Threats Tagged 'data breach'
View all threats tagged with 'data breach'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'data breach'
Click on any threat for detailed analysis and mitigation recommendations
A path traversal vulnerability affecting the Windows version of WinRAR allows the attackers to execute arbitrary code by crafting malicious archive files. This vulnerability was exploited in the wild and was discovered by Anton Cherepanov, Peter Košinár, and Peter Strýček from ESET. Join the discussion | CVE Database V5 | 08/24/2026, 00:00:00 UTC Added: 08/08/2025, 11:32:48 UTC |
0 The article provides a detailed analysis of the Shell data breach attributed to the Cl0p ransomware syndicate, highlighting the exfiltration of 89GB of sensitive engineering data through a pure extortion attack. It explains Cl0p's shift from traditional ransomware encryption to data theft and extortion, the risks posed to the global energy supply chain, and offers concrete defensive recommendations for critical infrastructure operators. Join the discussion | Community Curated | 08/17/2026, 06:04:46 UTC Added: 08/17/2026, 06:04:46 UTC |
The article details a significant data breach at SplitVPN exposing 865,336 user emails, hashed passwords, and nearly 58 million connection logs, contradicting the provider's no-logs claim. It provides a verified scope of the leaked data, analyzes the privacy implications, and offers actionable mitigation steps for affected users and organizations. Join the discussion | Community Curated | 08/02/2026, 13:07:44 UTC Added: 08/02/2026, 13:07:44 UTC |
The article details a significant data breach incident involving Abbott Laboratories, where the ShinyHunters extortion group claims to have stolen 30 million patient records via a vishing attack compromising Microsoft Entra SSO accounts. It provides insights into the attack vector, the scope of data allegedly stolen, Abbott's official response, and mitigation recommendations against vishing-based SSO attacks. Join the discussion | Community Curated | 07/19/2026, 17:35:29 UTC Added: 07/19/2026, 17:35:29 UTC |
This article provides a detailed analysis of the recent cyber attack involving the Kudankulam Nuclear Power Plant, focusing on a data breach via a third-party contractor's server. It outlines the scope of leaked files, the ransomware group responsible, and NPCIL's official response emphasizing that critical nuclear safety systems were not compromised. The report highlights supply chain risks and ongoing investigations by CERT-In. Join the discussion | Community Curated | 07/16/2026, 10:58:16 UTC Added: 07/16/2026, 10:58:16 UTC |
In early May 2026, Instructure confirmed a breach affecting its Canvas learning platform after detecting unauthorized activity on May 1. ShinyHunters exploited the Free-For-Teacher account program, compromising the Canvas platform directly and exposing names, email addresses, student IDs, and private messages. The exposure window ran from April 30 to May 7, 2026. ShinyHunters claims 3.6 TB of data covering approximately 275 million users across 9,000 schools globally, including institutions in the US, Australia, and EU. This represents ShinyHunters' second attack against Instructure in eight months. Instructure shut down the Free-For-Teacher program permanently, rotated API keys and privileged credentials, and engaged forensic investigators. The stolen data enables personalized phishing campaigns targeting students and faculty, with attackers potentially having write access sufficient to deface login pages at multiple institutions. Join the discussion | AlienVault OTX General | 05/09/2026, 11:15:29 UTC Added: 05/11/2026, 10:06:23 UTC |
A hacker known as "James" leaked the complete user database of BreachForums, a major Dark Web forum for stolen data trading and hacking discussions. The breach exposes detailed user metadata including usernames, hashed passwords, emails, IP addresses, and PGP keys, affecting over 320,000 users and potentially aiding law enforcement investigations. The incident highlights vulnerabilities in cybercriminal infrastructure and provides actionable intelligence on key threat actors and forum operators. Join the discussion | Community Curated | 01/11/2026, 14:24:06 UTC Added: 01/11/2026, 14:24:06 UTC |
In July-August 2025, India faced a surge of cross-border cyberattacks combining data breaches, DDoS, defacement, phishing, and malware. Pakistani, Bangladeshi, Russian, Indonesian, and likely Chinese actors targeted Indian judicial, defense, and transport systems. High-impact incidents included judicial server breaches, government website disruptions, retaliatory defacements, phishing schemes, and malware campaigns. Indian groups retaliated under 'Operation Vasudev Strike'. The attacks demonstrated the growing scale, sophistication, and multinational nature of hacktivist operations targeting India's digital infrastructure, blending hacktivism and cybercrime to challenge national security and public trust. Join the discussion | AlienVault OTX General | 09/15/2025, 18:48:16 UTC Added: 09/15/2025, 19:20:01 UTC |
This comprehensive analysis covers cyber threats and security issues affecting financial companies in South Korea and globally. It examines malware and phishing cases targeting the financial sector, including the top 10 malware strains and leaked Korean account statistics on Telegram. The report delves into dark web threats, focusing on credit card data breaches, financial institution database leaks, and ransomware attacks. Notable incidents include the M*** digital payment platform data breach in Indonesia, affecting 44 million users, and the Everest ransomware group's attack on J*** Bank in Jordan, compromising 11.7 GB of internal data. The analysis emphasizes the need for enhanced security measures, including real-time protection systems, account takeover detection, and strengthened internal defense mechanisms in the financial industry. Join the discussion | AlienVault OTX General | 07/16/2025, 16:10:20 UTC Added: 07/16/2025, 20:01:28 UTC |
This comprehensive analysis covers cyber threats targeting financial companies in Korea and globally. It examines malware and phishing cases, top 10 malware strains, and statistics on leaked Korean accounts. The report delves into major financial threats on the dark web, including credit card data breaches, database breaches, and ransomware attacks. A notable case involves the Arkana ransomware group's breach of a global online brokerage firm, In***, resulting in the theft of 50 GB of customer data, including KYC submissions and information of over 163,000 customers. The incident highlights vulnerabilities in trading platforms' identity verification and account protection systems, emphasizing the need for enhanced security measures beyond regulatory compliance. Join the discussion | AlienVault OTX General | 06/13/2025, 14:47:05 UTC Added: 06/13/2025, 20:34:24 UTC |
Showing 1 to 10 of 10 results