A data breach has been reported by a Scottish government agency, specifically from the prosecutor's office. This incident was triggered by a third-party service provider, which raises concerns that other agencies using the same vendor may also be impacted. While details about the extent of the breach are still emerging, the situation indicates a potentially wider vulnerability across multiple government entities. Data breaches like this can undermine public trust and disrupt operations, making it crucial for agencies to assess their security measures and ensure the protection of sensitive information. The incident emphasizes the risks associated with outsourcing services to third parties.
Articles tagged "Data Breach"
Found 690 articles
Infosecurity Magazine
Researchers have confirmed that the cyber extortion group ExfilSquad has accessed and stolen sensitive data from at least 13 different organizations. This data has been published by the group through torrents, making it publicly available. The nature of the stolen information remains unspecified, but the breach underscores significant security vulnerabilities within these organizations. As the leaked data could potentially be used for further attacks or identity theft, companies need to assess their security measures and respond swiftly to mitigate any potential fallout. This incident serves as a reminder of the ongoing risks posed by cybercriminals who exploit weaknesses in security protocols.
Shell is currently investigating a potential security incident after the Clop ransomware group claimed to have stolen 89GB of sensitive data from the company. The group is known for targeting large organizations and demanding ransom payments to prevent the public release of stolen information. Although Shell has not confirmed the specifics of the data taken, the incident raises concerns about the security of sensitive corporate information and the potential impacts on operations and reputation. As the investigation unfolds, it remains to be seen how the company will respond and whether any sensitive information has already been compromised. This incident serves as a reminder for all organizations to bolster their cybersecurity measures against ransomware attacks.
BleepingComputer
In July, the ShinyHunters hacking group breached RingCentral, exposing personal information from approximately 1.6 million accounts. The breach was confirmed by the data breach notification service Have I Been Pwned. Users whose accounts were compromised could be at risk for identity theft and other forms of fraud, as the stolen data may include sensitive information. This incident underscores the ongoing threat posed by cybercriminals and the importance of companies to enhance their security measures. Affected users should take immediate steps to secure their accounts and monitor for any suspicious activity.
A data breach involving RingCentral has potentially affected 1.6 million users. Hackers have publicly shared the stolen data, which includes personal information such as names, addresses, email addresses, and phone numbers. This incident raises serious concerns about user privacy and data security, as exposed personal details can lead to identity theft and phishing attacks. Companies like RingCentral must enhance their security measures to protect user data from such breaches. Users are advised to monitor their accounts for any unusual activity and consider changing their passwords to safeguard their information.
A former data analyst contractor for Brightly Software has been sentenced to two years in prison after being convicted of stealing sensitive data and attempting to extort his employer for $2.5 million. The analyst, who worked with the company from 2019 to 2020, accessed confidential information and threatened to release it unless his demands were met. This incident not only resulted in legal consequences for the individual but also raises concerns about insider threats in organizations, particularly those handling sensitive data. Companies must be vigilant in monitoring employee access and implementing strict data protection measures to prevent similar incidents in the future.
A recent data breach at ShipMonk has affected around 14,000 customers of Trezor, a cryptocurrency hardware wallet company. Hackers accessed sensitive shipping information, including names, addresses, email addresses, and phone numbers. This breach raises concerns about the potential for phishing attacks or further exploitation of the stolen data. Customers should be vigilant about suspicious communications, as the leaked information could be used to impersonate them. The incident highlights ongoing risks associated with third-party logistics providers and the importance of safeguarding customer data.
Recent reports have revealed significant vulnerabilities in WiFi-enabled AI devices, raising concerns about the security of personal and corporate networks. Attackers could exploit these weaknesses to gain unauthorized access, potentially leading to data breaches or other malicious activities. Affected devices include various smart home appliances, IoT devices, and AI-powered systems that rely on WiFi connectivity. As these technologies become more prevalent, users and companies need to be aware of the risks and take steps to secure their networks. It's essential for manufacturers to address these vulnerabilities promptly to protect users from potential exploitation.
BleepingComputer
Trezor, a manufacturer of hardware wallets, has reported a data breach that has impacted nearly 14,000 customers. The breach occurred after ShipMonk, the company's shipping and logistics provider, was hacked. As a result, sensitive customer information, including names and email addresses, may have been exposed. Trezor has stated that no funds or private keys were compromised, but the incident raises concerns about the security of third-party services used by companies. Customers are advised to be vigilant regarding potential phishing attempts that may arise from this breach.
A significant data breach has emerged following the LiteLLM supply chain attack, with a massive 153GB archive of stolen credentials being discovered. This archive, analyzed by Hudson Rock, contains sensitive information from thousands of corporate domains, including major companies like AWS, Samsung, Cisco, and Salesforce. The data includes 433,909 files and over 118,000 CI runner dumps linked to nearly 2,500 corporate domains. Hudson Rock's co-founder stated that they are using this information to inform a global ethical disclosure initiative. The exposure of such extensive credentials poses a serious risk to the affected companies and their customers, as attackers could exploit this data for unauthorized access or other malicious activities.
Infosecurity Magazine
The Information Commissioner's Office (ICO) has reprimanded the Association of Chief Police Officers Criminal Records Office (ACRO) following a data breach that occurred in 2023. The breach was attributed to failures in patch management and security monitoring, which allowed unauthorized access to sensitive information. As a result, individuals whose criminal records were managed by ACRO may have had their personal data exposed. This incident raises concerns about the handling of sensitive information by governmental organizations and the potential risks to privacy and security for those affected. The ICO's action serves as a reminder that even agencies tasked with law enforcement must prioritize robust cybersecurity measures to protect citizen data.
Help Net Security
For the past 17 months, an unknown individual has been accessing Salesforce and ServiceNow portals worldwide, according to researchers from Reco who are tracking this ongoing campaign dubbed 'City-Forum.' The campaign began using a domain that was registered back in 2002 but has since been linked to a generic server hosted in Germany. This unauthorized access has allowed the attacker to pull sensitive records from these widely used platforms, which could potentially compromise the data of numerous organizations. This situation raises serious concerns about the security measures in place for cloud-based services and highlights the need for companies to review their access controls and monitoring practices to protect against such long-term intrusions.
SecurityWeek
Researchers have discovered a new campaign dubbed 'City-Forum' that targets Salesforce and ServiceNow platforms. This attack takes advantage of unauthenticated guest access to silently gather and extract sensitive data from these services. The attackers use a specialized toolset to carry out their operations, which raises concerns about the security of user information on these widely used platforms. Since Salesforce and ServiceNow host critical business data for many organizations, this incident could have serious implications for data privacy and security. Companies using these platforms are urged to review their access controls and security measures to prevent unauthorized data access.
The DeadLock ransomware group is employing a unique approach by utilizing blockchain technology to enhance its operations. This decentralized infrastructure allows them to secure communication with victims and manage data leaks more effectively. By using blockchain-backed services, the group is making it more challenging for law enforcement and cybersecurity experts to disrupt their activities. This is significant because it represents a shift in how ransomware groups can operate, potentially increasing their resilience against takedown efforts. Victims of such attacks may find it harder to recover their data or prevent further exploitation due to these advanced tactics.
ExfilSquad, a new cybercrime group that surfaced in mid-2026, has targeted 13 organizations by exploiting cloud portals to steal sensitive data. Unlike traditional ransomware attacks, this group focuses on data theft and then threatens to release the stolen information to amplify the damage. They have started distributing the stolen data through torrents, making it more difficult for affected organizations to contain the breach. Researchers from Resecurity are actively monitoring ExfilSquad's activities as they announce new victims. This incident raises concerns about the security of cloud services and the need for organizations to strengthen their defenses against data theft.