Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 16th March and 22nd March 2026.17th March
100,000 personal emails of ex-Mossad research head leaked, pro-Iran hackers claim, Stryker attack contained
AI-Driven Phishing Campaign Uses Browser Permissions to Harvest Sensitive Data
Amazon Web Services (AWS) Bedrock Sandbox Vulnerability Allows DNS bypass, No Patch Available
Attack on Stryker’s Microsoft environment wiped employee devices without malware
Attackers Hijack Legitimate Websites to Target Microsoft Teams Users
Can Satellites be used to launch cyber attacks on corporate environments?
CISA Alerts on Actively Exploited Chrome 0-Day Vulnerabilities
CISA Flags Actively Exploited Wing FTP Vulnerability Leaking Server Paths
Coopsana Healthcare Data Breach Exposes Patient Records
Document Protection: Why Hybrid Storage Is the Future of Security
EU sanctions Chinese and Iranian companies for carrying out cyberattacks against Member States
EU sanctions Chinese company behind 65,000-device hack
EU Sanctions Iranian and Chinese Firms for Cyberattacks Against European Networks
From Indian schools to China's chips, how cyber attack targets are shifting
Giveth Blockchain Donation Platform Suffers Alleged Data Breach
Government Entities Targeted By CamelClone Espionage Campaign Using Rclone and Public Hosting Sites
Hackers Abuse Trusted Websites in New Attacks on Microsoft Teams Users
Hidden instructions in README files can make AI agents leak data
HumanizerPro.AI Data Breach Exposes Over 65K Users
Identity Drift: The Hidden Risk in Hybrid Active Directory Environments
INTERPOL Warns of Escalating Global Financial Fraud Threat, with AI-Enhanced Scams Four Times More Profitable
Intuitive’s Certain Business, Employee, Corporate Data Accessed in Recent Breach
Israel National Security Institute Suffers Data Breach by Handala
Konni Deploys EndRAT Through Phishing, Uses KakaoTalk to Propagate Malware
Koiride.com Airport Transfers Suffers Alleged Data Breach
LeakNet ransomware uses ClickFix, Deno runtime in stealthy attacks
Millions of UK firms on alert after Companies House data exposure
New Vidar 2.0 Infostealer Spreads via Fake Game Cheats on GitHub, Reddit
Payload ransomware hits Windows and ESXi with Babuk-style encryption
RondoDox Botnet Grows To 174 Exploits With Large-Scale Residential IP Abuse
Russell Cellular Suffers Massive 61GB Customer Data Breach
Sophisticated Phishing Campaign Exploits Trusted Cisco Domains, Impersonates JPMorgan, Targeting European Security Vendor
Stryker Confirms Massive Wiper Attack That Erased Thousands of Devices
Surge in Nation State Attacks on UK Firms Amid Cyber Warfare Fears
Telekom Serbia Investigates Leak of 160,000 Customer Records
UK's Companies House apologises for access and data breach
Usha International Limited Data Breach and Extortion Attack
Your staff will click: why cyber security must be engineered, not trained
16th March
875 Million Android Phones Face Risk Due to Hidden Chip Flaw
45,000 malicious IP addresses taken down, 94 suspects arrested
ACRStealer Upgrades With Syscall Evasion and TLS-Based C2 In New Campaign
Android 17 Blocks Non-Accessibility Apps from Accessibility API to Prevent Malware Abuse
Android 17 Launches Advanced Protection Mode to Stop Malicious Service Exploits
Android 17 Restricts Accessibility API to Prevent Malware from Requesting Excessive Permissions
Approval phishing fraudsters targeted as UK, Canada and US launch global operation
Are you being served? 4 ways the hospitality sector can defend against rising phishing attacks
Attackers exploit Oscars Best Picture hype for One Battle After Another to spread malware via Google
Bank of the Sierra urges vigilance as phishing attempts target customer data
BreachForums down, cyber defenders claim it was their doing
California Dental Care Provider Announces Data Breach
Canadian Retail Giant Loblaw Reports Data Breach Affecting Customer Information
China Demands Proof After Costa Rica Blames UNC2814 for ICE Cyberattack
CISA flags Wing FTP Server flaw as actively exploited in attacks
Class actions claim CarGurus data breach exposed 1.2 million consumers’ PII
ClickFix Campaigns Spread MacSync macOS Infostealer via Fake AI Tool Installers
Community bank reaches $2.4 Million agreement in 2023 data breach class action
Companies House chief apologises over data breach
Companies House online filing back to normal after glitch allowed users to change directors' details
Companies House Restores WebFiling After Flaw Exposed Director Details
CrackArmor Flaws Expose Linux Systems to Privilege Escalation
Cyber Attack: Inside the USD4 Million Equity Bank Heist in Rwanda
Cyber Attack on Medtech Firm Stryker Linked to Iranian Government Hacking Group
Cyberattack disrupts parking payments in Russian city
Cyberattack Targets Poland’s Nuclear Research Center, Investigation Underway
Da Vinci robot maker Intuitive Surgical hit by hackers, data compromised
Divine Skins Data Breach Exposes Data of Over 105,000 League of Legends Custom Skins Users, Anonymous Allegedly Behind It
DRILLAPP Backdoor Targets Ukraine, Abuses Microsoft Edge Debugging for Stealth Espionage
Europol and Microsoft dismantle major phishing platform that affected 500 Belgian victims
Evaluate Ltd Suffers Massive 1.33TB Ransomware Data Breach
Executive Aviation Targeted in Play Ransomware Attack
Experts Warn Ignoring Data Breach Notices Can Deepen Fraud Risks
Fake scandal clips on Facebook bait victims into investment scams
Fake Shipment Tracking Scams Surge in Middle East and Africa (MEA), Stealing Banking Data Through Real-Time Phishing
Fargo Data Breach Exposes Logistics Customer Records
FBI Calls for Help to Track Steam Malware Campaign
FBI Investigates Steam Games Linked to Malware and Crypto Wallet Theft
French ad tech giant Criteo loses €40 Million privacy fine appeal
GlassWorm Attack Uses Stolen GitHub Tokens to Force-Push Malware Into Python Repos
GlassWorm Campaign Expands Through Malicious Open VSX Extensions
Global cybercrime clampdown disrupts over 45K illicit IP addresses
Google Chrome under attack as over 3 Billion users at risk from active Hacker Exploits
Google Looker Studio Vulnerabilities Enable Attackers to Exfiltrate Data from Google Services
Google paid a record $17.1 Million to developers for finding software bugs
Hackers tried to breach Poland’s nuclear research centre
Handala Hack Leaks Sima Shine, Laura Gilinski, Updates Stryker
Hualun New Materials Suffers Massive Data Breach by SnowSoul
Hudson River Housing Data Breach Exposes SSNs and Bank Information
Huge online phishing platform that claimed 500 victims in Belgium has been dismantled
Hypertherm Data Breach Exposes Names and Social Security Numbers
IBM Detects Hive Ransomware Using AI-Generated Malware “Slopoly”
IBM Discovers ‘Slopoly’ AI-Generated Malware Linked to Hive0163 Ransomware
IBM Links Suspected AI-Generated ‘Slopoly’ Malware To Hive0163 Ransomware Operation
IBM Uncovers ‘Slopoly,’ Likely AI-Generated Malware Used in Hive0163 Ransomware Attack
Indirect Prompt Injection Attacks Cause OpenClaw AI Agents to Leak Sensitive Data
Infosys Ltd. Data Breach Exposes Financial Account Information
Intuitive Surgical confirms phishing-related data breach
Konni APT Hijacks KakaoTalk Accounts to Spread Malware in Multi-Stage Spear-Phishing Campaign
Konni Hijacks KakaoTalk Accounts in Spear-Phishing Malware Campaign
Loblaw responds to claims that it's downplaying recent data breach affecting Canadians
Luxembourg court overturns $858 million privacy fine against Amazon
Major data breach prompts about $6.5 Million penalty for Lotte Card
Major Iran-linked breach rocks medical tech firm
Man accused of posing as adult film star in phishing, trafficking scheme
Middle East and Africa (MEA) Shipment Phishing Scams Surge, Stealing Banking Data in Real Time
Mideast Data Breach: Saudi Arabian Company Suffers Data Leak
Namibia Airports Company (NAC) says no sensitive information stolen in recent data breach
Navia Benefit Solutions Data Breach Exposes Sensitive Health Data
New Phishing Scam Uses LiveChat to Pose as Amazon and PayPal in Real Time
New XWorm 7.1 and Remcos RAT Attacks Abuse Windows Tools to Evade Detection
Newly Discovered Phishing Campaign by Russian Hackers Targets Messaging Accounts of Government Employees, Journalists
NoName057(16) Targets Shas Party and Israeli Councils in DDoS Wave
North Korea hackers used KakaoTalk in spear-phishing campaign, report says
North Korea–linked hackers spread KakaoTalk malware via spear phishing in Korea
North Korea-sponsored cyberattacks utilize KakaoTalk to distribute malware
Operations of America’s largest medical device maker Stryker remain 'disrupted' after five days of Iran-linked cyber attack
Payload Ransomware claims breach of Royal Bahrain Hospital, threatens data leak
Peak Neuro Investigating Alleged Admin Panel Access Sale
Phishing attack on Starbucks employee portal exposes nearly 900 workers
Pilana Group Targeted in Akira Ransomware Data Breach
Poland Suspects Iranian Actors are Behind Attack on Its Nuclear Power Center
Pyongyang-sponsored hacking group uses KakaoTalk in malware distribution campaign
Qilin Ransomware Attack Hits Ruhnau Clarke and Biogel
Ransomware attacks hitting Japan’s small, midsize firms
Ransomware Group Claims Breach of Bahrain Hospital, Threatens Data Leak
Ransomware is shifting targets, many organisations are not prepared
Rasi Seeds Suffers Data Breach by SnowSoul Ransomware
Real-Time Phishing Campaigns Use Fake Shipment Alerts To Steal Banking Data In Middle East and Africa (MEA)
Researchers Find Data Leak Risk in AWS Bedrock AI Code Interpreter
Researchers Warn of Global Surge in Fake Shipment Tracking Scams
Retail Merchandising Services (RMS) Data Breach: Sensitive PII Exposed Including SSNs
Robotics firm Intuitive Surgical says cyberattack compromised business, customer data
Robotics surgical business Intuitive discloses phishing attack
Russia-linked espionage campaign targeting Ukraine using Starlink and charity lures
Scammers Are Now Sending Fake 'Your Data Was Breached' Emails
Scammers are now skipping inboxes and going straight for your calendar
Security Firm Executive Targeted in Sophisticated Phishing Attack
Security Flaw in AWS Bedrock Code Interpreter Raises Alarms
Starbucks data breach: employee records exposed
Stryker attack raises concerns about role of device management tool
Stryker attack wiped tens of thousands of devices, no malware needed
Stryker says hospital tools are safe, but digital ordering systems still down after cyberattack
Sweden’s digital ID provider CGI Sweden confirms data breach
Targeted Phishing Attack Breaches Biotech Company Data
Texas Firm Handing Out up to $5,000 per Person After Data Breach Exposed Names, Social Security Numbers and More
The Gentlemen Ransomware Hits Chase Asia, Payap University, and More
The Ransomware Economy is Shifting Toward Direct Data Extortion
The ransomware economy is shifting toward straight-up data extortion
The UK's plans to tackle ransomware
Threat actors linked to Russia target Ukrainian entities with new backdoor
U.S., UK and Canada launch operation targeting crypto phishing schemes
U.S., UK, Canada start Operation Atlantic to disrupt crypto approval-phishing scams
UK: Companies House Web Glitch Exposes Corporate Details to Fraudsters
UK’s Companies House confirms security flaw exposed business data
US Secret Service, UK and Canada launch Operation Atlantic targeting crypto approval phishing scams
Westminster Village Greenwood Data Breach Exposes Sensitive PII and PHI
What smart factories keep getting wrong about cybersecurity
Woman linked to An Post cyber attack committed string of offences
Zero lessons learned: Convicted scammer allegedly ran another athlete-focused phishing scam from federal prison
Welcome to DBD. On March 8th 2026, DBD celebrated it's sixth anniversary and
Welcome to a special DLR Report solely focused on the Finance Sector, an exclusive presentation of Data-Leaking Ransomware Operator's Global and US Victims that were claimed in the Finance Sector in 2025.

Welcome to last week's ROC Report, an exclusive summary of Ransomware Operator's global victims that were claimed during the period between 2nd March and 8th March 2026, kindly assisted by our partners.