Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 5th October and 11th October 2026.📅 5th October
3 ways to respond to time bomb ransomware
AI slop submissions force Google to freeze its open-source bug bounty
Alleged developer of Ploutus ATM malware appears in US court after arrest
Alleged ShinyHunters member reportedly detained in Jordan, assisting law enforcement
Apple Plans Tighter macOS Full Disk Access Controls Over AI Agent Data Access
Apple tightens macOS disk access as AI agents become more powerful
Attackers Abuse Legitimate ScreenConnect Client in Phishing Campaign to Gain Remote Access
Attackers Target Rejetto HFS Flaw That Enables Admin Session Forgery and RCE
Belarusian hacktivists spent two years inside Russian healthcare network, researchers say
California Subpoenas OpenAI Over AI Agent Cybersecurity Breaches
Citrix NetScaler Targeted Via New Zero Day
Citrix Warns of Actively Exploited NetScaler Vulnerabilities Affecting ADC and Gateway
ClingSTUN Malware Turns Unpatched IoT Devices Into Proxy Nodes
CVE-2026-88779: Citrix NetScaler Zero-Day Exploited in Targeted Attacks
Data breach at Denmark’s national population register exposes 8.8 million people
Data breach in Denmark leaks personal data of 8.8 million
Denmark data breach exposes 8.8 million people’s personal data
Denmark data breach exposes information of 8.8 million people
Denmark data breach exposes personal details of 8.8 million people
Denmark population registry data breach affects 8.8 million people
Denmark’s population database hit by major data breach
Detained ShinyHunters hacker reportedly helping FBI track down fellow members
Dutch Ex-Hacker Arrested Over Suspected Link To FBI Breach Gang
FitnessKPI denies data breach but confirms some logs still spilled
Frontline Education Breach Impacts K-12 School District Staff
Google Gemini-Powered PageBreak Agent Finds More Than 500 XSS Vulnerabilities
Google halts open-source bug bounty program amid AI spam surge
Google Suspends Open Source Bug Bounty Over AI-Generated Reports
Google Suspends Open-Source Bug Bounty Due to AI Vulnerability Reports
Google’s AI Hacker Finds 500+ XSS Flaws and Builds Working Exploit Chains
Hackers Abuse Trusted Remote Monitoring and Management (RMM) Software to Bypass Suspicion and Gain Remote Access
Hackers hit Denmark: 8.8 million people exposed in a massive data breach
Hackers steal 8 million citizens’ records from Danish government database
How one person’s personal information can put the whole family at risk
How Remote Monitoring and Management (RMM) abuse gives attackers a way in that looks like business as usual
India: Supreme Court Refuses To Quash Star Health Data Breach Case Against Cybersecurity Researcher Himanshu Pathak
Iranian hacker accused of draining 31TB from university inboxes extradited to the US
Japan Plans Major Cyber Hunt to Detect Hidden Attacks on Critical Infrastructure
Japanese media group Nikkei discloses intrusions targeting employees and users
Joint FBI ‘Operation KillSwitch’ Dismantles KillSec Ransomware Network and Secures 110 Terabytes of Stolen Data
Malicious VS Code Themes Hide GlassWorm Malware Targeting Developers
Massive zero-day: cyber pro breaks out of virtual machine, takes root on KVM host
Microsoft Exchange Flaw Lets Authenticated Attackers Read Other Users' Mailboxes
Millions of Airbnb, Uber, and Google records are for sale, hackers claim
More UK Schools Are Recovering Faster from Cyber Incidents
Most workers have encountered cyber threats at work, EU survey says
NEAR Intents Hack: Hacker Returns $3.8 Million After 48-Hour Ultimatum
NEAR Intents Hacker Returns $3.8 Million in Full
New Dell System Update flaw lets hackers gain root privileges
New NetScaler Zero-Day Exploited in Targeted Attacks Can Knock SAML Deployments Offline
New Stealthy Linux Backdoors Target Telecoms, Masquerade as Email Traffic
Nikkei Cyberattack Hijacks Employee Accounts, Sends 9,000 Spoofed Emails
Only 14% of 19.5 Million TVING Data Breach Victims Seek Compensation
Out-of-band Exchange Server update fixes high-severity mailbox access bug (CVE-2026-96940)
Ransomware gang threatens to dump more South African client data
Ransomware group threatens to leak customer data from top insurance companies in South Africa
Ransomware Hits JetBrains TeamCity Flaw, 9.8 CVSS
Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet With STUN-Based C2
Report Details AI Tactics and Techniques Used to Launch Cyberattacks
ShinyHunters hacker in FBI data theft detained in Jordan, cooperating with bureau
ShinyHunters Suspect Saif al-Din Khader Detained in Jordan, Helping FBI, Sources Say
South African firms hit with R17 million ransomware recovery costs as attacks worsen
South Korea: "Posted Externally"...Emergency at Seoul Cyber University Over Personal Information Leak
South Korea Probes AI-Powered Cyberattacks After Major Banks Suffer Data Breaches
South Korea probes bank breaches amid suspected AI-powered attacks
South Korea’s Shinhan Bank Hack Exposes Data of 25,000 Customers
St. Lucie County Finds Unpermitted Flock Cameras, Raising Privacy Concerns
Star Health Data Breach: Supreme Court Refuses To Quash Criminal Case Against Cybersecurity Expert
Teen Scores $5K Bounty for JWT Flaw in Microsoft Titan Analytics Service
Teenager Suspected of Running KillSec Ransomware Group as Police Seize Servers in International Crackdown
Three questions a hospital CISO should ask a healthcare fintech vendor
TIAA Discloses Data Breach Exposing Social Security Numbers
Times Car Data Breach: 30,000 People Express Interest in Class-Action Lawsuit
Ukraine grocery chain ATB confirms cyberattack as hackers threaten to leak data
Unexpected Twist in $3.8 Million Crypto Attack: Hacker Returns All the Money!
University of Illinois Chicago affected by ransomware attack on medical school
US, Australia warn of latest Citrix vulnerability after NetScaler advisory
Why AI-Written Phishing Is Outpacing the Native Filters Built to Stop It
Welcome to DBD. On March 8th 2026, DBD celebrated it's sixth anniversary and
Welcome to last week's ROC Report, an exclusive summary of Ransomware Operator's global victims that were claimed during the period between 21st September and 27th September 2026, kindly assisted by our partners.
