Security News
Breach & incident coverage
Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.
293 stories published
CISA Warns of Actively Exploited SonicWall SMA1000 Zero-Days
Two critical remote access vulnerabilities (CVE-2026-15409, CVE-2026-15410) in SonicWall SMA1000 appliances are being actively exploited.
Jul 18, 2026Morris Communications Company Discloses Data Breach Affecting Sensitive Information
Questo, parent company of Morris Communications, announced a data breach affecting personal and financial data, with notifications sent July 17, 2026.
Jul 18, 2026Inter-Con Security Systems Suffers Ransomware Attack and Data Breach by ShinyHunters
Inter-Con Security Systems Inc., a multinational private security company, disclosed a June 2026 data breach resulting from a ransomware attack, with…
Jul 18, 2026HMC Fresh Foods Discloses Data Breach Exposing Sensitive Information
HMC Fresh Foods LLC, a grape processing company, has disclosed a data breach that occurred on June 5, 2026, potentially exposing personal information of…
Jul 18, 2026GodDamn Ransomware Leverages BYOVD to Disable EDR
A new ransomware campaign, "GodDamn Ransomware," is utilizing a Bring-Your-Own-Vulnerable-Driver (BYOVD) technique with a Microsoft-signed kernel driver to…
Jul 18, 2026Ingram Content Group Suffers Data Breach, ShinyHunters Claims SSNs Exposed
Book distribution giant Ingram Content Group has been hit by a data breach, with the ShinyHunters extortion group claiming to have exfiltrated highly…
Jul 18, 2026Ernst & Young Reports Data Breach via Third-Party Platform
Professional services firm Ernst & Young has disclosed a data breach originating from unauthorized access to a third-party platform, potentially exposing…
Jul 18, 2026Abbott Laboratories Investigates Two Separate Cyber Incidents
Healthcare giant Abbott Laboratories is investigating two distinct cyber incidents affecting its legacy Exact Sciences systems and its LabCentral customer…
Jul 18, 2026Critical RCE and SQLi Vulnerabilities Patched in WordPress Core
Two critical vulnerabilities, an unauthenticated SQL injection and an unauthenticated remote code execution flaw, have been patched in WordPress Core versions…
Jul 18, 2026GoldDigger Android Banking Trojan Poses Evolving Mobile Threat
The GoldDigger Android Banking Trojan is highlighted as an evolving threat, capable of credential compromise and data exposure through mobile ecosystems.
Jul 17, 2026Aura Identity Protection Discloses Data Breach via Voice Phishing
An employee account at Aura, an identity protection company, was compromised via voice phishing, exposing 900,000 marketing records.
Jul 17, 2026Actively Exploited Zero-Days in Microsoft SharePoint and AD FS Demand Immediate Patching
Microsoft has addressed two actively exploited zero-day vulnerabilities in SharePoint Server and Active Directory Federation Services.
Jul 17, 2026No news matches your search.