Security News
Breach & incident coverage
Distinct breaches, incidents, and newly disclosed issues as they're reported — separate from the CVE-anchored advisories, which track confirmed exploited vulnerabilities specifically.
500 stories published
PaperCut Zero-Days Exploited in Active Data Theft Attacks
Attackers are abusing PaperCut vulnerabilities CVE-2026-81578 and CVE-2026-82078 to bypass authentication and dump embedded databases.
Sep 1, 2026Nutex Health Discloses Sensitive Data Breach Following Ransomware Group Extortion
Healthcare provider Nutex Health has confirmed patient, employee, and financial records were stolen following an attack claimed by The Gentlemen ransomware…
Sep 1, 2026FulcrumSec Extortion Group Claims 86 GB Manchester Airports Group Data Breach
Extortion group FulcrumSec claims theft of 86 GB of customer data from Manchester Airports Group, affecting an estimated 8.7 million passengers.
Sep 1, 2026Berlin City Administration Hit by 5.8 TB Rhysida Ransomware Extortion
Berlin confirms a massive data breach after Rhysida ransomware operators exfiltrated 5.79 TB of sensitive administrative and infrastructure data.
Sep 1, 2026Threat Actors Leverage AI Agents for Data Triage, Exfiltration, and Mining Frameworks
Gambit Security exposes how threat actors use Claude Code, OpenAI Codex, and DeepSeek to automate data triage, credential theft, and cryptojacking.
Aug 18, 2026OpenAI Urges CISOs to Deploy Security Agents Amid Growing AI Threat Risks
OpenAI president Greg Brockman pushes enterprise CISOs toward agentic AI tools, raising industry debate over vendor liability and operational risks.
Aug 18, 2026Clop Targets PTC Windchill and FlexPLM Flaw CVE-2026-12569 in Mass Extortion
Clop exploits PTC Windchill vulnerability CVE-2026-12569 to steal CAD blueprints and enterprise data from General Electric, Philips, and Shell.
Aug 18, 2026Third-Party Breach at CEVA Logistics Exposes Pokémon Center and Valve Data
A cyberattack on logistics provider CEVA Logistics exposed customer PII and disrupted fulfillment operations for Pokémon Center and Valve in Europe.
Aug 18, 2026Microsoft Delays Exchange Server SE CU1 as AI Bug-Hunting Backlog Piles Up
Microsoft has delayed Exchange Server Subscription Edition CU1, citing the heavy workload of triaging security flaws surfaced by AI bug-hunting tools.
Aug 17, 2026SafePal Data Breach Exposes Order Information for 39,798 Customers
SafePal disclosed a data breach caused by an e-commerce order-tracking plug-in flaw that exposed shipping and contact details for nearly 40,000 users.
Aug 17, 2026Anthropic Restores Claude Services Following Major Outage
Anthropic has resolved a major outage affecting Claude.ai, Claude Code, and Claude Cowork that caused widespread authentication and performance failures.
Aug 17, 2026SafePal Customer Data Breach Exposes 40,000 Order Records
A broken access control flaw in SafePal's order tracking plug-in allowed attackers to steal customer data, now being sold on cybercrime forums.
Aug 17, 2026No news matches your search.