Editor's Message

Welcome to DBD. On March 8th, DBD celebrated it's 5th anniversary and PRiSM celebrated it's 2nd anniversary. Little did I know when I started both of these ventures just how much an impact they would have on my life and I'd like to thank each and everyone of you who have supported me over the years, with a special thanks to those individuals who have kindly shared their knowledge with me, and continue to do so. Thanks again for your support. Stay safe. :)


“Data Breaches Digest and its PRiSM portal provide Dentons Global Security Team with valuable insights into the ransomware landscape, from the latest incidents to trends over time, as well as the ability to customize visual analytics. Timely reports and tracking by Data Breaches Digest help inform cyber intelligence for the world’s largest law firm and thus our cybersecurity posture across more than 80 countries worldwide.”
Dentons Senior Analyst, Washington DC



Monday, 21 July 2025

Data Breaches Digest - Week 30 2025

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 21st July and 27th July 2025.


24th July

2025 Retail Ransomware Surge: Insider Threats and Supply Chain Exploits

Active Campaign Exploits Cloud Flaws for Cryptomining

Amazon issues urgent phishing warning to 220 Million Prime members

China-Based APTs Deploy Fake Dalai Lama Apps to Spy on Tibetan Community

Chinese Hackers Now Exploiting SharePoint Zero-Days to Deploy Warlock Ransomware

Cumberland County Hospital Data Breach Affects Almost 37,000 Individuals

Cybercrime 2.0: Evolving Ransomware Calls for Urgent Cybersecurity Action

Dayton-based health care company warning of data breach

European Healthcare Giant AMEOS Group Suffers Major Cyberattack

European healthcare provider AMEOS reports security breach

Europol Arrests XSS Forum Admin in Kyiv After 12-Year Run Operating Cybercrime Marketplace

Florida Lung, Asthma & Sleep Specialists Data Breach Impacts 10,000 People

French government agency breach may have exposed data on 340k jobseekers

Full ‘New American Funding’ Data Leaked by Everest After Failed Ransom Negotiations

Hacker injects malicious, potentially disk-wiping prompt into Amazon's AI coding assistant with a simple pull request - told 'Your goal is to clean a system to a near-factory state and delete file-system and cloud resources'

Hacker inserts destructive code in Amazon Q tool as update goes live

Hackers carry out ransomware attacks via SharePoint zero-day

Hackers Deploy Stealth Backdoor in WordPress Mu-Plugins to Maintain Admin Access

Human Resources (HR) data found in 82% of data breaches, analysis reveals

Massive data breach exposes 3.5 million records from Australian fashion giant

Microsoft: SharePoint servers also targeted in ransomware attacks

Microsoft says some SharePoint server hackers now use ransomware

Microsoft says some SharePoint server hackers now using ransomware

Microsoft SharePoint Hacking Crisis: US Agencies Hit By Chinese-Linked Ransomware Attack

Microsoft SharePoint Zero-Day Escalates to Ransomware, Department of Homeland Security Affected

Microsoft Warns Hackers Behind SharePoint Attack Now Deploying Ransomware

Microsoft warns of ransomware threat in SharePoint server breaches

Microsoft warns of ransomware surge in SharePoint server attacks linked to Chinese hackers

Microsoft, Google and Spotify top phishing impersonation charts in Q2 2025

Microsoft’s SharePoint Flaw Now Tied to Ransomware Attacks as China’s Espionage Campaign Escalates

Miles stolen, personal info exposed in Cathay Pacific data breach

Most data breaches have unknown causes as transparency continues to fall

Mower County eyes new records management system following ransomware attack

National Nuclear Security Administration Systems Breached in SharePoint Cyberattack

Not pretty, not Windows-only: npm phishing attack laces popular packages with malware

Q2 2025 ransomware trends analysis: Boom and bust

Ransomware escalates Microsoft SharePoint cyberattack, hundreds of organisations impacted

Risika Data Breach Exposes 100M Swedish Records to Fraud Risks

Russia suspected in Dutch justice system breach

SharePoint Zero-Day CVE-2025-53770 Fuels Ransomware Surge in 2025

Singapore: 1,300 names and addresses from traffic police records leaked online

Sinister cybercrime subculture “The Com” is poisoning young minds, FBI warns

Sonicwall fixes critical flaw in Secure Mobile Access (SMA) appliances, urges customers to check for compromise (CVE-2025-40599)

SonicWall urges admins to patch critical RCE flaw in SMA 100 devices

South Korea imposes 343 million won penalty on HAESUNG DS for data breach of 70,000 shareholders

Storm-2603 Exploits SharePoint Flaws to Deploy Warlock Ransomware on Unpatched Systems

Student arrested following an investigation into the distribution of criminal phishing kits that helped steal millions

That SharePoint vulnerability just became more dangerous

Thousands of people involved in 'The Com' targeting victims with ransomware, swatting

UK and Romania Crack Down on ATM Fraudster Network

UK says no to hacker payouts

UK Says STOP Ransomware Attacks! Stop Public Administration Ransom Payments

University student who sold fraud kits jailed

University student who sold more than a thousand phishing kits to fraudsters is jailed

Upper Dublin Family Dentistry Data Breach Affects 5,000 People

US agencies warn of rising Interlock ransomware threat targeting healthcare sector

XSS Forum Administrator Allegedly Arrested in Kyiv

Your app is under attack every 3 minutes

23rd July

1 weak password, 700 jobs lost: How a ransomware attack destroyed 158-year-old UK firm

3.5 Million Records Exposed in Global Fashion Brand Breach

4-Year Investigation Leads to Arrest of Alleged XSS Cybercrime Forum Admin

$7.1 Million might be returned to victims of crypto-powered oil and gas scheme

32 Pearls Data Breach Affects 23,550, Exposing Social Security Numbers

68% of Organizations Experienced Data Leakage From Employee AI Usage

340K exposed after breach of French governmental employment agency

After $44M Cyberattack, CoinDCX Seeks Help Through Bounty Program

AI-enhanced Phishing: What MSPs Need to Know

Amazon Issues Scam Warning To Prime Members Amid Spike In Phishing

Business Associate Data Breach Affects Duke Regional Hospital Patients

Chinese hackers behind SharePoint server attacks, Microsoft says

CISA Orders Urgent Patching After Chinese Hackers Exploit SharePoint Flaws in Live Attacks

CISA warns of hackers exploiting SysAid vulnerabilities in attacks

Clorox lawsuit says help-desk contractors handed over passwords in 2023 cyberattack

Clorox Sues IT Service Provider Cognizant for Causing 2023 Cyber-Attack

Clorox sues tech vendor for simply giving passwords to Scattered Spider in 2023 hack

Cyberattack on Hongkong Post exposes address book data of over 60,000 EC-Ship users

Data leak puts 70,000 EC-Ship users on alert after cyber attack targeting Hongkong Post

Department of Education Site Mimicked in Phishing Scheme

Dior begins notifying customers of data breach

Don’t lose your business to a cyber attack

Ellis Medicine Discloses Data Breach Affecting 13,383 People

Europe’s defence giant Naval Group hit with major breach, hackers claim

European authorities arrest alleged admin of notorious Russian crime forum XSS

European healthcare giant AMEOS reveals data breach - millions of users warned to be on their guard, here's what we know

Fake PAN 2.0 Phishing Scam: Indian Government Issues Warning For Citizens, Your Personal And Financial Details Are At A Risk

FBI and CISA Warn of Interlock Ransomware Targeting Critical Infrastructure

FBI, CISA advise Interlock ransomware "drive-by" vigilance

Federal Agencies Warn of Interlock Ransomware Targeting Critical Infrastructure with Unusual Tactics

Feds Issue Interlock Ransomware Warning as Healthcare Attacks Spike

Forward, The National Databank for Rheumatic Diseases Discloses Data Breach

France: New Data Breach Could Affect 340,000 Jobseekers

Genea data breach: Patient fury as IVF giant confirms personal details, medical records published on dark web

Global Ransomware Attacks Plummet 43% in Q2 2025

Google Launches OSS Rebuild to Expose Malicious Code in Widely Used Open-Source Packages

Hacked Indian crypto exchange CoinDCX launches unusually high bounty

Hacker Exploits Amazon Q AI Tool for Data-Erasing Attacks, Exposing Risks

Hacker Plants Computer 'Wiping' Commands in Amazon's AI Coding Agent

Hackers fooled Cognizant help desk, says Clorox in $380M cyberattack lawsuit

Hackers unleash phishing attacks on Microsoft, Google, Apple

Hackers who breached Arizona election website aimed at other targets, too

Hongkong Post Cyberattack Exposes User Data in EC-Ship Breach

Hundreds of organizations breached by SharePoint mass-hacks

Infamous Chinese surveillance cameras active across Ireland despite national security warnings

Interlock ransomware gang running amock, targeting North America and Europe, CISA warns

Is Ransomware Dying? Don’t Break Out the Champagne Just Yet

Is Segmentation Higher Education’s Most Realistic Defense Against Ransomware?

Louis Vuitton: personal data of Portuguese clients compromised by cyber attack

Luxury Brand Louis Vuitton Suffers a Multi-Country Cyber Attack that Leaked Personal Data

Major Indian Infrastructure Firm Simplex Infrastructures Allegedly Hit by Data Breach

Massive data leak maps out years of Swedish citizens’ private lives

Mastermind behind Russian-speaking cybercrime hub arrested in Ukraine

Maximum severity Cisco Identity Services Engine (ISE) vulnerabilities exploited by attackers

Meta, Flo trial begins over period-tracking app's data sharing practices

Microsoft Blames ‘China-Based Threat Actor’ for SharePoint Attacks

Microsoft fixes three SharePoint zero-day exploits used in series of cyberattacks - how to patch them

Microsoft Most Phished Brand in Q2 2025

Millions Of Users At Risk Of Cyber Attack: Buy Now Pay Later Apps Found Sharing Personal Data, Report Reveals

Mous Customer Data Allegedly Leaked - 54,000 Records Up for Sale on Dark Web

Mower County, Minnesota, Restores Systems From Ransomware Attack

Mozilla patches critical vulnerabilities with Firefox 141 release

National Cyber Security Centre (NCSC) calls out Russian intelligence malware that gains control of email accounts

Nearly half of MSPs admit to having a ransomware kitty

New Coyote Malware Variant Exploits Windows UI Automation to Steal Banking Credentials

New Crux Ransomware Emerges in Three Attacks This Month

New York Proposes Cybersecurity Regulations for Water Systems

New York unveils new cyber regulations, $2.5 million grant program for water systems

NPM package ‘is’ with 2.8M weekly downloads infected devs with malware

Phishing Campaign Imitating U.S. Department of Education (G5)

Phishing campaign targets U.S. Department of Education’s G5 portal

Phishing simulations: What works and what doesn’t

Play Ransomware Allegedly Targets DA Whitacre Construction and Ka Logistics

Ports are getting smarter and more hackable

Prestige Maintenance USA Data Breach Affects 65,452 People

Qantas ‘hacker’ gave airline 72-hour deadline

Ransomware: UK to ban public sector from paying out

Ransomware Attacks Fall by Almost Half in Q2, But Stay on the Front Line of Cyber Warfare

Ransomware Groups Weaponize Remote Monitoring and Management (RMM) Tools to Infiltrate Networks and Exfiltrate Data

Researchers Found Nearly 600 Incidents of AI Fraud

Spotify Phishing Surge Signals Broader Targeting of Everyday Brands

Suspected admin of major dark web cybercrime forum arrested in Ukraine

Suspected Admin of XSS.IS Cybercrime Forum Arrested in Ukraine

Suspected XSS Forum Admin Arrested in Ukraine

SysAid Flaws Under Active Attack Enable Remote File Access and Server-Side Request Forgery (SSRF)

That “credit card security” email might be a trap

The fraud trends shaping 2025: Pressure builds on online retailers

Threat Actor Mimo Targets Magento and Docker to Deploy Crypto Miners and Proxyware

Travellers warned on cybersecurity after Qantas data breach

UK government heightens security measures after M&S, Co-op, Harrods cyber attack

UK Government launches major attempt to crack down on ransomware epidemic

UK Government sticks to plan to ban public sector from ransomware payments

UK Government to ban public sector from paying ransoms in cybercrime crackdown

UK Ministry of Defence (MoD) avoids further penalty after data breach

UK moves to ban ransomware payments for public sector groups

UK Plan to Ban Ransomware Payments Moves Forward

UK Proposes Ransomware Payment Ban for Critical Sectors, But Experts Warn of Blind Spots

UK proposes targeted ban on ransomware payments across public sector, critical infrastructure

UK to ban public sector from making ransomware payments

UK to ban public sector from paying ransomware demands

UK to Lead Crackdown on Cyber Criminals with Ransomware Measures

Ukraine arrests suspected admin of XSS Russian hacking forum

US agencies warn of Interlock ransomware targeting critical infrastructure in North America, Europe

US Agencies Warn of Surging Interlock Ransomware Attacks Targeting Healthcare, Businesses

US Government Warns of Wide-Ranging Interlock Attacks

US nuclear weapons agency hacked in Microsoft SharePoint attacks

XSS forum admin arrested in Kyiv, Europol claims

XSS.IS Cybercrime Forum Seized After Admin Arrested in Ukraine

22nd July

158-year-old company forced to close after ransomware attack precipitated by a single guessed password - 700 jobs lost after hackers demand unpayable sum

158‑Year‑Old UK Logistics Firm Collapses After Cyberattack

AI coding tool wipes production database, fabricates 4,000 users, and lies to cover its tracks

AI-powered phishing: A growing cyber risk for SMEs

Akamai Identifies Coyote Malware Variant Capable of Compromising Microsoft UIA Framework

'An unauthorised third party temporarily accessed our system': Aussie customers exposed after luxury brand Louis Vuitton suffers massive data breach

Analysis Finds 131 Vulnerable Exposed Ports Per Organization

Any Intent to Pay a Ransom? UK Government Wants to Know

Apple alerted Iranians to iPhone spyware attacks, say researchers

Arcus Ransomware Group Allegedly Breaches SubsCorp and Protech Medical

As AI tools take hold in cybersecurity, entry-level jobs could shrink

Australian Regulator Alleges Financial Firm Exposed Clients to Unacceptable Cyber Risks

British institutions to be banned from paying ransoms to Russian hackers

Canada: Federal privacy watchdog discontinues investigation into student data breach

Chinese nation-state groups exploiting SharePoint vulnerability, Microsoft confirms

Cierant Corporation Announces 232,500-Record Data Breach

CISA and FBI warn of escalating Interlock ransomware attacks

CISA Warns of Interlock Ransomware With Double Extortion Tactics Attacking Windows and Linux Systems

CISA, FBI Issue Interlock Ransomware Warning

Cisco: Maximum-severity Identity Services Engine (ISE) RCE flaws now exploited in attacks

Cisco Confirms Active Exploits Targeting ISE Flaws Enabling Unauthenticated Root Access

Co-op confirms massive data breach as retail cyberattacks surge

Coyote malware abuses Windows accessibility framework for data theft

Coyote Trojan First to Use Microsoft UI Automation in Bank Attacks

Credential Theft and Remote Access Surge as AllaKore, PureRAT, and Hijack Loader Proliferate

Cybercriminals from GLOBAL GROUP Target All Platforms with Golang Ransomware

Debug Code in ExpressVPN Windows App Caused IP Leak via RDP Port

Dell acknowledges data breach, but claims stolen data is fake

Dell Confirms Security Breach by Extortion Group, Calls Stolen Data ‘Fake’

Dell Data Breach - World Leaks Group Hacks Test Lab Platform

Dell demonstration platform breached by World Leaks extortion group

Dell downplays WorldLeaks-claimed data breach

Dior begins sending data breach notifications following major cyber incident

Dior notifies US customers of data breach involving sensitive personal information

Dubai Real Estate Giant Binghatti Allegedly Breached - Sensitive Customer Data for Sale

Engineer pleads guilty to stealing 3,000 secret files about US nuclear missile detection technology for China

Enterprise printer security fails at every stage

FBI urges vigilance against Interlock ransomware group behind recent healthcare attacks

Financial Tech Giant SilverLake Axis Allegedly Breached - 423GB of Data for Sale

French CRM Provider MyClic.fr Allegedly Breached - Database of 1.8 Million for Sale

Global Fashion Label SABO’s 3.5M Customer Records Exposed Online

GLOBAL GROUP’s Golang Ransomware Attacks Windows, Linux, and macOS Environments

Google, Microsoft say Chinese hackers are exploiting SharePoint zero-day

Hackers Exploit Microsoft SharePoint Flaws in Global Breaches

Hackers Exploit SharePoint Zero-Day Since July 7 to Steal Keys, Maintain Persistent Access

Hong Kong Data Protection Authority (DPA) looking into Louis Vuitton data breach

How fake Microsoft alerts trick you into phishing scams

How Secure Are “Isolated” Systems? Here Is What Dell’s Data Breach Tells Us

Huge data breach at Australian fashion giant - 3.5 million users at risk, here's what we know so far

Hungarian police arrest suspect in cyberattacks on independent media

Inc Ransom Allegedly Breaches Eight International Organizations

Indonesian Port Operator Pelindo Subsidiary Allegedly Breached - Sensitive Data and Source Code for Sale

Indonesian Regional Bank PT BPR Serang Allegedly Breached - Customer Loan Data For Sale

Investigation of a data breach affecting 419,000 Louis Vuitton customers in Hong Kong

Iran’s Expanding Digital Repression: From Domestic Surveillance to Global Cyber Threats

Kaspersky warns of new Gunra ransomware targeting South Korean institutions

Kaspersky Warns of New Tailored Phishing Emails Aimed at Corporate Staff

KNP Logistics, 158-year-old UK firm, shuts down after ransomware attack via weak password

Lumma infostealer malware returns after law enforcement disruption

Louis Vuitton hit by major data breach in Hong Kong affecting 419,000 customers

Louis Vuitton reveals major data breach impacting Australian customers

Major European healthcare network discloses security breach

Major Gaming PC Builder iBUYPOWER Allegedly Hit by Lynx Ransomware

Major German media group falls victim to hacker attack

Maryland dermatology practice said data breach affected over 1.9 million people

Massive cyber attack on Microsoft? Report claims data of 100 firms compromised

Microsoft aware of SharePoint security flaw but failed to effectively patch it, timeline shows

Microsoft Links Ongoing SharePoint Exploits to Three Chinese Hacker Groups

Microsoft links Sharepoint attacks to Chinese hacking groups

Microsoft Patches SharePoint Flaws as Hackers Rush to Exploit Them

Microsoft pins on-prem SharePoint attacks on Chinese threat actors

Microsoft Reveals Chinese State Hackers Exploiting SharePoint Flaws

Microsoft server hack hit about 100 organizations, researchers say

Montana Mental Health Center Announces 87,000-Record Data Breach

MSPs put aside dedicated funds for ransomware payments

Mutual insurer reimburses yacht broker after phishing scam leads to €58,000 loss

Naughty Sacramento cops spy on energy records to target weed growers

Nearly Half of MSPs Have Dedicated Kitty For Ransomware Incidents

New cyber attack rules after tragic NHS patient death and Marks & Spencer (M&S) extortion bid

New GLOBAL GROUP ransomware targets all major operating systems

New Report Reveals Just 10% of Employees Drive 73% of Cyber Risk

New UK law would ban ransomware payments by publicly funded organizations

New Web3 Phishing Attack Leverages Fake AI Platforms to Steal Usernames and Passwords

New Zealand businesses warned as Microsoft SharePoint targeted in cyber attack

Premier Health Partners Announces July 2023 Data Breach

Radiology Associates of Richmond data breach affected over 1.4 million people

Ransomware Gang Destroys A 158-Year-Old Company And A Weak Password Is To Blame

Ransomware Group Uses AI Chatbot to Intensify Pressure on Victims

Ransomware payments ban to be introduced in the UK

Russian Threat Actors Target NGOs with New OAuth Phishing Tactics

Russian-speaking hacker group disrupted by local researchers

Scammers steal high-value goods using stolen corporate identities

Sensitive Government Database of Argentine Children and Adolescents (R.E.U.N.A) Allegedly Leaked Online

SharePoint 'ToolShell' Vulnerabilities Exploited by Chinese Nation-State Hackers

Shropshire: Ransomware cyber attack hit 11 schools, committee told

Shropshire school cyber attack stopped pupils submitting work

South Africa Telecom Sector Faces Crisis: 80% of Firms Hit by Ransomware in Past Year

Specialty Networks Settles Class Action Data Breach Lawsuit for $2.6 Million

The UK government will ban ransomware payments. Is this the way to stop hackers?

This 158-Year Old Company Went Under Due to a Weak Password

UK Bans Public Sector from Paying Ransomware Gangs

UK Confirms Ban of Ransomware Payments to Public and Critical National Infrastructure Sectors

UK Confirms Ransomware Payment Ban for Public Sector and Critical National Infrastructure (CNI)

UK Government to ban public bodies from making ransomware payments

UK government to ban public bodies from paying ransoms to hackers

UK government to bring in ransomware payment ban

UK Government to prevent public sector paying ransomware

UK government wants ransomware victims to report breaches so it can carry out ‘targeted disruptions’ against hackers

UK Leads Ransomware Crackdown on Cyber Criminals

UK logistics firm hit by Ransomware attack, 700 jobs lost

UK may retreat on iCloud backdoor plan following US pressure

UK moves forward with plans for mandatory reporting of ransomware attacks

UK Moves to Block Public Sector from Paying Ransomware Criminals

UK plans to ban public sector bodies from paying cyber ransom

UK proposal would forbid ransom payments by government agencies, but will it meaningfully decrease ransomware attacks?

UK to ban public sector organizations from paying ransomware gangs

UK to lead crackdown on cyber criminals with ransomware measures

UK toughens up on ransomware payments

US schools struggle to counter growing ransomware risks

Washington D.C. Real Estate Giant WC Smith Allegedly Breached - Over 1TB of Data for Sale Online

Weak Password Enables Ransomware Attack on 158-Year-Old Firm

Web3 Phishing Attack Poses as AI Platforms to Steal User Credentials

Widespread Net Request for Quote (RFQ) Scam Targets High-Value Goods

21st July

1 Million Adoption Agency Records Exposed

5.4 Million Affected by Healthcare Data Breach

$44 Million CoinDCX Heist: Hacker Received Tornado Cash ETH, Then Bridged Funds Cross-Chain

158-Year-Old UK Logistics Firm KNP Collapses After Ransomware Attack Exploits Weak Password

3,500 Websites Hijacked to Secretly Mine Crypto Using Stealth JavaScript and WebSocket Tactics

750,000 Impacted by Data Breach at The Alcohol & Drug Testing Service

Accounting Firm Targeted by Malware Campaign Using New Crypter

Alaska Airlines IT Outage Grounds Flights Across Fleet, Possibly Due to Ransomware Attack

Are your employees using Chinese GenAI tools at work?

Avantic Medical Lab fall victim to Everest Ransomware Group: Claims 33 GB of Data Stolen

Beware of npm Phishing Emails Stealing Developer Credentials

Beware of npm Phishing Emails Targeting Developer Credentials

Breach of Mormon Church university vendor exposes over 25K students

China-Linked Hackers Launch Targeted Espionage Campaign on African IT Infrastructure

Cisco Patches Three Critical Vulnerabilities – Here are the Products Affected

City Employees in Nitro, West Virginia, Face Tax Limbo After Data Breach

CoinDCX hacker routes $46m into Ethereum after Lazarus-style attack

Critical CrushFTP vulnerability exploited. Have you been targeted? (CVE-2025-54309)

Critical Flaw in NVIDIA AI Toolkit Puts Cloud Services at Risk – Upgrade Immediately

Cyber-Attack Group Targets Singapore Infrastructure

Cybercriminals Deploy AI-Driven Cloaking to Evade Detection of Phishing and Malware Sites

Cybersecurity researchers have spotted a potent new ransomware strain being used in the wild

Cyber security expert outlines the scams Qantas customers can expect after data breach

Cyber turbulence ahead as airlines strap in for a security crisis

Cyberattack on CoinDCX Triggers $44M Loss, But No Impact on User Wallets

Cybercrime 2.0: Evolving Ransomware Calls for Urgent Cybersecurity Action

Cybersecurity Isn’t Just an IT Line Item - It’s a Business Imperative

Data Breach Strikes Louis Vuitton: Privacy Concerns for 419,000 Customers

Data of all 6.5 million Co-op members stolen in cyber attack

Dell confirms breach of test lab platform by World Leaks extortion group

Dell Data Breach - Test Lab Platform Hacked by World Leaks Group

Dell Solution Center Test Lab Breach, Linked to World Leaks Extortion Group Attack

Dior begins sending data breach notifications to U.S. customers

Direwolf Ransomware Group Claims Attacks on Akribis Systems, Pergamon Status, Anadolu Hastaneleri, and Universidad Mayor

Dutch Public Prosecutor’s Office offline after Citrix vulnerability: possible data breach

Employee’s weak password opened door to Knights of Old’s cyber attackers

ExpressVPN bug leaked user IPs in Remote Desktop sessions

Fake npm Website Used to Push Malware via Stolen Token

Fake Receipt Generators Fuel Rise in Online Fraud

File transfer company CrushFTP warns of zero-day exploit seen in the wild

Global Hacker Attack on Microsoft: Government Agencies and Institutions Hit

Global Microsoft SharePoint Hacker Attack: Governments, Businesses, and Schools Affected

Global operation disrupts pro-Russian hacker group behind cyber attacks on Ukraine and allies

H2miner botnet upgraded with AI-generated ransomware

Hackers Exploiting Microsoft Flaw to Attack Governments, Businesses

Hackers exploiting SharePoint zero-day seen targeting government agencies

Hackers hit Dell product demo platform, but impact is limited

Hard-Coded Credentials Found in Hewlett-Packard Enterprise (HPE) Instant On Devices Allow Admin Access

Healthcare sector hit hard by cyber attacks, phishing on the rise

HIV Patient Data from RS Polri Kramat Jati Allegedly For Sale on Dark Web

Hong Kong privacy watchdog opens probe into Louis Vuitton Hong Kong's data breach

Hong Kong probes Louis Vuitton data leak after UK, Korea attacks

How dark web insights illuminate cyber-defences

How ISO 42001 Strengthens AI Cybersecurity and Data Privacy

HR-Themed Phishing Emails Surge in Q2: How HR Can Fight Back

India’s biggest crypto exchange CoinDCX loses $44 million in cyber attack

Indian crypto exchange CoinDCX confirms $44M stolen during hack

Indian crypto exchange CoinDCX says $44 million stolen from reserves

Indian crypto exchange CoinDCX to announce bounty program after $44M hack

Information Commissioner’s Office (ICO) says Ministry of Defence (MoD) Afghanistan data breach was ‘unacceptable’

Investigation into a data breach affecting 419,000 Louis Vuitton customers in Hong Kong

Iran-Linked DCHSpy Android Malware Masquerades as VPN Apps to Spy on Dissidents

Iranian Hackers Deploy New Android Spyware Version

Japanese Police Release Free Decryption Tool for Phobos and 8Base Ransomware Victims

KAWA4096 Ransomware Employs Windows Management Instrumentation (WMI) Techniques to Delete Backup Snapshots

Louis Vuitton Data Breach Exposes 419,000 Hong Kong Customers

Louis Vuitton hit by massive Hong Kong data breach

Louis Vuitton Hong Kong probed over major data breach impacting 419,000 customers

Luxury Leak: Louis Vuitton's Data Breach Scandal

Massive SharePoint zero-day exploit threatens thousands of companies

Microsoft: Attackers Actively Compromising On-Prem SharePoint Customers

Microsoft Confirms Hackers Exploiting SharePoint Flaws, Patch Now

Microsoft fixes two SharePoint zero-days under attack, but it's not over - how to patch

Microsoft releases emergency patches for SharePoint RCE flaws exploited in attacks

Microsoft Releases Urgent Patch for SharePoint RCE Flaw Exploited in Ongoing Cyber Attacks

Microsoft Server Software comes under cyberattack from unidentified hacker

Microsoft Sharepoint flaw triggers global cyber attack spree

Microsoft warns businesses, governments of cyber attack

Minnesota Lawyers Mutual Insurance Data Breach Exposes Social Security Numbers

Mosaic Life Care Data Breach Affects 145,269 Patients

NailaoLocker Ransomware Attacking Windows Systems Using Chinese SM2 Cryptographic Standard

Navesink Rehab falls victim to BLACKLOCK ransomware group

New CrushFTP Critical Vulnerability Exploited in the Wild

New EncryptHub campaign against Web3 developers, novel ransomware strains detailed

New GhostContainer Malware Hits High-Value MS Exchange Servers in Asia

New KAWA4096’s Ransomware Leverages Windows Management Instrumentation to Delete Shadow Copies

New KAWA4096 Ransomware Variant Exploits Windows Management Instrumentation for Data Wipe

New malware samples exfiltrate WhatsApp data to target Iran regime’s enemies

New zero-day bug in Microsoft SharePoint under widespread attack

One weak password brought down a 158-year-old company

Over 1,000 CrushFTP servers exposed to ongoing hijack attacks

Parisian Tour Agency ‘Come to Paris’ Allegedly Breached - Admin Access for Sale

Password from hell: Weak login credentials of a single staffer wiped out a 158-year-old firm, and its boss is now warning others

Patch SharePoint Now: Microsoft Servers at Risk of New ToolShell RCE Attack

PDI Health Data Breach may have leaked 373,453 patient records

PeopleCheck Data Breach: Ransomware Group Claims to Steal 4.3 GB of Data

Phishing Attack Bypasses FIDO Key Authentication

Phobos, 8Base ransomware decryptors issued

PoisonSeed Hackers Bypass FIDO Keys Using QR Phishing and Cross-Device Sign-In Abuse

Qilin Ransomware Allegedly Breaches Thai Manufacturer Adiantes

Radiology Associates of Richmond Confirms Data Breach Affecting 1.4 Million Patients

Ransomware attacks in education jump 23% year over year

Ransomware Ruins Historic UK Firm After Single Password Breach

Russian Alcohol Giant Novabev Group Discloses Ransomware Incident

Safe Fleet Holdings Data Breach Exposes Social Security Numbers

Serial spyware founder Scott Zuckerman wants the FTC to unban him from the surveillance industry

Singapore under ongoing cyber attack from APT group

Single password breach destroys 158-year-old British transport company KNP Logistics

Steadfast Companies Data Breach Exposes Social Security Numbers

Tech Giant Dell Allegedly Hit by WorldLeaks Ransomware – 1.3 TB of Data at Risk

Threat Actors Compromise Popular npm Packages to Steal Maintainers’ Tokens

Two Men Plead Guilty to Money Laundering in Connection with Phishing Scams that Targeted San Francisco-Based Company, Other Victims

UK blames Russia’s infamous ‘Fancy Bear’ group for Microsoft cloud hacks

UK National Cyber Security Centre (NCSC) links ‘Authentic Antics’ malware to Russia’s GRU and APT28, imposes sanctions on hacker operatives

UK Retailer The Co-Op Confirms Data Breach Impacted 6.5 Million People

United Natural Foods (UNFI) expects up to $400 million sales decline due to recent cyber attack

Warning: Microsoft alerts businesses, governments to server software "active attack"

Warnings issued as hackers actively exploit critical zero-day in Microsoft SharePoint

Weak password allowed hackers to sink a 158-year-old company

Weak Password Let Ransomware Gang Destroy 158-Year-Old Company

World Leaks Claims Dell Data Breach, Leaks 1.3 TB of Files

Zero-Day Vulnerability Hits Microsoft SharePoint, Urgent Patch Issued