Data Breaches Intelligence
Confirmed and emerging data breach reports: compromised databases, exposed records, underground marketplace listings, and what the stolen data means for your organization.
Data Breaches — Archive & Latest
Manchester Airports Group Breach: 8.8M Records Leaked via Third-Party Database — Detection and Third-Party Risk Remediation Guide
FulcrumSec leaked data on 8.8 million Manchester Airports Group customers after compromising a third-party database. Here's how to detect mass exfiltration and harden vendor data exposure.
IDScan Breach: 153 Million Driver's Licenses Allegedly Stolen — Third-Party PII Exposure Response Guide
Identity verification vendor IDScan faces lawsuits after attackers allegedly exfiltrated 153M+ driver's license records. Here's how to assess exposure and hunt for bulk PII theft.
Hasbro Data Breach: Employee PII Exposed in Cyberattack — Detection and Response Guide for Defenders
Hasbro has disclosed a data breach exposing employee personal information following a disruptive cyberattack. Here's how defenders should detect and prevent similar HR data theft.
Hasbro Employee Data Breach: Defending HR and Payroll Systems from PII Exfiltration
Hasbro disclosed a breach exposing employee personal and financial data. Here's how to harden HR/payroll data stores and detect PII exfiltration before disclosure letters go out.
Nutex Health Data Breach: Unauthorized Access and Exfiltration — Detection and Response Guide for Healthcare Defenders
Nutex Health disclosed unauthorized access and data transfer in an SEC filing. Healthcare SOC teams must hunt for exfiltration now — here's how.
LACMA Data Breach Exposed Social Security and Medical Data: Incident Response Lessons and Detection Guidance for Defenders
The Los Angeles County Museum of Art disclosed a breach exposing employee and customer SSNs and medical data. Here's what defenders must do to detect, contain, and prevent the same failure.
SafePal Order-Tracking Authorization Flaw Exposes 39,798 Customers: Detection, Phishing Defense, and Response Guide
An authorization flaw in SafePal's order-tracking plug-in exposed PII of 39,798 hardware wallet customers. Here's how to detect the phishing wave that follows and hunt similar IDOR flaws in your own stack.
SafePal Data Breach: 40,000 Customers Exposed via Order-Tracking Plugin Vulnerability — Defensive Playbook
Attackers exploited a plugin's order-tracking function to access 40,000 SafePal customers' data. Learn how to detect, contain, and prevent plugin-driven breaches.
SafePal Data Breach: 39,798 Customers Exposed and Data for Sale — Defensive Playbook for Phishing and Wallet-Targeting Follow-On Attacks
SafePal confirms a breach of ~39,798 customer order records now offered for sale. Expect targeted phishing and seed-phrase theft — here's how to detect and defend.
RingCentral Data Breach: 1.6 Million Records Published — Detection, Response, and Follow-On Attack Defense Guide
Attackers published data allegedly stolen from RingCentral impacting ~1.6M people — names, addresses, emails, and phone numbers now fuel targeted phishing and extortion.
Liechtenstein Register Breach: Defending Against Beneficial Ownership Data Exfiltration
31,000 records exposed in Liechtenstein's register breach. Defend against PII exfiltration and secure government-grade data stores.
Brown Health Medical Group Data Breach: Defending Against Large-Scale PHI Exposure
312k individuals impacted by the Brown Health Medical Group breach. Defenders must audit PHI access controls and monitor for exfiltration immediately.
AmGen Data Breach: Hardening Biopharmaceutical Environments Against PHI Exfiltration
AmGen confirmed a cyberattack involving patient data. Learn immediate defensive strategies to detect and block PHI exfiltration in healthcare.
CareCloud Data Breach: Defending EHR Environments Against Data Exfiltration
345k+ patients affected by the CareCloud breach. Defend against EHR data theft with detection logic and hardening steps.
Critical Alert: Defending Against North Korean Cloud Exploitation, Supply Chain Attacks, and Data Breaches
Analysis of AWS-confirmed North Korean threats, OnTrac breach, and UK education data loss with actionable detection and remediation.
CareCloud AWS Breach: Cloud Data Exfiltration Detection & Healthcare Response
Over 350,000 patient records exposed in AWS compromise. Defenders: Here is how to detect cloud exfiltration and lock down your healthcare data.
Amgen Cloud Supply Chain Breach: Detection and Defense Strategies for Healthcare Organizations
Amgen data breach exposes patient health information through third-party cloud providers. Learn detection strategies for cloud supply chain compromises.
Healthcare Data Breach Alert: Detecting and Containing PHI Exfiltration
Recent breaches at Wildwood, Michigan Surgical, Penobscot Valley, and Whitfield Regional signal active threats to PHI. Immediate defensive actions required.
MCBS Data Breach: Defending RCM Infrastructure Against Large-Scale Exfiltration
1.26M individuals impacted in the MCBS breach. RCM providers must harden access controls and audit for data staging indicators immediately.
OnTrac Network Breach: Data Exfiltration Detection and Incident Response Playbook
OnTrac corporate network breach exposes customer PII. Defenders need detection rules and containment procedures immediately.
Tennessee Pathology Group Data Breach: Detecting and Containing PHI Exfiltration
170K patients impacted by ACLA breach. Defenders must prioritize egress monitoring and audit log reviews to secure pathology data.
HCCI Data Breach: Historic Social Engineering Attack Exposes PHI — Defense Guide
Heart Care Centers of Illinois confirms a historic social engineering incident exposed patient data. Defend against human-centric threats now.
ApolloMD $4.02M Settlement: Defending Against Business Associate Data Breaches
ApolloMD's $4.02M settlement highlights the critical risks for healthcare Business Associates. Defenders must audit access controls immediately.
Healthcare Services Group $3M Settlement: Defending Against PHI Data Breaches and Litigation
Healthcare Services Group's $3M settlement highlights the severe financial consequences of PHI breaches. Defenders must prioritize exfiltration detection.
Defending Healthcare Systems: Detecting and Responding to Data Extortion Threats
Healthcare organizations face rising data extortion threats. Learn defensive strategies to detect and prevent patient data exfiltration.
Third-Party Support System Breach: Analyzing the EY Incident and Defensive Strategies
EY breach highlights risks in third-party support tools. Learn detection and containment for supply-chain compromises.
Healthcare Data Breaches: Defending Against PHI Exfiltration at Ohio Living and Erlanger
Recent breaches at Ohio Living and Erlanger Health highlight critical gaps in data access governance. Defenders must immediately hunt for active exfiltration.
Healthcare Data Breach Response: Defending Against PHI Exfiltration
Recent breaches at Community Health Center of Buffalo and Greenbaum Rowe highlight critical gaps in PHI exfiltration defense.
Lucent Health Solutions Settlement: Mitigating Healthcare Data Breaches and PHI Exfiltration
Following Lucent Health's $1.95M settlement, defenders must harden TPA environments against unauthorized access and PHI exfiltration.
Marlboro-Chesterfield Pathology Breach: Mitigating Encryption-Based Attacks in Healthcare
2025 encryption incident settlement underscores the critical need for ransomware defense in pathology labs.
Healthcare Data Breach: 75,500 Records Exposed at The Center – IR & Hardening Guide
75,500 individuals impacted by a breach at The Center; mental health and HIV data exposed. Defenders must audit PHI access immediately.
Healthcare Data Breach Settlement: Hardening Defenses for PHI Protection and HIPAA Compliance
Recent settlement underscores critical need for robust PHI monitoring. Defenders must act to protect sensitive patient data.
Healthcare Sector Alert: ERMI, McLeod, and Centers for Dialysis Care Breaches — Defensive Strategies
Recent data breaches at ERMI, McLeod Physician Associates, and Centers for Dialysis Care highlight critical vulnerabilities in healthcare data protection.
Park Dental & Wabi Sabi Breaches: Defending Healthcare HR Data from Exfiltration
Employee data breaches at Park Dental Research and Wabi Sabi Behavioral Health highlight the critical need for HR-focused threat hunting and DLP.
Calibrated Healthcare Settlement: Mitigating PHI Breach Risks and Liability
The Calibrated Healthcare settlement underscores the severe costs of PHI exposure. Defenders must implement rigorous audit controls and DLP to mitigate liability.
Medtronic Breach: ShinyHunters Extortion Attack — Healthcare Data Detection and Response
3.8M patient records exposed in Medtronic breach. Learn to detect and block ShinyHunters extortion attacks.
Defending Against Unauthorized PHI Retention: Lessons from Recent Healthcare Breaches
Recent breaches at Delaware and Florida women’s health centers highlight the critical risks of unauthorized PHI retention. Defenders must prioritize data governance.
Medtronic Data Breach: ShinyHunters Impact Analysis and Healthcare Defense Strategies
Medtronic confirms customer data exposure by ShinyHunters. Defense strategies for PII protection and breach response.
Healthcare Data Breach Response: South Florida Injury Centers & Chickasaw Nation Analysis
Recent breaches at South Florida Injury Centers and Chickasaw Nation highlight critical PHI risks. Defend against active healthcare threats now.
Colorado Health Network & KMHA Breaches: Defending Against ePHI Exfiltration
Recent breaches at Colorado Health Network and Kentucky Mountain Health Alliance expose critical gaps in ePHI access controls.
Okanogan Behavioral Healthcare Settlement: Defending Against PHI Exfiltration and Email Compromise
Okanogan settlement highlights breach risks. Defend patient data against unauthorized access and exfiltration.
Bradford Health Services Settlement: Mitigating PHI Exfiltration Risks in Healthcare
Bradford Health settles lawsuit over a 2023 breach. Analyze the exfiltration mechanics and harden defenses against PHI theft.
Healthcare Data Breaches: Defending Against PHI Exfiltration at LifePoint, Southwest Behavioral & Nottingham Village
Recent breaches at LifePoint Health and partners underscore the critical need to detect credential theft and data exfiltration in healthcare environments.
Florida Retina Center Data Breach: Defending Against Unauthorized Access to PHI
Unauthorized access at Florida Retina Center compromises 13,600+ patient records. Critical defenses for healthcare data protection.
Supply Chain Compromise: Analyzing the TPWD Third-Party Vendor Breach
A third-party vendor compromise at TPWD exposed 3M records. Learn how to detect supply chain data risks and harden vendor integrations.
Blue Fish Pediatrics Breach: Mitigating Healthcare PHI Data Exfiltration
July 2025 breach impacting 41k+ Texas patients. Defend against PHI exfiltration and reinforce HIPAA controls in pediatric practice environments.
Texas TPWD Vendor Breach: Defense Against Third-Party Data Exfiltration
Over 3 million Texas driver's licenses exposed via a vendor compromise. Immediate steps for detection and third-party risk containment.
Defending Cardiac Data: iRhythm Holdings Cyberattack and PHI Protection
iRhythm Holdings reports a cyberattack impacting patient data. Defenders must prioritize PHI protection and database access controls.
EdTech Crisis: Countering ShinyHunters & FulcrumSec Data Exfiltration
EdTech platforms are prime targets for ShinyHunters and FulcrumSec. Defend against the surge in data breaches with these detection strategies.
FMC Services Data Breach Settlement: Mitigating Healthcare Cyber Risk and PHI Exposure
A $2.15M settlement following the FMC Services cyberattack highlights the critical cost of inadequate PHI controls. Defenders must act to secure EHR systems.
Showing 50 of 127 reports. Archive expands automatically as new intel is generated.
Every Data BreachesReport Includes SIGMA & KQL Detection Rules
Every intelligence briefing on this page includes at least one Sigma rule, a Microsoft Sentinel KQL hunt query, and an IOC check script — ready to drop into your SIEM. No paywall. No registration.