#data breach
84 stories taggeddata breach · page 4 of 6.

Estée Lauder Says Hackers Stole Staff Data Through an Oracle HR System Flaw
The cosmetics giant links the August 2025 break-in to the same Oracle E-Business Suite bug the Clop ransomware crew has been abusing all year.

An AI agent broke into Hugging Face and stole credentials from the inside
The company says attackers used an autonomous AI system to run thousands of automated actions across its data pipeline, stealing cloud keys before staff caught on.

A New Index Is Tracking Every Major Corporate Data Breach, and Deliberately Leaving the Dollar Totals Out
Richard Bird, a veteran cybersecurity executive, has built a public tool that logs every significant breach companies are required to report. Its unusual choice: no running loss tally.

Ernst & Young Client Data Stolen in Third-Party Platform Breach
Names, Social Security numbers, and card details belonging to Ernst & Young clients were taken after criminals broke into a third-party software platform the firm used to manage data.

An AI Bot Broke Into Hugging Face. Hugging Face Used AI to Figure Out What It Did.
The machine learning platform says an automated attack ran tens of thousands of actions inside its systems before being caught. Here is what got in, what was taken, and what ordinary users need to know.

Hugging Face Says an Autonomous AI Agent Broke Into Its Production Systems
The AI hosting giant disclosed unauthorised access to internal datasets and staff credentials, in what it says was an attack driven by an automated AI agent rather than a human operator.

Australian Health Clinics Waited 22 Days to Warn Patients After Hackers Stole Medical Records
Partnered Health, which operates more than 60 clinics across Australia, sat on a serious data theft for three weeks before telling anyone. Experts say that gap is long enough to cause real harm.

Hackers Hit 21 Australian Health Clinics, Putting Medicare Numbers and Test Results at Risk
Partnered Health confirmed a data breach on 23 June that reached patient files across Sydney, Melbourne and Canberra. Experts warn the stolen records could surface for sale on hidden online marketplaces.

Two Scattered Spider Hackers Jailed for Attacking Transport for London
Owen Flowers, 18, and Thalha Jubair, 20, each received five-and-a-half years after pleading guilty to a 2024 attack that stole data on up to 10 million customers and cost TfL £29 million to recover from.

Abbott Digs Into Two Cyber Incidents at Its Cancer Diagnostics Arm
The medical giant is investigating a break-in at old Exact Sciences systems and a separate extortion claim tied to a research portal.

Ernst & Young Tells Clients Their Tax Data Was Taken From a Support Ticket System
The Big Four firm says an outside party pulled documents from a third-party helpdesk platform between late March and mid-April. Affected clients get 24 months of identity monitoring through Experian.

Ransomware Hits Naval Contractor, Lidl Discloses Data Breach, and Iran Tracks US Military Phones
A week of scattered but serious disclosures: a defence shipbuilder confirms a ransomware attack, a major supermarket chain notifies customers of stolen data, and new evidence suggests Iranian operatives tracked phones belonging to US military personnel.

Cyberattack Hits Nichirei, Japan's Frozen Food Giant, Putting Personal Data at Risk
A July 13 attack knocked out warehouses and shipping lines across Japan. Nichirei says personal information may have been stolen, and a regulator report has already been filed.

Malware Disguised as Font Files Targets Windows Users
A global phishing campaign uses fake font files to deploy credential-stealing malware.

23andMe to pay $18 million after 43 states found 'flimsy' security let hackers steal 6.9 million profiles
A coalition of state attorneys general says the DNA testing firm lacked basic protections like multifactor authentication before the 2023 breach that exposed genetic data on nearly seven million customers.