Editor's Message

Welcome to DBD. On March 8th, DBD celebrated it's 5th anniversary and PRiSM celebrated it's 2nd anniversary. Little did I know when I started both of these ventures just how much an impact they would have on my life and I'd like to thank each and everyone of you who have supported me over the years, with a special thanks to those individuals who have kindly shared their knowledge with me, and continue to do so. Thanks again for your support. Stay safe. :)


“Data Breaches Digest and its PRiSM portal provide Dentons Global Security Team with valuable insights into the ransomware landscape, from the latest incidents to trends over time, as well as the ability to customize visual analytics. Timely reports and tracking by Data Breaches Digest help inform cyber intelligence for the world’s largest law firm and thus our cybersecurity posture across more than 80 countries worldwide.”
Dentons Senior Analyst, Washington DC



Monday, 5 May 2025

Data Breaches Digest - Week 19 2025

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 5th May and 11th May 2025.


5th May

7 ways to lock down your phone's security - before it's too late

10 passkey survival tips: Prepare for your passwordless future now

Apache Parquet Java Vulnerability CVE-2025-46762 Exposes Systems to Remote Code Execution Attacks

Are You Too Reliant on Third-Party Vendors for Cybersecurity?

Australian Retailers Warned By Minister After Massive UK M&S Ransomware Attack

Azerbaijan blames Russian state hackers for cyberattacks on local media

Blogger inspires cyber pros to fight bots with “zip bombs”

California Man Will Plead Guilty to Last Year’s Disney Hack

Co-op cyber attack leaves 20 MILLION customers at risk of scams for years to come, experts say

Commvault CVE-2025-34028 Added to CISA KEV After Active Exploitation Confirmed

Cyberattacks Targeting US Increased by 136%

Data breach: SK Telecom suspends new subscriber sign-ups

DragonForce claims Co-op cyber attack as retailer confirms customer data loss

Germany Most Targeted Country in Q1 2025 DDoS Attacks

Gmail phishing attacks increasing, passkey upgrade recommended

Golden Chickens Deploy TerraStealerV2 to Steal Browser Credentials and Crypto Wallet Data

Hackers hijack New York Post X account, target crypto subscribers

How CISOs can talk cybersecurity so it makes sense to executives

How Kraken Exposed North Korean Hacker Posing as Job Applicant

Japanese freight company Kintetsu World Express reports major data security incident disrupting daily operations

Kelly Benefits confirms an attack affecting nearly half a million

Kraken Dodges A Bullet From A North Korean Hacker

Marks and Spencer lacked business continuity plan amid ongoing cyber attack chaos, M&S insider claims

National Cyber Security Centre (NCSC): ‘Cyber incidents on UK retailers are a wake-up call’

National Cyber Security Centre (NCSC) Warns of Ransomware Attacks Targeting UK Organisations

Pakistan-backed APT36 hackers used the Pahalgam terror attack as bait in a phishing campaign

Ransomware Attacks Fall in April Amid RansomHub Outage

Ransomware is still a thing because we’re making it easy for the hackers

Ransomware spike exposes cracks in cloud security

Russian hackers target Romanian state websites on election day

Scattered Spider linked to the recent Marks & Spencer (M&S) ransomware attack

Signal clone used by Trump’s security adviser hacked

SK Telecom halts new sign-ups amid nationwide USIM data breach response

SK Telecom halts new signups after cyberattack, scrambles to replace SIMs

SK Telecom suspends new subscriber sign-ups as part of data breach response measures

Tech site says Signal-like app used by Trump adviser was hacked

TeleMessage, a modified Signal clone used by US government officials, has been hacked

TeleMessage, the Signal-esque app used by the Trump administration, has been hacked

TikTok Fined €530m Over Transfers of European User Data to China

Trump Administration Playing Truth or Dare with EU-US Data Privacy Framework

UK retailer Co-op takes network offline after detecting an attempted cyber attack

UK retailers under cyber attack: Co-op member data compromised

UK shares security tips after major retail cyberattacks

Ukrainian Extradited to U.S. Over Global Ransomware Scheme Using Nefilim Strain

Urgent warning for millions of Co-op customers after cyber attack

US: Survey ranks Indiana No. 2 for ‘phishing’ victims

Why External Attack Surface Management (EASM) Projects Fail: Three Pitfalls to Avoid

Why Secure Document Management Matters Against Cybersecurity Threats