Editor's Message

Welcome to DBD. Cybercrime made global headlines in 2025. Attacks on well-known brands and organisations raised public awareness of the severity, frequency and impact of cyber attacks. Ransomware attacks were the highest ever recorded, and 2026 could be worse, as cyber criminals continue to extort their victims, with little chance of being brought to justice. It's a dangerous world out there, so please be extra vigilant and mindful of the risks and threats. Wishing you all the best for the New Year. Thanks again for all your support. Stay safe. :)


“Data Breaches Digest and its PRiSM portal provide Dentons Global Security Team with valuable insights into the ransomware landscape, from the latest incidents to trends over time, as well as the ability to customize visual analytics. Timely reports and tracking by Data Breaches Digest help inform cyber intelligence for the world’s largest law firm and thus our cybersecurity posture across more than 80 countries worldwide.”
Dentons Senior Analyst, Washington D.C.



Monday, 9 February 2026

Data Breaches Digest - Week 7 2026

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 9th February and 15th February 2026.


9th February

Another active exploitation of SolarWinds Web Help Desk detected

Beware of Apple Pay Phishing Attack that Aims to Steal Your Payment Details

BeyondTrust Fixes Critical Pre-Auth RCE Vulnerability in Remote Support and Privileged Remote Access (PRA)

BeyondTrust warns of critical RCE flaw in remote support software

Black Basta Ransomware Actors Embeds BYOVD Defense Evasion Component with Ransomware Payload Itself

Black Basta Ransomware Integrates BYOVD Technique to Evade Defenses

Bloody Wolf Targets Uzbekistan, Russia Using NetSupport RAT in Spear-Phishing Campaign

BridgePay Confirms Ransomware Attack, No Card Data Compromised

BridgePay ransomware attack triggers nationwide card processing outage

China-Linked DKnife Spyware Hijacking Internet Routers Since 2019

ClickFix access broker campaign hits Windows with Python-driven backdoors

CoinbaseCartel hacker claims American audio behemoth Dolby

Discord to introduce face scans or ID checks for all users in global rollout, months after admitting data breach

Don’t Pay The Ransom Demand After A Ransomware Attack: Cyber Storage Resilience To The Rescue

EgyptAir Data Breach: 104k Records and HR Data Allegedly Leaked

EgyptAir Data Breach Alert: Massive Employee Records Allegedly Leaked Online

EU Officials Respond After Cyber-Attack Exposes European Commission Mobile Devices

EU, Dutch government announce hacks following Ivanti zero-days

European Commission Contains Cyber-Attack Targeting Staff Mobile Data

European Commission discloses breach that exposed staff data

European Commission hit by cyberattackers targeting mobile management platform

European Commission mobile infrastructure targeted in cyber-attack

European Commission probes cyberattack on mobile device management system

European Commission responds to cyber-attack on its central mobile infrastructure

Farcaster Data Leak Exposure: 1.3GB of Wallet and Profile Data

Fédération Française de Tir Data Breach Impacts 35,000 Members

FIIG Securities Faces $2.5M Penalty After Cyber Attack Exposes Weak Incident Response

Flickr confirms data breach, tells customers their private info may have been affected - here's what we know

Flickr Data Breach Exposes User Info via Email Provider

Flickr issues warning over possible user data exposure

Flickr moves to contain data exposure, warns users of phishing

Flickr says it may have suffered a third-party data breach

Flickr warns of data breach

Flickr’s 35 Million Users Affected by Third-Party Data Exposure

From Fileless Attacks to Identity Abuse: The Hard Truth About Ransomware in 2026

Gold Medalist Viral Video Scandal 2026 Turns Out To Be A Phishing Scam: Here's What Could Happen If You Click It

Hacker Attack hits Uffizi Museum

Hacker behind one of Poland’s biggest data leaks arrested after 8 years

Hacker behind Poland’s largest ever data leaks caught after eight-year hunt

Hackers breach Dutch privacy regulator, employee data compromised

Hackers fuel panic with claims linking crypto data leak to recent kidnappings in France

Hackers Leveraging Free Firebase Developer Accounts to Send Phishing Emails

Hackers Use Signal QR Codes to Spy on Military and Political Leaders

High Court blocks Capita bid to throw out data breach claims

High Court clears way for thousands to pursue Capita data breach claims

Illinois Man Charged in Massive Snapchat Hacking Scheme Targeting Hundreds of Women

Irish consumers warned devices such as dodgy boxes may have been compromised in cyber attack

Jacobite Matrimony Database Leak Exposes Over 1,000 User Records

Kenya’s Hidden Cybercrime Battles and the Cost of Keeping Them Private

KillSec Ransomware Group Claims Cyberattack on Nigerian Fintech Getly

Loxam reports data breach

Matomo Analytics Alleged Data Breach Exposes 12.6GB SQL Database

Men charged in FanDuel scheme fueled by thousands of stolen identities

New Telegram Phishing Attack Abuses Authentication Workflows to Obtain Full Authorized User Sessions

New Telegram Phishing Scam Hijacks Login Flow to Steal Fully Authorized User Sessions

Old meets new: Kaspersky reviews the evolution of phishing threats in 2025

Payment tech provider for Texas, Florida governments working with FBI to resolve ransomware attack

Phishing Alert: Cyber criminals target politicians, military officials, journalists on Signal Messenger

Phishing and Social Engineering pose biggest cybersecurity risks for South African organisations

Possible EgyptAir Cyberattack: 104,000 Records and Sensitive Documents Allegedly For Sale

Ransomware Groups May Pivot Back to Encryption as Data Theft Tactics Falter

Record rise in digital squatting fuels phishing wave

Researchers Find 40,000+ Exposed OpenClaw Instances

Russia grants asylum to Spanish professor wanted for alleged pro-Moscow cyber operations

Rutherford Investment Company Hit by Anubis Ransomware

Signal Accounts Targeted by State-Backed Phishing Campaign - Here’s How to Stay Safe

Signature Phishing Up 200% As January Losses Pass $6 Million

Singapore: 4 telcos targeted in cyber attack by threat group, no sensitive data leaked

Singapore: Telecom Cyberattack Contained, No Data Breach

Singapore launches largest coordinated cyber defense operation after targeted attack on all major telcos

Singapore Launches Largest-Ever Cyber Defense Operation After UNC3886 Targets All Major Telcos

Singapore telcos hit by China‑linked hackers UNC3886; cyber agency says no disruption, no data breach

SmarterTools hacked via its own product

SmarterTools Hit by Ransomware via Vulnerability in Its Own Product

Social Media Platforms Earn Billions from Scam Ads

SolarWinds Web Help Desk Exploited for RCE in Multi-Stage Attacks on Exposed Servers

Substack CEO apologises for security breach affecting personal data

Substack Discloses Major Data Breach

TeamPCP Worm Exploits Cloud Infrastructure to Build Criminal Infrastructure

Thousands of exposed Moltbot control panels may be vulnerable to takeover

UNC3886 Cyber Espionage Group Linked to Singapore Telecom Infrastructure Cyberattacks: Singtel, StarHub, M1, Simba Telecom

US Agencies Told to Scrap End of Support Edge Devices

Use of XMRig Cryptominer by Threat Actors Expanding

Vortex Werewolf Attacking Organizations to Gain Tor-Enabled Remote Access Over the RDP, SMB, SFTP, and SSH Protocols

Vortex Werewolf Targets Organizations With Tor-Enabled RDP, SMB, SFTP, and SSH Backdoors

Zimbabwe: 11 Hackers Arrested Over US$61,000 EcoCash Phishing Scam