Editor's Message

Welcome to DBD. Cybercrime is making headlines globally. Attacks on well-known brands and organizations are raising public awareness of the severity, frequency and impact of cyber attacks. Proving cybercrime is growing at an alarming rate, DBD has recorded more ransomware attacks this year than any other, and we continue to provide visibility of these in our PRiSM application. This Cybersecurity Awareness Month, please be extra vigilant and mindful that cybercriminals CAN and WILL strike where and when you least expect it. Thanks again for your support. Stay safe. :)


“Data Breaches Digest and its PRiSM portal provide Dentons Global Security Team with valuable insights into the ransomware landscape, from the latest incidents to trends over time, as well as the ability to customize visual analytics. Timely reports and tracking by Data Breaches Digest help inform cyber intelligence for the world’s largest law firm and thus our cybersecurity posture across more than 80 countries worldwide.”
Dentons Senior Analyst, Washington D.C.



Monday, 3 November 2025

Data Breaches Digest - Week 45 2025

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 3rd November and 9th November 2025.


3rd November

10.5 million people are affected by a massive data breach on the Internet

A new way to think about zero trust for workloads

AI ransomware panic - exposing the inflated “80%” claim

Alphalocker Hits Indian Auto Dealer AMPL & Austrian Bakery Unterkofler

Android users urged to delete hundreds of apps immediately in cyber attack warning

Android warning as hundreds of apps should be deleted after cyber attack

Beverly Hills Oncology Medical Group Data Breach Under Investigation

Beware - ransomware gang is tricking victims with fake Microsoft Teams ads

Beware of New Phishing Attack that Abuses Cloudflare and ZenDesk Pages to Steal Logins

CEVA Logistics Hit by Coinbase Cartel Data Breach

CISA and NSA Outline Best Practices to Secure Exchange Servers

Conti Group Member Responsible for Deploying Ransomware Extradited to USA

Conti Ransomware Operator Extradited to the United States

Conti Suspect in Court After Extradition From Ireland

CrowdStrike report shows ransomware surging across Europe

Cyber scare: How India became top target for AI phishing scams

Cyber-espionage campaign mirroring Sandworm TTPs hit Russian and Belarusian military

Cybercriminals Exploit Remote Monitoring Tools to Infiltrate Logistics and Freight Networks

Cybercriminals Use Cloudflare and ZenDesk Pages in Sophisticated Phishing Attack

Cyble Detects Advanced Backdoor Targeting Defense Systems via Belarus Military Lure

Data breach claims hit HMRC after benefit suspensions

Emerging Cyber Risks That Could Rival Ransomware In Impact

Employees keep finding new ways around company access controls

Enterprises are not prepared for a world of malicious AI agents

Europe’s phone networks are drowning in fake calls

European diplomats attacked via Windows zero-day vulnerability

Firms at risk as Japan struggles to keep up with cybercrime amid rise of ransomware

First test cases against Police Service of Northern Ireland (PSNI) over data breach to get under way

G. Hauswirth Architects Hit by DragonForce Data Breach

Gateworks Corporation Data Breach Exposes Partner Documents

Gerson & Schwartz Law Firm Hit by Pear Ransomware Attack

Global law enforcement plays catch-up with crypto criminals as gaps remain

Gmail update as account holders told to 'reset password' after huge data breach

Hacker claiming responsibility for scam University of Pennsylvania emails stole data from 1.2 million people

Hackers are attacking Britain’s drinking water suppliers

Hackers Exploiting LinkedIn DMs in Major Phishing Campaign

Hackers Help Organized Crime Groups in Cargo Freight Heists, Researchers Find

Hackers leak alleged US gas station memos threatening staff

Hackers use Remote Monitoring and Management (RMM) tools to breach freighters and steal cargo shipments

Healthcare Data Breach Targets Medline Europe and Treasure Coast Cardiology

How Safe is AI for your Company? India’s Ransomware Reality

How this millionaire crypto hacker continues to freely cash out a year later

Hungary: Yet Another TISZA Party Data Breach Scandal - Blame the Russians and Orbán

Hypervisor Ransomware: The Hidden Board-Level Attack Vector

Is Not Paying a Ransom in Ransomware Attacks Self-Harm to Companies?

Jabber Zeus Developer ‘MrICQ’ in US Custody After Extradition from Italy

Japanese retailer Askul confirms data leak after cyberattack claimed by Russia-linked group

Kaspersky Flags Coinbase Phishing Scam Targeting Windows Users

Lawyers seek compensation for patients impacted by Genea fertility clinic data breach

Leak Site Ransomware Victims Spike 13% in a Year

LinkedIn Users Hit by Phishing Scam Offering Fake Executive Roles

Major Data Breach Affects Over 10 Million People Using Conduent Services

Malibu Boats Australia suffers ransomware data breach

Malicious VSX Extension "SleepyDuck" Uses Ethereum to Keep Its Command Server Alive

Manufacturing production increases after Jaguar Land Rover (JLR) factory restart following cyber attack

Marks & Spencer (M&S) to share update on cyber attack recovery

Microsoft: Patch for WSUS flaw disabled Windows Server hotpatching

Nation-State Attacks Surging Across Europe, Warns CrowdStrike

Nearly half of Indian firms faced ransomware in 2024

New Dante Spyware Linked to Rebranded Hacking Team, Now Memento Labs

New Graphics Device Interface (GDI) Flaws Could Enable Remote Code Execution in Windows

New HttpTroy Backdoor Poses as VPN Invoice in Targeted Cyberattack on South Korea

NHS Scotland buys £3 million AI-powered anti-ransomware system

North Korean Hackers Caught on Video Using AI Filters in Fake Job Interviews

North Korean Kimsuky Deploys HttpTroy Backdoor in VPN Phishing Attacks

Nova Ransomware Group Lists University of Gävle and Castilla as Victims

Oglethorpe, Inc. Data Breach Affects 92,332 Individuals

Poland hit by major cyberattack as hackers steal loan customers' data

Poland probes major data breach targeting clients of online loan platform SuperGrosz

Police Service of Northern Ireland (PSNI) data breach cases begin at Belfast High Court

Police Service of Northern Ireland (PSNI) data breach cases to begin at Belfast High Court

Prepared for a cyber attack? The three questions that businesses must ask themselves

Proton Data Breach Exposes 300 Million Credentials on Dark Web Markets

Proton Warns of 300 Million Stolen Login Details Circulating on Dark Web

Ransomware attacks are hitting European enterprises at record pace

Ransomware Attacks Rise for the First Time in Six Months

Ransomware gang cracks the whip on US horse gear giant

Ransomware intrusions with old Linux kernel bug reemerge

Ransomware Negotiation Firm Rocked by Insider Cybercrime Scandal

Researchers Uncover BankBot-YNRK and DeliveryRAT Android Trojans Stealing Financial Data

Rhysida ransomware exploits Microsoft certificate to slip malware past defenses

Securing real-time payments without slowing them down

SEO Poisoning: How Microsoft’s Reputation is Under Attack from Rhysida Ransomware

SIM farms expose weaknesses in telecom and authentication ecosystems

South Korea: Gangwon Police Arrest 114 in Cambodia Voice Phishing Gang

Study finds smarter way to train employees to thwart phishing scams

The cost of complacency: How India’s ransomware payments are funding the next attack

The Evolution of SOC Operations: How Continuous Exposure Management Transforms Security Operations

Think tank finds infrastructure ‘inadequately protected against sabotage and cyber threats’

Thousands fall victim to ransomware as European attacks reach record highs - here's why they're so at risk

U.S.-based Sling TV to Pay $530,000 Settlement for Violating California Privacy Law

US Appeals Court lowers burden of proof for data breach lawsuits

US cybersecurity experts indicted for BlackCat (ALPHV) ransomware attacks

US government warns Linux flaw is now being exploited for ransomware attacks

Vexels Data Breach Exposes 820K Users

Victorian Chemical Hit by RansomHouse Ransomware Attack

Western Australia law firm confirms cyber attack following ransomware claims

Windows Graphics Device Interface (GDI) Flaws Expose Systems to Critical Threats, Including RCE and Data Leaks

YouTube ‘Ghost Network’ Spreads Infostealer via 3,000 Fake Videos