Data leak

What the Fortibleed campaign means for organizations running FortiGate firewalls

What the Fortibleed campaign means for organizations running FortiGate firewalls 2026-06-23 at 17:46 By Zeljka Zorz A massive credential-harvesting campaign targeting FortiGate firewalls has exposed thousands of organizations to potential network compromise, and a trove of attacker tools, scripts, and credentials left inadvertently exposed on a server has given researchers an unusually detailed look at […]

What the Fortibleed campaign means for organizations running FortiGate firewalls Read More »

Decades-Old Squid Proxy Flaw ‘Squidbleed’ Can Expose User Data

Decades-Old Squid Proxy Flaw ‘Squidbleed’ Can Expose User Data 2026-06-22 at 16:22 By Eduard Kovacs Squidbleed, discovered with the aid of Claude Mythos Preview, has been described as a Heartbleed-style vulnerability.  The post Decades-Old Squid Proxy Flaw ‘Squidbleed’ Can Expose User Data appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Decades-Old Squid Proxy Flaw ‘Squidbleed’ Can Expose User Data Read More »

74,000 Fortinet firewall credentials exposed in FortiBleed data leak

74,000 Fortinet firewall credentials exposed in FortiBleed data leak 2026-06-18 at 15:10 By Zeljka Zorz A Russian-speaking cybercriminal group has stolen credentials contained in the configuration files of nearly 74,000 Fortinet firewalls and VPN gateways around the world. The data was accidentally exposed by the group on a server, along with other artifacts and tools,

74,000 Fortinet firewall credentials exposed in FortiBleed data leak Read More »

Cybercrime Group Claims Novo Nordisk Hack

Cybercrime Group Claims Novo Nordisk Hack 2026-06-16 at 15:32 By Ionut Arghire The hack-and-leak group FulcrumSec claims to have stolen 1.3TB of data from the pharmaceutical giant. The post Cybercrime Group Claims Novo Nordisk Hack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Cybercrime Group Claims Novo Nordisk Hack Read More »

Oracle PeopleSoft servers under attack, Oracle pushes out-of-band security alert

Oracle PeopleSoft servers under attack, Oracle pushes out-of-band security alert 2026-06-11 at 15:41 By Zeljka Zorz A zero-day vulnerability (CVE-2026-35273) in Oracle PeopleSoft PeopleTools is being exploited in the wild, Charles Carmakal, CTO at cybersecurity firm Mandiant, part of Google Cloud, warned today. The warning comes a day after Oracle published an out-of-band security alert

Oracle PeopleSoft servers under attack, Oracle pushes out-of-band security alert Read More »

Sensitive government personnel data posted online, Spanish police arrest suspect

Sensitive government personnel data posted online, Spanish police arrest suspect 2026-06-02 at 10:58 By Sinisa Markovic The Spanish National Police arrested a man in Granada for allegedly leaking personal data belonging to members of several sensitive state institutions. According to police, the suspect published the information on multiple online platforms, exposing personnel associated with organizations

Sensitive government personnel data posted online, Spanish police arrest suspect Read More »

185,000 Likely Impacted by 7-Eleven Data Breach

185,000 Likely Impacted by 7-Eleven Data Breach 2026-05-26 at 17:32 By Ionut Arghire The allegedly stolen information leaked by ShinyHunters contains email addresses, names, addresses, and dates of birth. The post 185,000 Likely Impacted by 7-Eleven Data Breach appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

185,000 Likely Impacted by 7-Eleven Data Breach Read More »

Lithuania Suspects Foreign Involvement in Data Leak of Over 600,000 National Register Entries

Lithuania Suspects Foreign Involvement in Data Leak of Over 600,000 National Register Entries 2026-05-26 at 13:38 By Associated Press Lithuanian authorities are on high alert after a massive data leak involving more than 600,000 entries from national data registers. The post Lithuania Suspects Foreign Involvement in Data Leak of Over 600,000 National Register Entries appeared

Lithuania Suspects Foreign Involvement in Data Leak of Over 600,000 National Register Entries Read More »

Threat Landscape March 2026: Ransomware Dominance, Access Brokers, Data Leaks, and Critical Exploitation Trends

Threat Landscape March 2026: Ransomware Dominance, Access Brokers, Data Leaks, and Critical Exploitation Trends 2026-04-20 at 14:37 By Mihir Bagwe Cyble Research & Intelligence Labs (CRIL) in its monthly threat landscape analysis observed a highly active threat environment throughout March 2026, shaped by large-scale ransomware campaigns, persistent data breach activity, growing initial access brokerage markets,

Threat Landscape March 2026: Ransomware Dominance, Access Brokers, Data Leaks, and Critical Exploitation Trends Read More »

Rockstar Games receives “pay or leak” warning after cyberattack

Rockstar Games receives “pay or leak” warning after cyberattack 2026-04-13 at 15:44 By Anamarija Pogorelec Rockstar Games, the developer behind titles such as Grand Theft Auto and Red Dead Redemption, has confirmed a cyberattack claimed by hacking group ShinyHunters, which says it accessed the company’s Snowflake environment and obtained data. The attackers exploited Anodot, a

Rockstar Games receives “pay or leak” warning after cyberattack Read More »

Health insurance lead sites sell personal data within seconds of form submission

Health insurance lead sites sell personal data within seconds of form submission 2026-04-10 at 08:57 By Mirko Zorz Lead generation websites that offer health insurance quotes collect sensitive personal data and sell it to multiple buyers within seconds of a user clicking submit. A study by researchers at UC Davis, Stanford University, and Maastricht University

Health insurance lead sites sell personal data within seconds of form submission Read More »

Google API Keys in Android Apps Expose Gemini Endpoints to Unauthorized Access

Google API Keys in Android Apps Expose Gemini Endpoints to Unauthorized Access 2026-04-09 at 15:44 By Ionut Arghire Dozens of such keys can be extracted from apps’ decompiled code to gain access to all Gemini endpoints. The post Google API Keys in Android Apps Expose Gemini Endpoints to Unauthorized Access appeared first on SecurityWeek. This

Google API Keys in Android Apps Expose Gemini Endpoints to Unauthorized Access Read More »

Claude Code source leak exploited to spread malware

Claude Code source leak exploited to spread malware 2026-04-03 at 14:30 By Sinisa Markovic A source code leak involving Anthropic’s Claude Code tool quickly escalated into a cybersecurity threat, as attackers seized on the exposed files to lure developers into downloading malware disguised as “unlocked” versions of the software. Leaked Claude Code source code used

Claude Code source leak exploited to spread malware Read More »

AI frenzy feeds credential chaos, secrets leak through code, tools, and infrastructure

AI frenzy feeds credential chaos, secrets leak through code, tools, and infrastructure 2026-03-27 at 20:33 By Anamarija Pogorelec Code keeps moving through pipelines, and credentials continue to surface alongside it. GitGuardian’s State of Secrets Sprawl 2026 puts the count at 28.65 million new hardcoded secrets in public GitHub commits in 2025, extending a multi-year rise

AI frenzy feeds credential chaos, secrets leak through code, tools, and infrastructure Read More »

Extortion Group Claims It Hacked AstraZeneca

Extortion Group Claims It Hacked AstraZeneca 2026-03-24 at 19:53 By Ionut Arghire The Lapsus$ hackers allegedly compromised internal code repositories, credentials, and employee data. The post Extortion Group Claims It Hacked AstraZeneca appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Extortion Group Claims It Hacked AstraZeneca Read More »

Substack Discloses Security Incident After Hacker Leaks Data

Substack Discloses Security Incident After Hacker Leaks Data 2026-02-05 at 17:20 By Eduard Kovacs The hacker claims to have stolen nearly 700,000 Substack user records, including email addresses and phone numbers. The post Substack Discloses Security Incident After Hacker Leaks Data appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Substack Discloses Security Incident After Hacker Leaks Data Read More »

Security Analysis of Moltbook Agent Network: Bot-to-Bot Prompt Injection and Data Leaks

Security Analysis of Moltbook Agent Network: Bot-to-Bot Prompt Injection and Data Leaks 2026-02-04 at 10:47 By Eduard Kovacs Wiz and Permiso have analyzed the AI agent social network and found serious security issues and threats. The post Security Analysis of Moltbook Agent Network: Bot-to-Bot Prompt Injection and Data Leaks appeared first on SecurityWeek. This article

Security Analysis of Moltbook Agent Network: Bot-to-Bot Prompt Injection and Data Leaks Read More »

Hackers Leak 5.1 Million Panera Bread Records

Hackers Leak 5.1 Million Panera Bread Records 2026-02-03 at 15:15 By Ionut Arghire ShinyHunters has claimed the theft of 14 million records from the US bakery-cafe chain’s systems. The post Hackers Leak 5.1 Million Panera Bread Records appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Hackers Leak 5.1 Million Panera Bread Records Read More »

Instagram Fixes Password Reset Vulnerability Amid User Data Leak

Instagram Fixes Password Reset Vulnerability Amid User Data Leak 2026-01-12 at 16:35 By Ionut Arghire The social media platform confirmed that the issue allowed third parties to send password reset emails to Instagram users. The post Instagram Fixes Password Reset Vulnerability Amid User Data Leak appeared first on SecurityWeek. This article is an excerpt from

Instagram Fixes Password Reset Vulnerability Amid User Data Leak Read More »

There was no data breach, Instagram says

There was no data breach, Instagram says 2026-01-12 at 13:20 By Zeljka Zorz News of a possible Instagram data breach spread over the weekend after Malwarebytes reported that cybercriminals had stolen sensitive information from 17.5 million Instagram accounts, potentially leading to a surge in password reset requests. Users have been complaining last week about receiving

There was no data breach, Instagram says Read More »

Scroll to Top