A recent data breach at ShipMonk has affected around 14,000 customers of Trezor, a cryptocurrency hardware wallet company. Hackers accessed sensitive shipping information, including names, addresses, email addresses, and phone numbers. This breach raises concerns about the potential for phishing attacks or further exploitation of the stolen data. Customers should be vigilant about suspicious communications, as the leaked information could be used to impersonate them. The incident highlights ongoing risks associated with third-party logistics providers and the importance of safeguarding customer data.
Articles tagged "Data Breach"
Found 729 articles
Recent reports have revealed significant vulnerabilities in WiFi-enabled AI devices, raising concerns about the security of personal and corporate networks. Attackers could exploit these weaknesses to gain unauthorized access, potentially leading to data breaches or other malicious activities. Affected devices include various smart home appliances, IoT devices, and AI-powered systems that rely on WiFi connectivity. As these technologies become more prevalent, users and companies need to be aware of the risks and take steps to secure their networks. It's essential for manufacturers to address these vulnerabilities promptly to protect users from potential exploitation.
BleepingComputer
Trezor, a manufacturer of hardware wallets, has reported a data breach that has impacted nearly 14,000 customers. The breach occurred after ShipMonk, the company's shipping and logistics provider, was hacked. As a result, sensitive customer information, including names and email addresses, may have been exposed. Trezor has stated that no funds or private keys were compromised, but the incident raises concerns about the security of third-party services used by companies. Customers are advised to be vigilant regarding potential phishing attempts that may arise from this breach.
A significant data breach has emerged following the LiteLLM supply chain attack, with a massive 153GB archive of stolen credentials being discovered. This archive, analyzed by Hudson Rock, contains sensitive information from thousands of corporate domains, including major companies like AWS, Samsung, Cisco, and Salesforce. The data includes 433,909 files and over 118,000 CI runner dumps linked to nearly 2,500 corporate domains. Hudson Rock's co-founder stated that they are using this information to inform a global ethical disclosure initiative. The exposure of such extensive credentials poses a serious risk to the affected companies and their customers, as attackers could exploit this data for unauthorized access or other malicious activities.
Infosecurity Magazine
The Information Commissioner's Office (ICO) has reprimanded the Association of Chief Police Officers Criminal Records Office (ACRO) following a data breach that occurred in 2023. The breach was attributed to failures in patch management and security monitoring, which allowed unauthorized access to sensitive information. As a result, individuals whose criminal records were managed by ACRO may have had their personal data exposed. This incident raises concerns about the handling of sensitive information by governmental organizations and the potential risks to privacy and security for those affected. The ICO's action serves as a reminder that even agencies tasked with law enforcement must prioritize robust cybersecurity measures to protect citizen data.
Help Net Security
For the past 17 months, an unknown individual has been accessing Salesforce and ServiceNow portals worldwide, according to researchers from Reco who are tracking this ongoing campaign dubbed 'City-Forum.' The campaign began using a domain that was registered back in 2002 but has since been linked to a generic server hosted in Germany. This unauthorized access has allowed the attacker to pull sensitive records from these widely used platforms, which could potentially compromise the data of numerous organizations. This situation raises serious concerns about the security measures in place for cloud-based services and highlights the need for companies to review their access controls and monitoring practices to protect against such long-term intrusions.
SecurityWeek
Researchers have discovered a new campaign dubbed 'City-Forum' that targets Salesforce and ServiceNow platforms. This attack takes advantage of unauthenticated guest access to silently gather and extract sensitive data from these services. The attackers use a specialized toolset to carry out their operations, which raises concerns about the security of user information on these widely used platforms. Since Salesforce and ServiceNow host critical business data for many organizations, this incident could have serious implications for data privacy and security. Companies using these platforms are urged to review their access controls and security measures to prevent unauthorized data access.
The DeadLock ransomware group is employing a unique approach by utilizing blockchain technology to enhance its operations. This decentralized infrastructure allows them to secure communication with victims and manage data leaks more effectively. By using blockchain-backed services, the group is making it more challenging for law enforcement and cybersecurity experts to disrupt their activities. This is significant because it represents a shift in how ransomware groups can operate, potentially increasing their resilience against takedown efforts. Victims of such attacks may find it harder to recover their data or prevent further exploitation due to these advanced tactics.
ExfilSquad, a new cybercrime group that surfaced in mid-2026, has targeted 13 organizations by exploiting cloud portals to steal sensitive data. Unlike traditional ransomware attacks, this group focuses on data theft and then threatens to release the stolen information to amplify the damage. They have started distributing the stolen data through torrents, making it more difficult for affected organizations to contain the breach. Researchers from Resecurity are actively monitoring ExfilSquad's activities as they announce new victims. This incident raises concerns about the security of cloud services and the need for organizations to strengthen their defenses against data theft.
Wesco, a major player in the global supply chain and distribution sector, has confirmed that it is looking into a cybersecurity incident following claims from a hacking group known as ExfilSquad. This group alleges that they have stolen sensitive data from the company. While specific details about the nature and extent of the data breach are still emerging, the incident raises concerns about the security measures in place at Wesco and the potential impact on its operations and customers. As investigations continue, the incident highlights the ongoing risks faced by large organizations in protecting their data from cybercriminals. Stakeholders and clients will be watching closely to see how Wesco responds to this situation and what measures will be implemented to safeguard against future breaches.
Infosecurity Magazine
Ceva Logistics, a major player in the supply chain industry, has reported a significant data breach that affects its European clients. The breach appears to be the result of a supply chain attack, which typically targets third-party vendors to gain access to larger networks. Although specific details about the data compromised have not been disclosed, the scale of the breach suggests a wide-ranging impact, potentially affecting numerous businesses relying on Ceva's logistics services. This incident raises concerns about the security of supply chain operations, as attackers increasingly exploit vulnerabilities in third-party providers. Companies associated with Ceva need to assess their data security measures and respond appropriately to protect sensitive information.
A vendor using the alias 'Gordon Freeman' has surfaced on the dark web, offering a massive database of Israeli citizens' personal information from 2005. This 7.5 GB dataset reportedly includes sensitive details such as national ID numbers, addresses, phone numbers, and family connections for nearly all residents of Israel. The sale of this data raises significant privacy concerns, as it could be used for identity theft, fraud, or other malicious activities. The exposure of such a comprehensive registry poses risks not only to individuals but also to national security, as the information could be exploited by various threat actors. Users and officials alike need to be aware of the potential ramifications of this data leak.
Framework, a company that specializes in repairable laptops, recently faced a data breach due to a zero-day vulnerability in Metabase, a business intelligence tool. Attackers exploited this vulnerability and gained unauthorized access to sensitive customer information, including names, email addresses, phone numbers, physical addresses, and login IP addresses. However, the breach did not compromise payment information or order records. Framework informed affected customers about the incident, emphasizing the importance of safeguarding personal data. This incident raises concerns about the security of business intelligence tools and the potential risks to customer data across various companies that utilize such services.
LexisNexis has taken its Diligence, Metabase API, and Newsdesk services offline due to suspicious activity detected on servers managed by a third-party vendor. The company has not disclosed specific details about the nature of the unusual activity or the vendor involved. This action aims to protect user data and maintain the integrity of their services. Users of these platforms might experience interruptions as LexisNexis investigates the situation. It's crucial for companies that rely on third-party vendors to monitor their security practices closely, as this incident illustrates potential vulnerabilities in external partnerships.
BleepingComputer
Valve has informed its Steam hardware customers in Europe about a data breach that occurred due to a cyberattack on its shipping partner, CEVA Logistics. Hackers accessed sensitive customer information during the breach, although specific details about the type of data stolen have not been disclosed. This incident raises concerns about the security measures in place at third-party logistics providers, which play a crucial role in the supply chain for tech companies. Affected customers are advised to monitor their accounts for any suspicious activity. This breach also highlights the risks associated with outsourcing logistics and the potential vulnerabilities that can arise from relying on external partners for shipping and handling customer data.