Editor's Message

Welcome to DBD. On March 8th 2026, DBD celebrated it's sixth anniversary and PRiSM celebrated it's third anniversary. Both projects have made a huge impact on my life and I'd like to thank each and everyone of you who have supported me, with special thanks to those individuals and communities who have helped me build up my knowledge on cybercrime and ransomware over the years. Thanks again for all your continued support. Stay safe. :)


“Data Breaches Digest and its PRiSM portal provide Dentons Global Security Team with valuable insights into the ransomware landscape, from the latest incidents to trends over time, as well as the ability to customize visual analytics. Timely reports and tracking by Data Breaches Digest help inform cyber intelligence for the world’s largest law firm and thus our cybersecurity posture across more than 80 countries worldwide.”
Dentons Senior Analyst, Washington D.C.



Monday, 6 April 2026

Data Breaches Digest - Week 15 2026

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 6th April and 12th April 2026.


6th April

1.2 million Crunchyroll users confirmed impacted by data breach

64% of Dallas Workers Say AI Is Raising the Stakes for Workplace Phishing

75% of Cyberattacks Start with Phishing Emails, UAE Cyber Council Says

A Compromised Tool Opened the Door to a 91GB European Commission Data Leak

AI-Enabled Ransomware Demands AI-Enabled Defense - Not Just Better Recovery

Airdeals, Airtips, and Payair Data Breach and Extortion Attack

Arizona cardiology practice paying $3.85 Million to resolve lawsuit after data breach

Backups won’t save you from this version of ransomware

Bahrain: Hacker attacks jump as regional tensions explode

Banning Routers Won’t Secure the Internet

Breach of FBI Surveillance System Considered a “Major Incident,” Security Experts Weigh In

Chilean IT Firm FreeSAP Suffers Data Breach and Extortion Attack

CISA orders feds to patch exploited Fortinet EMS flaw by Friday

Convicted spyware maker Bryan Fleming avoids jail at sentencing

Cyber Attack Forces Hasbro to Take Systems Offline

Cyberattack Disrupts Massachusetts Emergency Dispatch, 911 Services Remain Active

Data Breach makes AI Startup loose business contract with Meta

Deminima Gynecology Clinic Suffers Patient Data Breach

Drift $280 Million crypto theft linked to 6-month in-person operation

Drift Hack Exposes $28.5 Million Democratic People's Republic of Korea (DPRK) Social Engineering Campaign Initiated Six Months Ago

EmergiaCC Colsubsidio Alleged Internal Data Breach

Evolve Your English Investigates Major 700K User Data Breach

Federal Communications Commission (FCC) Moves to Fine Voxbeam $4.5M in Robocall Case Linked to Foreign Traffic

First stalkerware maker prosecuted since 2014 receives no jail time

German authorities identify alleged leader of GandCrab and REvil ransomware gangs

German Police Identify Key Figures Behind REvil Ransomware Group

German police unmask two suspects linked to REvil ransomware gang

Germany Reveals the Name of Alleged REvil Ransomware, GandCrab Leader Daniil Maksimovich Shchukin (UNKN)

Germany Unmasks Alleged REvil Mastermind ‘UNKN’ in Cybercrime Crackdown

Germany's Federal Criminal Police Office (BKA) Identifies REvil Leaders Behind 130 German Ransomware Attacks

Germany’s Federal Criminal Police (BKA) unmasks two REvil Ransomware operators behind 130+ German attacks

Hackers threaten to leak data after cyberattack on German party Die Linke

Harvard faces ‘active and specific cybersecurity threat’

Healthcare data breach hits system storing patient records

Identity of REvil and GandCrab ransomware leader revealed

Iran-Linked Password-Spraying Campaign Targets 300+ Israeli Microsoft 365 Organizations

IT talent looks the other way as wireless security incidents pile up

Meta Pauses Work With Mercor After LiteLLM-Linked Data Breach

Meta Reportedly Halts Work With AI Partner Mercor After Data Breach Incident

Meta Suspends Work With $10 Billion AI Startup Mercor After Cyberattack

Microsoft links Medusa ransomware affiliate to zero-day attacks

Microsoft Teams Users Being Targeted in State-Linked Phishing Campaign

Missile Alert Phishing Exploits Iran-US-Israel Conflict for Microsoft Logins

New Fortinet Flaw Allows Unauthorized Access to Enterprise Systems

Nigeria Data Protection Commission (NDPC) investigates Remita, Sterling Bank for alleged data breach

Nigeria Data Protection Commission (NDPC) investigates Remita, Sterling Bank over alleged data breach

Nigeria Data Protection Commission (NDPC) probes Remita, Sterling Bank over alleged data breach

Nigeria Data Protection Commission (NDPC) Probes Sterling Bank, Remita For Alleged Data Breach

Nike sued after data breach allegedly put customer PII at risk of identity theft

North Korea Spent 6 Months Infiltrating Drift Protocol Only to Drain $285 Million in 12 Minutes

North Korea’s hijack of one of the web’s most used open source projects was likely weeks in the making

North Korea-Linked Hackers Use GitHub as C2 in Multi-Stage Attacks Targeting South Korea

North Korean Hackers Pose as Trading Firm to Steal $285 Million from Drift

Northern Ireland Education Authority says 'good progress' on restoring system after cyber attack

Northern Ireland pupils have to return to school over Easter break because of cyber attack

OMI360 Data Breach: Spanish Health Tech Firm Hacked

One of the largest corporate espionage and data breach scandals in digital history': New "BrowserGate" report claims LinkedIn secretly scans user browsers for installed extensions and collects device data

Phishing emails drive 75% of cyberattacks in the UAE

Qilin and Warlock ransomware: Using vulnerable drivers to disable EDR

Qilin and Warlock Ransomware Use Vulnerable Drivers to Disable 300+ EDR Tools

Qilin ransomware group targets German political party Die Linke, threatens data leak

Qilin Ransomware targets Die Linke of Germany

QR Code Scams: New phishing scams baiting breaches

Ransomware attacks spread, spotlight falls on world of ransom negotiators

Residential proxies make a mockery of IP-based defenses

Russia sentences veteran hacker to 15 years in prison

Scammers use fake traffic violation texts with QR codes for phishing

Simple.biz Web Agency Data Breach Exposes US Clients

Singapore, US warn of latest Fortinet bug being exploited in wild

Southern Illinois Dermatology Data Breach Exposes SSNs

Tax Season Phishing Campaigns Spread Malware and Drain Victim Funds

Telehealth Giant Him & Hers Announces Data Breach

The Olympics Is a Hacker’s Favorite Sporting Event

This devious VENOM phishing campaign targets business executives by name - so watch what you click on

Traffic Violation Scams Targeting US Residents Adopt QR Code Phishing Tactics

UAE Cyber Security Council warns that 3.4 billion daily phishing emails cause 75 percent of breaches

YMED Soon-Care Suffers Massive Healthcare Data Breach and Extortion