Editor's Message

Welcome to DBD. On March 8th 2026, DBD celebrated it's sixth anniversary and PRiSM celebrated it's third anniversary. Both projects have made a huge impact on my life and I'd like to thank each and everyone of you who have supported me, with special thanks to those individuals and communities who have helped me build up my knowledge on cybercrime and ransomware over the years. Thanks again for all your continued support. Stay safe. :)


“Data Breaches Digest and its PRiSM portal provide Dentons Global Security Team with valuable insights into the ransomware landscape, from the latest incidents to trends over time, as well as the ability to customize visual analytics. Timely reports and tracking by Data Breaches Digest help inform cyber intelligence for the world’s largest law firm and thus our cybersecurity posture across more than 80 countries worldwide.”
Dentons Senior Analyst, Washington D.C.



Monday, 20 April 2026

Data Breaches Digest - Week 17 2026

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 20th April and 26th April 2026.


20th April

Apple Account Change Alert Emails Exploited in New Phishing Campaign

ATHR Fuels Large-Scale AI Vishing and Phone Phishing Attacks

Australia: New South Wales (NSW)-based Strata Republic allegedly breached by Kairos ransomware group

Booking.com data breach customers fall prey to Reservation Hijacks

British Hacker Admits Stealing Millions in Virtual Currency From Targeted Companies

Brute-Force Authentication Attacks Targeting Network Devices On The Rise

Cisco Patches Critical Identity Services Engine (ISE) Vulnerabilities Allowing Remote Code Execution Attacks

Critical Gardyn Smart Gardens Vulnerabilities Let Attackers Control Devices Remotely

Crypto Exchange Grinex Blames Western Spies for $13m Theft

Dutch ecommerce site Bol.com investigates claims of a data breach

Dutch healthcare tech giant ChipSoft confirms patient records stolen

Everest Group Breaches Frost Bank, Citizens Bank, Tokoparts, Complete Aircraft Group, Umiles, Nutrabio

Hacker “Jeffrey Epstein” leaks 400K records from Netherlands' largest webshop

Hackers Exploit CVE-2024-3721 To Deploy Nexcorium Malware On TBK DVRs

Hackers Use FUD Crypt To Deliver Microsoft-Signed Malware With C2 Capabilities

JanaWare Ransomware Hits Turkish Users via Tailored Adwind RAT

MiningDropper Campaign Targets Android Users with RATs and Data-Stealing Apps

National Cyber Security Centre (NCSC) Outlines Coordinated Plan to Boost National Health Service (NHS) Cyber Resilience

Nigeria: Confusion as Corporate Affairs Commission (CAC) suspends portal operations over cyber attack

NIST Shifts to Risk-Based National Vulnerability Database (NVD) Model as Common Vulnerabilities and Exposures (CVE) Submissions Surge 263% Since 2020

Over 200 Japanese firms paid ransomware attackers, 60% fail to recover data

Public Notion Pages Expose Profile Photos and Email Addresses of Editors

Read notice on the website that FBI has taken down for stealing millions from internet users across the world

Researchers Detect ZionSiphon Malware Targeting Israeli Water, Desalination Operational Technology (OT) Systems

SEO Poisoning Attack Abuses Microsoft Binary To Deploy RMM Tools

Standard Bank data breach fallout deepens

Top 3 Cyber Insurance Incident Claims

Tycoon 2FA Loses Dominance as Phishing Attacks Surge Across Emerging Platforms

Vercel Breach Tied to Context AI Hack Exposes Limited Customer Credentials

Vercel CEO blames highly sophisticated AI for speeding up the massive internal data breach

Vercel Confirms Data Breach - Hackers Claim Access to Internal Systems

Vercel Confirms Data Breach Linked to AI Tool, Hackers Demand $2 Million Ransom

Vercel Data Breach Exposes Customer Credentials After AI Tool Compromise

Vercel Data Breach Linked to Context AI Hack Reportedly Exposes Information

Vercel hacked after fatal OAuth misstep: granting “Allow All” permissions

Vercel hacked, hacker using ShinyHunters name to sell data for $2 million

Vercel Reports Data Breach Amid Claims of Compromised Internal Infrastructure

Vercel Security Breach: Hacker Demands $2 Million as Crypto Projects Scramble to Secure Keys

Why proactive cybersecurity beats ransomware threats