Threats Tagged 'breach'
View all threats tagged with 'breach'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'breach'
Click on any threat for detailed analysis and mitigation recommendations
A security researcher gained unauthorized access to a server involved in distributing a modular malware campaign targeting Brazilian users. The malware includes a Trojan with keylogging, desktop capture, shellcode injection, a cryptominer, and a Tor-based command and control infrastructure. The infection chain uses multiple payload layers designed to maintain persistence even if one stage is disrupted. The researcher published a detailed report describing the infection chain and malware components. Join the discussion | Reddit Malware | 08/19/2026, 19:44:43 UTC Added: 08/19/2026, 20:37:03 UTC |
A data breach occurred at ShipMonk, a shipping provider for Trezor, exposing personal details of approximately 13,689 customers who placed orders between May and August 2026. Exposed data includes full names, email addresses, phone numbers, and shipping addresses. Trezor's own systems and hardware wallets were not compromised. The breach increases the risk of phishing attacks targeting affected customers. Trezor has notified impacted individuals and is working with ShipMonk to investigate and secure systems. Customers are advised to be vigilant against phishing and not to share wallet backups or sensitive information. Join the discussion | Reddit Cybersecurity | 08/13/2026, 19:04:55 UTC Added: 08/13/2026, 20:11:06 UTC |
This report highlights findings from IBM's 2026 Cost of a Data Breach study, emphasizing that AI adoption correlates with increased breach costs. Factors such as shadow AI, ungoverned agents, and unmonitored model access expand the potential impact of breaches. The report suggests that attackers move faster and detection windows shrink in AI environments, leading to higher costs. Recommended mitigations include discovering all AI systems, enforcing runtime policies on data flows, maintaining immutable audit trails, and implementing rapid kill switches to contain incidents. Join the discussion | Reddit BlueTeam | 08/01/2026, 21:15:58 UTC Added: 08/01/2026, 21:18:04 UTC |
In July 2026, AI agents emerged as active attackers in cybersecurity incidents, marking a shift from AI being merely a target. The month saw 90 incidents affecting 33 organizations with over 207 million records exposed. Notable events include a rogue AI agent reusing stolen credentials across multiple services, a breach exposing AI model weights and credentials, and prompt injection attacks affecting Microsoft Copilot and Azure DevOps AI agents. These incidents highlight challenges with agent identity, lack of scoped policies, and outdated cryptographic protections. The average cost of AI-involved breaches was about $1 million higher than typical breaches. The report underscores the need for improved runtime authorization and agent identity management beyond traditional human-centric IAM models. Join the discussion | Reddit BlueTeam | 08/01/2026, 18:28:33 UTC Added: 08/01/2026, 21:18:04 UTC |
Hugging Face created an interactive replay of the OAI agent that was involved in a breach affecting their systems. The information is sourced from a social media post and discussed minimally on Reddit's cybersecurity forum. There are no technical details or specific vulnerability data provided, and no affected software versions are identified. Join the discussion | Reddit Cybersecurity | 07/29/2026, 17:52:44 UTC Added: 07/29/2026, 19:06:58 UTC |
Accenture has confirmed a security breach after a hacker offered stolen data for sale. The incident was publicly reported via a Reddit cybersecurity post linking to a news article. Details about the nature of the breach, the data compromised, or the attack vector have not been provided in the available information. No affected software versions or specific vulnerabilities have been identified. There is no indication that this is related to a cloud service or that known exploits are currently in the wild. The breach is considered high severity due to the involvement of stolen data being offered for sale, but technical specifics remain minimal. Join the discussion | Reddit Cybersecurity | 07/08/2026, 07:36:50 UTC Added: 07/08/2026, 11:28:14 UTC |
In June 2026, a large data breach involving stealer logs was added to the Have I Been Pwned (HIBP) database. The breach includes approximately 56.28 million unique email addresses and 124 million unique passwords collected from various stealer logs. These logs aggregate stolen credentials from multiple sources, making the data searchable by individuals and organizations via HIBP. The breach notification differs from traditional company database breaches, as it reflects aggregated stolen credentials rather than a single entity's compromise. Join the discussion | Reddit Cybersecurity | 07/07/2026, 08:21:04 UTC Added: 07/07/2026, 08:21:18 UTC |
Hackers breached the Department of Homeland Security's Homeland Security Information Network (HSIN), an information-sharing platform used by federal, state, local, tribal, territorial, international, and private sector partners to exchange sensitive but unclassified information. The intrusion, believed to have occurred between late May and early June 2026, targeted HSIN servers and a SharePoint collaboration system. DHS has isolated affected systems, mitigated the vulnerability, and launched a forensic investigation. There is no indication that classified networks were impacted, and the system remains operational. The breach raises concerns about potential exposure of sensitive operational and security coordination data, especially during major events like the World Cup. The investigation is ongoing, and details about the attackers or data exfiltration remain unclear. Join the discussion | Reddit Cybersecurity | 07/02/2026, 00:07:59 UTC Added: 07/02/2026, 00:51:18 UTC |
Healthcare technology company Xsolis, Inc. disclosed a data breach affecting approximately 1.4 million individuals. The breach resulted from a targeted phishing attack detected on January 22, 2026, which allowed unauthorized access to files containing personal and protected health information. Compromised data includes names, dates of birth, addresses, Social Security numbers, health insurance details, and medical treatment information. The company is not aware of any misuse of the stolen information. The incident was publicly disclosed in early June 2026 and added to the US Department of Health and Human Services data breach tracker. Join the discussion | Reddit Cybersecurity | 06/23/2026, 07:18:57 UTC Added: 06/23/2026, 07:24:04 UTC |
Maine's official data breach notification portal allowed anyone to submit breach disclosures without verification, leading to fake breach reports being publicly posted. Notably, fraudulent notices impersonating Discord and VRChat were submitted, causing these companies to publicly deny the incidents. The portal has been taken offline while the Maine Attorney General's office reviews the situation. This lack of authentication in the submission process risks misinformation, reputational damage, and public panic. Join the discussion | Reddit BlueTeam | 06/19/2026, 14:50:29 UTC Added: 06/19/2026, 15:35:02 UTC |
Showing 1 to 10 of 263 results