Data Breaches Intelligence
Confirmed and emerging data breach reports: compromised databases, exposed records, underground marketplace listings, and what the stolen data means for your organization.
Data Breaches — Archive & Latest
AI Agent Breach at Spanish Organization: Detecting and Defending Against Agentic AI Attacks on Personal Data
A threat actor used an autonomous AI agent to breach a Spanish organization and modify personal data — a milestone in agentic attacks. Here's how to detect and defend.
Japan Digital Agency Breach via VPN Vulnerability: 240,000 Records Exposed — Detection and Hardening Guide for Edge Devices
Attackers exploited a VPN product vulnerability at Japan's Digital Agency, exposing personal data of ~240,000 people. Here's how to hunt for and prevent VPN edge compromise.
Revolut Data Breach via Fake Government Data Request: Defending Against Emergency Data Request (EDR) Fraud
Revolut handed customer financial data and passport records to a threat actor impersonating a government agency. Here's how to detect and stop EDR impersonation attacks.
Hawley Probe of OpenAI Over Hugging Face Breach: Defending Against AI Supply Chain and Token Exposure Risk
Sen. Hawley's probe into OpenAI over the Hugging Face breach puts AI supply chain risk in the spotlight. Here's how to detect exposed HF tokens and malicious model artifacts.
ShinyHunters Claims Florida DMV 'DAVID' Database Breach: Detection and Response Guide for Government Data Custodians
ShinyHunters claims theft of 200,000+ Florida driver records from the DAVID DMV platform — agencies and enterprises holding PII must audit access, hunt for bulk-query abuse, and tighten identity controls now.
OneTouchPoint Data Breach Settlement: Ransomware Defense Lessons for Healthcare Third-Party Vendors
OneTouchPoint's multi-million dollar settlement over its 2022 ransomware breach shows the cost of weak vendor security — and what defenders must do now.
Mathspace Breach via Metabase: How Attackers Looted 1M+ Records Through an Exposed BI Platform — Detection and Hardening Guide
Mathspace confirmed attackers breached its Metabase reporting server and stole data on 1M+ students, staff, and parents. Here's how to detect and prevent BI-platform intrusions.
IDScan Breach and Class Action Fallout: Defending Driver's License PII Stores Against Bulk Exfiltration
Class action lawsuits against IDScan over breached driver's license data put identity-verification vendors — and their customers — on notice for how they store and protect PII.
Manchester Airports Group Breach: 8.8M Records Leaked via Third-Party Database — Detection and Third-Party Risk Remediation Guide
FulcrumSec leaked data on 8.8 million Manchester Airports Group customers after compromising a third-party database. Here's how to detect mass exfiltration and harden vendor data exposure.
IDScan Breach: 153 Million Driver's Licenses Allegedly Stolen — Third-Party PII Exposure Response Guide
Identity verification vendor IDScan faces lawsuits after attackers allegedly exfiltrated 153M+ driver's license records. Here's how to assess exposure and hunt for bulk PII theft.
Hasbro Data Breach: Employee PII Exposed in Cyberattack — Detection and Response Guide for Defenders
Hasbro has disclosed a data breach exposing employee personal information following a disruptive cyberattack. Here's how defenders should detect and prevent similar HR data theft.
Hasbro Employee Data Breach: Defending HR and Payroll Systems from PII Exfiltration
Hasbro disclosed a breach exposing employee personal and financial data. Here's how to harden HR/payroll data stores and detect PII exfiltration before disclosure letters go out.
Nutex Health Data Breach: Unauthorized Access and Exfiltration — Detection and Response Guide for Healthcare Defenders
Nutex Health disclosed unauthorized access and data transfer in an SEC filing. Healthcare SOC teams must hunt for exfiltration now — here's how.
LACMA Data Breach Exposed Social Security and Medical Data: Incident Response Lessons and Detection Guidance for Defenders
The Los Angeles County Museum of Art disclosed a breach exposing employee and customer SSNs and medical data. Here's what defenders must do to detect, contain, and prevent the same failure.
SafePal Order-Tracking Authorization Flaw Exposes 39,798 Customers: Detection, Phishing Defense, and Response Guide
An authorization flaw in SafePal's order-tracking plug-in exposed PII of 39,798 hardware wallet customers. Here's how to detect the phishing wave that follows and hunt similar IDOR flaws in your own stack.
SafePal Data Breach: 40,000 Customers Exposed via Order-Tracking Plugin Vulnerability — Defensive Playbook
Attackers exploited a plugin's order-tracking function to access 40,000 SafePal customers' data. Learn how to detect, contain, and prevent plugin-driven breaches.
SafePal Data Breach: 39,798 Customers Exposed and Data for Sale — Defensive Playbook for Phishing and Wallet-Targeting Follow-On Attacks
SafePal confirms a breach of ~39,798 customer order records now offered for sale. Expect targeted phishing and seed-phrase theft — here's how to detect and defend.
RingCentral Data Breach: 1.6 Million Records Published — Detection, Response, and Follow-On Attack Defense Guide
Attackers published data allegedly stolen from RingCentral impacting ~1.6M people — names, addresses, emails, and phone numbers now fuel targeted phishing and extortion.
Liechtenstein Register Breach: Defending Against Beneficial Ownership Data Exfiltration
31,000 records exposed in Liechtenstein's register breach. Defend against PII exfiltration and secure government-grade data stores.
Brown Health Medical Group Data Breach: Defending Against Large-Scale PHI Exposure
312k individuals impacted by the Brown Health Medical Group breach. Defenders must audit PHI access controls and monitor for exfiltration immediately.
AmGen Data Breach: Hardening Biopharmaceutical Environments Against PHI Exfiltration
AmGen confirmed a cyberattack involving patient data. Learn immediate defensive strategies to detect and block PHI exfiltration in healthcare.
CareCloud Data Breach: Defending EHR Environments Against Data Exfiltration
345k+ patients affected by the CareCloud breach. Defend against EHR data theft with detection logic and hardening steps.
Critical Alert: Defending Against North Korean Cloud Exploitation, Supply Chain Attacks, and Data Breaches
Analysis of AWS-confirmed North Korean threats, OnTrac breach, and UK education data loss with actionable detection and remediation.
CareCloud AWS Breach: Cloud Data Exfiltration Detection & Healthcare Response
Over 350,000 patient records exposed in AWS compromise. Defenders: Here is how to detect cloud exfiltration and lock down your healthcare data.
Amgen Cloud Supply Chain Breach: Detection and Defense Strategies for Healthcare Organizations
Amgen data breach exposes patient health information through third-party cloud providers. Learn detection strategies for cloud supply chain compromises.
Healthcare Data Breach Alert: Detecting and Containing PHI Exfiltration
Recent breaches at Wildwood, Michigan Surgical, Penobscot Valley, and Whitfield Regional signal active threats to PHI. Immediate defensive actions required.
MCBS Data Breach: Defending RCM Infrastructure Against Large-Scale Exfiltration
1.26M individuals impacted in the MCBS breach. RCM providers must harden access controls and audit for data staging indicators immediately.
OnTrac Network Breach: Data Exfiltration Detection and Incident Response Playbook
OnTrac corporate network breach exposes customer PII. Defenders need detection rules and containment procedures immediately.
Tennessee Pathology Group Data Breach: Detecting and Containing PHI Exfiltration
170K patients impacted by ACLA breach. Defenders must prioritize egress monitoring and audit log reviews to secure pathology data.
HCCI Data Breach: Historic Social Engineering Attack Exposes PHI — Defense Guide
Heart Care Centers of Illinois confirms a historic social engineering incident exposed patient data. Defend against human-centric threats now.
ApolloMD $4.02M Settlement: Defending Against Business Associate Data Breaches
ApolloMD's $4.02M settlement highlights the critical risks for healthcare Business Associates. Defenders must audit access controls immediately.
Healthcare Services Group $3M Settlement: Defending Against PHI Data Breaches and Litigation
Healthcare Services Group's $3M settlement highlights the severe financial consequences of PHI breaches. Defenders must prioritize exfiltration detection.
Defending Healthcare Systems: Detecting and Responding to Data Extortion Threats
Healthcare organizations face rising data extortion threats. Learn defensive strategies to detect and prevent patient data exfiltration.
Third-Party Support System Breach: Analyzing the EY Incident and Defensive Strategies
EY breach highlights risks in third-party support tools. Learn detection and containment for supply-chain compromises.
Healthcare Data Breaches: Defending Against PHI Exfiltration at Ohio Living and Erlanger
Recent breaches at Ohio Living and Erlanger Health highlight critical gaps in data access governance. Defenders must immediately hunt for active exfiltration.
Healthcare Data Breach Response: Defending Against PHI Exfiltration
Recent breaches at Community Health Center of Buffalo and Greenbaum Rowe highlight critical gaps in PHI exfiltration defense.
Lucent Health Solutions Settlement: Mitigating Healthcare Data Breaches and PHI Exfiltration
Following Lucent Health's $1.95M settlement, defenders must harden TPA environments against unauthorized access and PHI exfiltration.
Marlboro-Chesterfield Pathology Breach: Mitigating Encryption-Based Attacks in Healthcare
2025 encryption incident settlement underscores the critical need for ransomware defense in pathology labs.
Healthcare Data Breach: 75,500 Records Exposed at The Center – IR & Hardening Guide
75,500 individuals impacted by a breach at The Center; mental health and HIV data exposed. Defenders must audit PHI access immediately.
Healthcare Data Breach Settlement: Hardening Defenses for PHI Protection and HIPAA Compliance
Recent settlement underscores critical need for robust PHI monitoring. Defenders must act to protect sensitive patient data.
Healthcare Sector Alert: ERMI, McLeod, and Centers for Dialysis Care Breaches — Defensive Strategies
Recent data breaches at ERMI, McLeod Physician Associates, and Centers for Dialysis Care highlight critical vulnerabilities in healthcare data protection.
Park Dental & Wabi Sabi Breaches: Defending Healthcare HR Data from Exfiltration
Employee data breaches at Park Dental Research and Wabi Sabi Behavioral Health highlight the critical need for HR-focused threat hunting and DLP.
Calibrated Healthcare Settlement: Mitigating PHI Breach Risks and Liability
The Calibrated Healthcare settlement underscores the severe costs of PHI exposure. Defenders must implement rigorous audit controls and DLP to mitigate liability.
Medtronic Breach: ShinyHunters Extortion Attack — Healthcare Data Detection and Response
3.8M patient records exposed in Medtronic breach. Learn to detect and block ShinyHunters extortion attacks.
Defending Against Unauthorized PHI Retention: Lessons from Recent Healthcare Breaches
Recent breaches at Delaware and Florida women’s health centers highlight the critical risks of unauthorized PHI retention. Defenders must prioritize data governance.
Medtronic Data Breach: ShinyHunters Impact Analysis and Healthcare Defense Strategies
Medtronic confirms customer data exposure by ShinyHunters. Defense strategies for PII protection and breach response.
Healthcare Data Breach Response: South Florida Injury Centers & Chickasaw Nation Analysis
Recent breaches at South Florida Injury Centers and Chickasaw Nation highlight critical PHI risks. Defend against active healthcare threats now.
Colorado Health Network & KMHA Breaches: Defending Against ePHI Exfiltration
Recent breaches at Colorado Health Network and Kentucky Mountain Health Alliance expose critical gaps in ePHI access controls.
Okanogan Behavioral Healthcare Settlement: Defending Against PHI Exfiltration and Email Compromise
Okanogan settlement highlights breach risks. Defend patient data against unauthorized access and exfiltration.
Bradford Health Services Settlement: Mitigating PHI Exfiltration Risks in Healthcare
Bradford Health settles lawsuit over a 2023 breach. Analyze the exfiltration mechanics and harden defenses against PHI theft.
Showing 50 of 135 reports. Archive expands automatically as new intel is generated.
Every Data Breaches Report Includes SIGMA & KQL Detection Rules
Every intelligence briefing on this page includes at least one Sigma rule, a Microsoft Sentinel KQL hunt query, and an IOC check script — ready to drop into your SIEM. No paywall. No registration.