>samit_hota

Security News

Breach & incident coverage

Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.

500 stories published

SN-2026-428CriticalMitigated

PaperCut Zero-Days Exploited in Active Data Theft Attacks

Attackers are abusing PaperCut vulnerabilities CVE-2026-81578 and CVE-2026-82078 to bypass authentication and dump embedded databases.

Sep 1, 2026
SN-2026-427HighOpen

Nutex Health Discloses Sensitive Data Breach Following Ransomware Group Extortion

Healthcare provider Nutex Health has confirmed patient, employee, and financial records were stolen following an attack claimed by The Gentlemen ransomware…

Sep 1, 2026
SN-2026-426HighOpen

FulcrumSec Extortion Group Claims 86 GB Manchester Airports Group Data Breach

Extortion group FulcrumSec claims theft of 86 GB of customer data from Manchester Airports Group, affecting an estimated 8.7 million passengers.

Sep 1, 2026
SN-2026-425HighOpen

Berlin City Administration Hit by 5.8 TB Rhysida Ransomware Extortion

Berlin confirms a massive data breach after Rhysida ransomware operators exfiltrated 5.79 TB of sensitive administrative and infrastructure data.

Sep 1, 2026
SN-2026-424HighOpen

Threat Actors Leverage AI Agents for Data Triage, Exfiltration, and Mining Frameworks

Gambit Security exposes how threat actors use Claude Code, OpenAI Codex, and DeepSeek to automate data triage, credential theft, and cryptojacking.

Aug 18, 2026
SN-2026-423InformationalOpen

OpenAI Urges CISOs to Deploy Security Agents Amid Growing AI Threat Risks

OpenAI president Greg Brockman pushes enterprise CISOs toward agentic AI tools, raising industry debate over vendor liability and operational risks.

Aug 18, 2026
SN-2026-422CriticalOpen

Clop Targets PTC Windchill and FlexPLM Flaw CVE-2026-12569 in Mass Extortion

Clop exploits PTC Windchill vulnerability CVE-2026-12569 to steal CAD blueprints and enterprise data from General Electric, Philips, and Shell.

Aug 18, 2026
SN-2026-421HighOpen

Third-Party Breach at CEVA Logistics Exposes Pokémon Center and Valve Data

A cyberattack on logistics provider CEVA Logistics exposed customer PII and disrupted fulfillment operations for Pokémon Center and Valve in Europe.

Aug 18, 2026
SN-2026-420MediumOpen

Microsoft Delays Exchange Server SE CU1 as AI Bug-Hunting Backlog Piles Up

Microsoft has delayed Exchange Server Subscription Edition CU1, citing the heavy workload of triaging security flaws surfaced by AI bug-hunting tools.

Aug 17, 2026
SN-2026-419HighResolved

SafePal Data Breach Exposes Order Information for 39,798 Customers

SafePal disclosed a data breach caused by an e-commerce order-tracking plug-in flaw that exposed shipping and contact details for nearly 40,000 users.

Aug 17, 2026
SN-2026-418MediumResolved

Anthropic Restores Claude Services Following Major Outage

Anthropic has resolved a major outage affecting Claude.ai, Claude Code, and Claude Cowork that caused widespread authentication and performance failures.

Aug 17, 2026
SN-2026-417HighMitigated

SafePal Customer Data Breach Exposes 40,000 Order Records

A broken access control flaw in SafePal's order tracking plug-in allowed attackers to steal customer data, now being sold on cybercrime forums.

Aug 17, 2026