Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 1st June and 7th June 2026.2nd June
5 Signs AI Phishing Has Compromised Your Web3 Social Media Account
Accounting firm Kennedy McLaughlin confirms ‘cyber incident’ following Qilin ransomware attack
Android 0-Day Vulnerability Exploited for Full Device Control
Another Gen Z hacker now claims data security flaw on National Testing Agency (NTA) re-exam portal
Attackers Hijack Red Hat npm Scope to Steal Cloud Secrets
Australian jewellery retailer confirms cyber attack
Australian workplace catering firm Hampr suffers alleged 360k record data breach
Australias amongst millions affected in Carnival Cruise Line data breach by cyber criminals
AZUREVEIL Adaptix C2 Agent Delivered via Targeted Spearphishing Attacks
Booking.com data breach scare hits Japanese travellers as scammers target hotel bookings
Business Leaders Lack Understanding of Threat Intelligence, Study Warns
Carnival Corporation Data Breach Exposed Just Under 6 Million Records
Carnival Cruise Data Breach Becomes Wake-Up Call for International Travelers Amid Rising Cybersecurity Threats in Tourism
CISA Flags Palo Alto PAN-OS Flaw as Actively Exploited
Critical KMW CCTV Flaw Enables Unauthorized Camera Access
Critical StrongDM Vulnerability Enables Authentication Theft
Dashlane Discloses Brute-Force Attack, Encrypted Vaults of Fewer Than 20 Users Downloaded
Family Medicine Centers Pays $2.15 Million to Resolve Data Breach Lawsuit
Grand Theft Auto 5 (GTA 5) Cheat Service Atlas Menu Hit by Major Data Breach Affecting Thousands of Users
Grand Theft Auto V (GTA V) cheat service Atlas Menu hacked, exposing 64,000 accounts
Grand Theft Auto V (GTA V) cheat service Atlas Menu hacked, exposing nearly 64,000 user accounts
Hackers Abuse Meta AI Bot to Hijack Instagram Accounts
Hackers trick Meta AI into handing over Instagram accounts - including Barack Obama’s
Hackers trick Meta AI into stealing Instagram accounts
Healthcare consulting company Phia Group says 2024 data breach impacted over 120,000 people
How to Recover Financial Losses After a Corporate Data Breach in 2026
India: Central Board of Secondary Education (CBSE) re-evaluation portal faces DoS cyber attack; records 1.5 million hits in two minutes
Instagram Patches Meta AI Support Assistant Hijacking Vulnerability
Malicious Packages Target Cloud Keys, Wallets, and SSH Credentials
Miasma Malware Targets Red Hat npm Packages in New Supply Chain Attack
Microsoft backs down after zero-day dispute, says it won’t sue security researchers
Microsoft Entra pushes passkeys, tightens identity security
National Identity Management Commission (NIMC) Warns Nigerians Against Fake ‘Free NIN Correction Portal’ Phishing Scam
Over 30 Red Hat npm Packages Compromised by Shai-Hulud Malware Variant
Pakistan-Linked SideCopy Targets Afghanistan Finance Ministry with Xeno RAT
Plaza Home Mortgage discloses data breach affecting customers and employees
Ransomware activity peaks on Weekdays and reaches its highest levels in October
Ransomware attack on City of Sandstone compromised residents' personal data
Red Hat npm packages compromised in new Mini Shai-Hulud malware wave
Sensitive government personnel data posted online, Spanish police arrest suspect
SolyxImmortal Python Malware Steals Browser Passwords and Cookies
Sophos uncovers AI-powered malware lab built for EDR evasion
This AI model backdoor attack stays hidden until you customize the model
Threat Actors Target Critical Windows Netlogon Flaw CVE-2026-41089
TP-Link Router Vulnerability Enables Arbitrary Command Execution
UK Firms Prioritize AI Threat Preparedness as Cyber Risks Evolve
1st June
32 Million Bumble users’ data leaked online, hackers claim
145 AI laws passed in 2025 and privacy teams aren’t catching a break
Afghan finance officials targeted by suspected Pakistani cyberespionage campaign
AI SOCs Will Still Need SOC Analysts, Security Vendors Say
Another South African organisation denies a major data breach
Atlas Menu Data Breach Exposes Approximately 64,000 User Accounts
Attackers Abuse Shared Content for ChatGPT Phishing Campaign
Brute-force attack triggers Dashlane account lockouts
California Attorney General files lawsuit against 23andMe for data breach
California Attorney General Sues Over 23andMe Data Breach
California sues 23andMe over 2023 data breach
Carnival Corporation's data breach exposed personal data of nearly 6 million customers
Carnival Cruise Data Breach Puts Millions Of Travellers’ Personal Information At Risk: What You Need To Know
Carnival customer information, including passport details, impacted by data breach, cruise line says
Carnival data breach affects nearly 6 million people
Carnival data breach exposes info of nearly 6 Million cruise travelers
Carnival data breach hits nearly 6 million customers
Carnival warns nearly 6 million people of potential data breach
ChatGPhish Technique Shows How Browser Prompt Injection Can Manipulate ChatGPT Summaries
China-Aligned Groups Ramp Up Attacks: Dragon Weave Hits Czech Republic & Taiwan
Chrome now protects you from hackers who steal browser cookies - how it works
Critical Flowise Flaw Gives Attackers Full Server Control
Critical Magento Cache Plugin Flaw Enables Remote Code Execution
Critical Windows Netlogon RCE flaw now exploited in attacks
Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts
Cruise giant says six million customers’ personal information was exposed in breach
Crypto Exploit Losses Reach $68 Million In May Despite Limited Phishing Damage
Cybercriminals Leverage GHOSTYNETWORKS and OMEGATECH for JS Malware Hosting
Dashlane password manager users locked out by brute force attacks
Dashlane suspends multiple accounts after ‘brute force’ cyber attack
Data Breach Affects Thousands of Melbourne Film Festival Customers
Data discovery gaps that catch enterprises off guard
Deepfake CEOs, fake suppliers, AI phishing: Scams United Arab Emirates (UAE) businesses need to watch out for
Dutch police arrests 35-year-old for hacking into Ajax' computer systems
Election interlopers register 5K+ domains, hope to catch some voting phish
EU organizations buckle under rising compliance pressure
Fake McAfee emails refuse to die as new round of phishing emails targets consumers
FBI Warns Microsoft Users as Kali365 Attack Spreads Across Outlook and Teams
Federal Trade Commission (FTC) Warns About Digital Invite Phishing Scam
Film festival hack leaves thousands fearing identity theft
FSB Group Gamaredon Hides Worm in Windows Data Streams
Gamaredon APT Hides Malware in Windows Features, Uses Cloud C2
German tax authority may train AI on citizens’ unaltered data
Google Chrome’s New Feature Takes Aim at Cookie Theft, Account Hijacking
Grand Theft Auto 6 (GTA 6) Hype Fuels Surge in Phishing Scams and Malware Campaigns
Grand Theft Auto V cheat service gets hacked, exposing thousands of gamers
Grand Theft Auto V cheaters caught in a massive data breach
Hacker arrested in Granada after leaking personal data of state officials
Hackers are exploiting Palo Alto GlobalProtect VPN authentication bypass (CVE-2026-0257)
Hackers Attacking Signal Users to Steal Backups in New Wave of Attacks
Hackers breach Obama White House Instagram years after it went silent
Hackers hijack thousands of sites for ClickFix and FakeUpdate attacks
Hackers hijacked Instagram accounts by tricking Meta AI support chatbot into granting access
Hackers Target Signal Users in Phishing Campaign to Steal Backup Recovery Keys
Hackers Target Signal Users to Steal Backups in New Attack Wave
Hackers trick Meta AI support bot to infiltrate Obama White House Instagram account
How NIST fumbled management of the National Vulnerability Database
India: Bombay High Court Blocks Ransomware Group ‘Morpheus’ After Massive 680 GB HDFC Asset Management Company (AMC) Data Theft
India: Central Board of Secondary Education (CBSE) admits security flaws after teen hacker exposes class 12 data risk
India: Central Board of Secondary Education (CBSE) Admits Vulnerabilities in Evaluation System After Teen Hacker's Findings
India: Central Board of Secondary Education (CBSE) admits vulnerabilities in OnMark portal amid answer sheet mismatch allegations; Congress calls it a massive data breach
India: Central Board of Secondary Education (CBSE) data security under scanner after hacker claims access to answer sheets
India: Central Board of Secondary Education (CBSE) Engages IIT Experts After Admitting OSM Security Vulnerabilities
India: Delhi High Court Says Banks Not Automatically Liable When Customers Click Phishing Links
Inspector general finds NIST mistakes have made vulnerability database ineffective
Instagram Meta AI Flaw Allegedly Enables Account Password Resets
Iran-Linked Hackers Wipe IT Systems and Backups in Middle East Cyberattack
Lakeview Health Systems reaches proposed settlement in data breach class action
Logistics giant suffers massive 840-million-record data breach
Luxembourg holidaymakers falling victim to phishing scams
Massive 17-Million Device Botnet in the Netherlands Dismantled in a Police and NCSC Joint Operation
Medical Billing Company Data Breach Affects 7 Medical Groups
Melbourne International Film Festival customers' data leaked via Ferve platform
Meta tries to get ahead of scammers before the World Cup begins
Miasma Supply Chain Attack Compromises Red Hat npm Packages with Credential-Stealing Worm
Microsoft says it will not pursue security researchers after zero-day backlash
More than 800,000 Texans possibly affected by Carnival cruise data breach
Nearly 6 million individuals affected in Carnival Cruise Line data breach
Nearly 60 Lakh Passenger Records Exposed in Carnival’s Massive Data Breach
New ChatGPhish Technique Uses Prompt Injection to Manipulate ChatGPT Responses
New DriveSurge Campaign Delivers Malware Through ClickFix Lures
North Carolina man jailed for selling US senior citizens’ data to Jamaican scammers
North Korean hackers target macOS users with advanced malware campaign
OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack
Palo Alto Warns High-Severity Bug Is Being Actively Exploited
Phishing Flub At Miami Cruise Giant Exposes Nearly 6 Million Customers
Phishing Scams: How to Spot and Avoid Them
Plaza Home Mortgage discloses data breach affecting customers, employees
Ransomware leak posts show weekday peak, October spikes
Ransomware Operators Keep Business Hours. The Data Proves It
Ransomware used to have rules. AI just blew them up
Red Hat npm packages compromised to steal developer credentials
Rich Products discloses data breach linked to cyberattack on vendor First Advantage
Russian hacker used AI to run fraud scheme on MAGA Telegram channel
Spain arrests doxer leaking sensitive data of government employees
Station Casinos confirms March data breach, notification of people impacted
Station Casinos Hacked, History Indicates Ransom Paid
Stealer Malware Surges as AsyncRAT, DCRat Lead Weekly Uploads
The biggest cybersecurity threats businesses are facing this year
The First World Cup in the Agentic Era
The Gentlemen ransomware combines advanced encryption with self-propagation, targeting critical sectors
Threat Actors Abuse ChatGPT Chats to Host Fake Outage Page, Deliver Malware
Threat Actors Linked to Iran Leverage AppDomainManager to Evade Detection
Unknown hacker group targeted Russian maritime universities, diplomats for nearly two years
US Troops in Active War Zones Tracked with Commercial Location Data
VSP Solutions responding to Stormous ransomware attack
WhatsApp: How to protect your account from hackers
Why Encrypted File Sharing Is Essential for Modern Businesses
Windows Netlogon 0-Click RCE Flaw Exploited in the Wild
WordPress malware campaign hides payloads in Steam profiles
Zero-Click pretalx XSS Flaw Lets Hackers Hijack Conference Organizer Accounts
Welcome to DBD. On March 8th 2026, DBD celebrated it's sixth anniversary and
Welcome to last week's ROC Report, an exclusive summary of Ransomware Operator's global victims that were claimed during the period between 18th May and 24th May 2026, kindly assisted by our partners.
