Breaches — Page 2

MSG's Secret Celebrity Database Tagged Nearly 40,000 People by Sexuality, Race, and 'Risk' Level
A data breach at Madison Square Garden exposed an internal tracking list that sorted celebrities, public figures, and ordinary visitors using labels including 'LGBTQIA,' 'DO NOT HOST,' and a personal 'risk' score.

Dutch Police Say Local Hackers Helped Pull Off the Odido Breach That Exposed 6.2 Million Customers
A phone call to customer service, a fake IT worker, and a phishing page: how criminals allegedly walked out with data on nearly every Odido subscriber.

12.2 Million People Hit by Data Breach at Japanese Telecom Giant KDDI
A previously unknown flaw in email software exposed the addresses and passwords of millions of customers across five internet providers. Mandatory password resets are now underway.

Calgary university loses student and staff files to hackers who wiped the originals
Mount Royal University says a June 17 break-in ended with stolen data on shared drives and a ransom demand of 30 bitcoin from a group calling itself CMD Organization.

Accenture Confirms Data Breach After Hacker Claims Source Code Was Stolen
The consulting giant says the incident is contained and caused no disruption, but a hacker has publicly claimed to have taken internal source code.

Accenture confirms break-in as hacker offers 35GB of stolen code for sale
The consulting giant says the incident is contained, but a forum seller known as 888 claims to be holding source code, Azure access keys and SSH keys taken in July 2026.

ShinyHunters Breach Hits Medtronic: 3.8 Million Patients' Medical Records Stolen
The extortion group ShinyHunters broke into the medical device maker's systems in April 2026, walking away with names, Social Security numbers, and sensitive health details belonging to nearly four million people.

Education Sector Faces Rising Threats from Third-Party Software Breaches
Schools and universities struggle with cybersecurity as breaches through third-party applications rise, highlighting the need for better vendor risk management.

Medtronic tells customers their personal data was stolen in ShinyHunters raid
The medical device giant confirms hackers rifled through its corporate systems for nearly a week in April, exposing names, Social Security numbers and health details.

Kubota North America Says Hackers Sat Inside Its Network for Over a Month
The Japanese equipment maker's US arm says intruders quietly read employee files — including Social Security numbers — between mid-March and late April.

Twenty Years of Getting It Wrong: The Breaches and Blunders That Defined Modern Cybersecurity
From MGM's identity disaster to MOVEit's patch pile-up, the same failure modes keep appearing in postmortems. That's the problem.

DHS Probes Intrusion Into HSIN, the Federal Info-Sharing Platform
The Homeland Security Information Network was compromised, according to the department. Attribution remains open. The exposure question is bigger than the intrusion itself.

NAIC Says ShinyHunters Walked Out With Public Data and Stale Logs After PeopleSoft Zero-Day Hit
The regulator-of-regulators confirms an Oracle PeopleSoft zero-day was the entry point, but disputes the extortion crew's claims about what was taken.

Klue Breach Compromises Salesforce Data via OAuth Token Theft
Unauthorized access exposes CRM data; threat actors exploit legacy credentials.

Klue Confirms OAuth Token Theft as 'Icarus' Crew Stakes Public Claim
The market intelligence vendor's disclosure adds another name to the lengthening list of Salesforce-adjacent SaaS breaches tied to stolen OAuth credentials.