Editor's Message

Welcome to DBD. On March 8th 2026, DBD celebrated it's sixth anniversary and PRiSM celebrated it's third anniversary. Both projects have made a huge impact on my life and I'd like to thank each and everyone of you who have supported me, with special thanks to those individuals and communities who have helped me build up my knowledge on cybercrime and ransomware over the years. Thanks again for all your continued support. Stay safe. :)


“Data Breaches Digest and its PRiSM portal provide Dentons Global Security Team with valuable insights into the ransomware landscape, from the latest incidents to trends over time, as well as the ability to customize visual analytics. Timely reports and tracking by Data Breaches Digest help inform cyber intelligence for the world’s largest law firm and thus our cybersecurity posture across more than 80 countries worldwide.”
Dentons Senior Analyst, Washington D.C.



Monday, 17 August 2026

Data Breaches Digest - Week 34 2026

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 17th August and 23rd August 2026.


17th August

4 in 5 ransomware attacks due to compromised identities

Akira Ransomware Uses Safe Mode to Bypass EDR

Australian kidswear brand launches investigation following hacker claims

Binance-Backed SafePal Reveals Data Breach: 40,000 Users' Info Exposed

Bits of Gold data breach exposes personal details of up to 250,000 crypto customers

ChainDrop npm Worm Hijacks GitHub Actions OIDC to Poison 444 Packages With Valid SLSA Provenance

Cost of a Data Breach Reaches Record $5 Million on Average

Crypto wallet provider SafePal discloses data breach affecting nearly 40,000 users’ order information

Cyber Attack Targets French Tax System, 678,000 Users Affected

Data breach also affects About You: logistics operations relocate

Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies

Evooo1Bot Linux Botnet Hijacks Routers and Firewalls for DDoS, SOCKS5 Proxy and Credential Theft

ExfilSquad Hackers Leak 382GB of Microsoft Dynamics 365 (D365) Data From 13 Victims

French tax agency hit by cyberattack, hundreds of thousands potentially exposed

Guam: $1 Million stolen in Judiciary cyber attack wired to JP Morgan accounts, seized by FBI

Hackers Exploit Attempts Target Critical SAP Commerce Cloud RCE Flaw

Hackers Use Compromised Azure Credentials to Steal Millions of Enterprise Employee Records

Hello, who’s this? RingCentral discloses data breach in wake of ShinyHunters hack claims

Hong Kong Baptist University (HKBU) hit by ransomware attack, data of nearly 1,800 users compromised

Infostealers Harvest 1.7 Billion Credentials in Six Months

MessiahGPT Unrestricted AI Model Lets Hackers Generate Ransomware and Phishing Kits

Microsoft working on Defender patch for ShieldBreak zero-day

New MessiahGPT AI Model Fueling Automated Ransomware and Phishing Attacks

New MessiahGPT BlackHat AI Tool Helps Hackers Create Ransomware and Phishing Attacks

New Ransomware Strain ‘JanaWare’ Quietly Targets Turkish Users for Years

NHS admits patient data breach...via pager

Police bust cybercrime ring accused of stealing €30 million in four-day spree

SafePal Breach Hits Nearly 40,000 Customers, Data Is Already for Sale

SafePal Data Breach: 39,798 Customers’ Personal Information Exposed, Funds Secure

SafePal Data Breach Exposes 39,798 Crypto Customers, Wallet Keys Remain Secure

SafePal Data Breach Exposes Order Information of Nearly 40,000 Customers

SafePal Data Breach Exposes Personal Details of Nearly 40,000 Crypto Wallet Customers

SafePal Data Breach Exposes Personal Details of Nearly 40,000 Customers

SafePal Data Breach Hits Tens of Thousands of Customers

SafePal Exposes Personal Data of 39,798 Customers

Shell Investigates Data Breach After Cl0p Ransomware Claims Theft of 89GB of Corporate Data

Shell Investigates Data Breach After Cl0p Ransomware Group Claims 89 GB Data Theft

Signed ClickOnce Installer Uses Google Workspace Decoy to Deploy Credential Stealers and RAT

Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware

UK police data lapse exposed highly sensitive records, watchdog says

West Midlands Police officer 'snooped' on people in secret data breach

WiFi networks can be used to identify people without cameras, study claims

Windows 11 is fully removing a legacy tool that malware and ransomware have abused for years, meet WMIC

Windows 11’s strongest security defenses can be bypassed without a screwdriver

Windows Malware Corrupts PE Headers While Dropping Files to Evade On-Access Scanners