware group Anubis claims responsibility

Bangladesh on radar of new Asia-Pacific hacker group ‘Mysterious Elephant’

Be prepared: Amazon Web Services (AWS) outage likely to trigger surge in phishing attacks

Bombay High Court restrains hacker group from leaking data stolen from insurer Generali Central

Bombay High Court restrains hacker group 'Medusa' from leaking Generali Central’s stolen data

Broadband ISP Virgin Media UK Sees 285 Percent Rise in Phishing Threats

China accuses US of digital sabotage: “They are the true hacker empire”

China accuses US of major cyber-attack

China Alleges National Security Agency (NSA) Cyberattack on National Time Service Center

China claims it caught US attempting cyberattack on national time center

China-linked Salt Typhoon hackers attempt to infiltrate European telco

CISA Adds Microsoft, Apple and Oracle Vulnerabilities to KEV Catalog

Collins Aerospace breach claimed by Everest ransomware

Court Decisions of Ukraine Database Breach Hits 44 Million Cases

Credit rating agency Experian fined €2.7M for GDPR violations

Criminal SIM Card Supply Network Busted by Europol

Cyber Attack Australia: Fresh Incidents Test Resilience as Outages and Breaches Hit Multiple Sectors

CyberCoders Data Breach Exposes 32 Million Candidate Records

Cybersecurity in the NHS: Beyond the ransomware headlines

Dakota Dostavka Data Breach Exposes 40k Customer Records

Data breach costs Australian Clinical Labs $5.8m in first civil penalties under Privacy Act

Data breach hits security company Verisure, impact considered “limited”

Deliver2Alaska Data Breach Exposes User Information

Dodo and IPrimus Hacked: Over 1,600 Accounts Exposed in Latest Data Breach

Envoy Air confirms breach tied to Oracle EBS zero-day vulnerability

Envoy Air Reports Oracle System Breach Following Clop Extortion Claims

Europol Busts Latvian Crypto Phishing Ring, Seizing Millions

Experian Fined €2.7m For GDPR Breach in Netherlands

Fatih Turizm Database Leak Exposes Customer Information

Five New Exploited Bugs Land in CISA's Catalog - Oracle and Microsoft Among Targets

From inbox clutter to costly compromise: Why email threats still matter

Google catches North Koreans red-handed

Governments, corporations increasingly concerned about hacker attacks

Grocery delivery platform data leaked, hackers claim

Guernsey: Medical Specialist Group (MSG) fined £100k after hack exposed patient data

Guernsey: Medical Specialist Group LLP fined £100,000 after sensitive patient data stolen in cyber attack

Hackers doxx hundreds of ICE agents, raising risk of targeted attacks

Hard-coded credentials found in Moxa industrial security appliances, routers (CVE-2025-6950)

High-severity Windows SMB flaw now exploited in attacks

Home security firm Verisure reports data breach at Swedish subsidiary

How AI is driving email phishing and how to beat the threat

Indian Council of Agricultural Research (ICAR) data breach: Head of institute replaced 3 days before end of term

Is The World’s Clock At Risk? China Blames US For Cyber Attack On Time Centre

Japan: Askul impaired by ransomware attack; Ryohin Keikaku affected

Japan’s Muji hit by ransomware attack on delivery partner

Japanese retailer Askul halts online orders, shipments after ransomware attack

Judge bars NSO from targeting WhatsApp users with spyware, reduces damages in landmark case

Major Japanese online retailer Askul suspends services after ransomware infection

Max.ru Data Breach Exposes 46.2 Million User Records

Microsoft Revokes 200+ Fake Certificates Used in Teams Malware Attack

Ministry of Defence (MoD) Data Breach update and 8Base ransomware attack on Volkswagen

Ministry of Defence (MoD) probes claims Russian hackers stole files on bases

Ministry of State Security (MSS) Claims National Security Agency (NSA) Used 42 Cyber Tools in Multi-Stage Attack on Beijing Time Systems

Most AI privacy research looks the wrong way

Muji halts online sales in Japan after delivery partner ransomware attack

Muji halts online orders in Japan after ransomware hits delivery partner Askul, Asahi also affected

NasDem Party Data Breach Exposes Indonesian Political Data

Nevada’s Cyber Siege: What the Ransomware Attack Means for Trust in Our Systems

North East Multi-Regional Training (NEMRT) Data Breach Leaked

Nottinghamshire man given access to 50 Ryanair boarding passes in booking site data breach

Odido fined €1.5M for poorly securing its wiretapping system

Over 17 million victims reported in huge Prosper data breach - here’s what we know so far

Over 75,000 WatchGuard security devices vulnerable to critical RCE

OYO Hotel & Casino Cyberattack Revealed Months After Incident

Phishing Remains a Huge Problem in Healthcare

Prosper Confirms Data Breach Impacting 17 Million Users

Prosper Data Breach Exposes 17 Million Users’ Personal Details

Prosper Data Breach Exposes 17.6 Million Records, Says Security Expert Troy Hunt

R3 Government Solutions Data Breach Affects U.S. Employees

Ransomware at UK military contractor leads to dark-web dump

Ransomware attack puts paid to Muji online orders

Ransomware Report Says Manufacturing Hit Hardest by Hidden Attacks in Q3

Ransomware Strikes Volkswagen: 8Base Allegedly Steals Sensitive Data

Retail giant Muji halts online sales after ransomware attack on supplier

River City Eye Care Data Breach Affects PII and PHI

Russia-backed COLDRIVER abandons stealer malware for NOROBOT backdoors

Russia-linked hackers claim responsibility for Collins Aerospace cyber attack

Russian auto, e-commerce sectors subjected to novel malware attack

Russian hackers leak documents linked to eight UK military bases as Ministry of Defence (MoD) launches probe

Russian Lynx group leaks sensitive UK MoD files, including info on eight military bases

Salt Typhoon Uses Citrix Flaw in Global Cyber-Attack

Scattered Lapsus$ Hunters (SLSH) Admins Arrested

Self-spreading GlassWorm malware hits OpenVSX, VS Code registries

SK Shieldus Misses Breach Despite Hacker Warnings, Dark Web Exposes Delay

Small business, big target: The rising threat of ransomware

South Korea: Prosecutors Request Warrants for 58 of 64 Cambodia Repatriated Suspects

Suspected Chinese Hackers Spent a Year-Plus Inside F5 Systems

Tasmanian aged care Not-For-Profit (NFP) confirms Lynx ransomware breach

The Central Bank of Armenia has warned about viral and fake phishing emails being sent in its name

The Cyber Dangers for Manufacturers and Suppliers

The Philippines: Cops arrest 410 cybercriminals in 3Q 2025; 2 more arrested for SMS phishing

US National Security Agency (NSA) alleged to have launched a cyber attack on a Chinese agency

Users beware: Xubuntu website serving malware instead of OS downloads

Ustundag Turizm Data Breach: Turkish Travel Database for Sale

WatchGuard VPN Flaw Gives Hackers Full Firewall Control

Why identity and resilience must be India’s focus as AI raises the stakes

Worrying WatchGuard VPN bug could let hackers hijack your devices - here's how to stay safe