Top Cyber Incidents
Cyber incidents ranked by their real impact on company scores. The ranking combines the number of companies affected, severity, and impact, revealing which incidents truly moved the needle across the portfolio.
Showing 19966 of 19966 incidents
**Cybercrime in 2025: A Global Threat Surpassing National Economies** Cybercrime continues to escalate into one of the world’s most lucrative illicit industries, with damages projected to reach **$10.5 trillion USD globally in 2025** a figure that, if measured as a country, would rank as the **thir
**Ransomware Attacks Surge 30% in Q4 2025, Targeting Critical Sectors and Supply Chains** Ransomware activity has spiked sharply, with attacks increasing by **30% in the last four months of 2025** compared to the first nine months of the year. Cybersecurity firm **Cyble** recorded **2,018 claimed a
**Ransomware in 2025–2026: Evolving Threats, Rising Costs, and High-Profile Attacks** Ransomware remains a critical threat to governments, businesses, and critical infrastructure, disrupting healthcare, fuel distribution, retail, and identity security. Financial and operational impacts have intensi
**APT28 Exploits DNS Hijacking to Breach UK Government Email Accounts** Russia’s state-backed hacking group **APT28 (Fancy Bear)**, linked to the GRU’s **Military Unit 26165**, has compromised email accounts belonging to **UK government and Foreign Office officials** using **DNS hijacking**, markin
**AI, Zero-Days, and Low-Tech Defenses: A Week of Escalating Cyber Threats** This week’s cybersecurity landscape highlighted the dual-edged role of AI both as a tool for attackers and a defensive asset alongside critical vulnerabilities, high-profile breaches, and a reminder that sometimes the simp
**The "Mother of All Breaches": 26 Billion Records Exposed in Unprecedented Data Leak** Security researchers have uncovered what may be the largest compilation of stolen credentials in history a 12-terabyte database dubbed the **"Mother of All Breaches" (MOAB)**, containing **26 billion records** f
**ShinyHunters Claims Major Data Breach of Udemy, Threatens to Leak 1.4M Records** On April 24, 2026, the cybercriminal group **ShinyHunters** announced a data breach targeting **Udemy**, one of the world’s largest online learning platforms, alleging the theft of over **1.4 million records** contai
Check Point: CISA Warns of Check Point Authentication Vulnerability Exploited in Attacks
Critical (100)**Critical Check Point Authentication Flaw Actively Exploited in the Wild** The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning about **CVE-2026-16232**, a critical authentication vulnerability in **Check Point SmartConsole** that is being actively exploite
**Cyberattack Disrupts Major European Airports, Causing Widespread Flight Chaos** Between **4 and 6 April**, a sophisticated cyberattack targeted a shared IT platform used by airlines and airports across Europe, triggering cascading disruptions at key hubs. The incident paralyzed critical systems i
**China-Linked JDY Botnet Expands, Targeting U.S. Critical Infrastructure** A resurgent botnet tied to China-backed threat actors has grown into one of the most sophisticated reconnaissance tools in operation. Dubbed **JDY**, the network now controls over **1,500 compromised small office/home offic
Broadcom
Critical (100)Broadcom, a global technology leader valued at hundreds of billions, was among the high-profile victims of **Cl0p’s ransomware attack** exploiting a **zero-day vulnerability in Oracle’s E-Business Suite (CVE-2025-61882 and CVE-2025-21884)**. The cybercriminal group **exfiltrated sensitive corporate
**Loblaw Faces Alleged Massive Data Breach as Threat Actor Demands Response** A threat actor operating under the handle *"igotafeeling"* on the *DarkWeb Informer* forum has claimed to have breached **Loblaw**, Canada’s largest food and pharmacy retailer, which owns brands like *President’s Choice,
**Critical Trivy Scanner Vulnerability Added to CISA’s Exploited Flaws Catalog** The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added **CVE-2026-33634**, a severe vulnerability in **Aquasecurity’s Trivy scanner**, to its **Known Exploited Vulnerabilities (KEV) catalog**. The f
**Cyberattacks Surge in the Automotive Industry: Key Incidents from 2024–2025** The automotive sector has become a prime target for cybercriminals, with attacks ranging from ransomware extortion to large-scale data breaches exposing sensitive customer and operational data. Between 2024 and 2025, ma
**Dirty Frag: New Linux Kernel LPE Vulnerability Grants Root Access Across Major Distros** A newly disclosed Linux kernel vulnerability, dubbed *Dirty Frag*, enables local privilege escalation (LPE) by chaining two page-cache write flaws *xfrm-ESP Page-Cache Write* and *RxRPC Page-Cache Write* to a
**Critical LiteLLM RCE Vulnerability Actively Exploited in the Wild** Threat actors are actively exploiting a critical unauthenticated remote code execution (RCE) vulnerability in **LiteLLM**, a widely used open-source AI proxy gateway, by chaining two CVEs to bypass authentication and execute arbi
**FortiBleed: Massive Fortinet VPN Credential Leak Exposes 74,000 Firewalls Worldwide** A newly uncovered data leak, dubbed *FortiBleed*, has exposed credentials for **73,932 Fortinet and FortiGate VPN firewalls** across organizations globally. Security researcher **Bob Diachenko** discovered the b
**New Modular Malware Framework "Avalon" Unveiled in Sophisticated Phishing Attack** Cybersecurity researchers have identified a previously unknown modular malware framework, **Avalon**, distributed via a multi-stage phishing campaign designed to evade traditional security controls. The framework i
**New Linux Kernel Vulnerability (CVE-2026-64531) Enables Local Privilege Escalation via OVSwrap Flaw** A critical Linux kernel vulnerability, tracked as **CVE-2026-64531** and dubbed **OVSwrap**, has been disclosed, allowing unprivileged local users to escalate privileges to **root** on a wide ran
**Cybercriminals Target Major U.S. Financial Firms in Vishing Extortion Campaign** Google’s security researchers revealed on Thursday that unidentified hacking groups are actively breaching large U.S. financial and investment firms to steal sensitive data and extort victims by threatening to leak i
**Ransomware Data Breaches Surge: A Systemic Crisis Targeting U.S. Governments and Enterprises (2024–2026)** Ransomware attacks have evolved into a dual threat: not only do they encrypt critical systems, but they also exfiltrate sensitive data, turning operational disruptions into full-scale data b
**Clop Ransomware Group Exploits MOVEit Vulnerability, Targets Major Law Firms and Corporations** A ransomware attack linked to the Clop cybercrime group has compromised several high-profile organizations, including law firms **Kirkland & Ellis, Proskauer Rose, and K&L Gates**, as well as entities
**Cyber Retaliation Likely as U.S.-Israeli Strikes Trigger Iranian Digital Disruptions** On March 1, 2026, a series of cyber operations unfolded alongside joint U.S.-Israeli airstrikes targeting Iran, signaling potential escalation in digital warfare. Cybersecurity experts reported multiple breache
**Ransomware in 2025: A Systemic Threat Disrupting Global Supply Chains and Critical Services** In 2025, ransomware evolved from isolated IT disruptions into a systemic risk, threatening national supply chains, essential services, and entire industries. Cybersecurity Ventures projects the global co
**Volkswagen Faces Data Extortion Threat from 8Base Ransomware Group** Volkswagen Group is responding to claims by the ransomware group **8Base**, which alleges it stole and leaked sensitive data from the automaker. While Volkswagen maintains that its **core IT infrastructure remains unaffected**,
**Former SSA Chief Data Officer Warns of Massive Social Security Data Breach** A whistleblower has raised alarms over a potential national security disaster involving the exposure of sensitive Social Security data for every American with or who ever had a Social Security number (SSN). Chuck Borges,
**TeamPCP Exploits Cloud Misconfigurations in Large-Scale Cybercrime Operation** A threat actor known as **TeamPCP** (also operating under aliases like **PCPcat** and **ShellForce**) is conducting automated, worm-like attacks on misconfigured and exposed cloud management services, compromising at l
**FBI Network Breach Targets Surveillance Systems** Hackers have reportedly compromised an FBI network used to manage wiretaps and foreign intelligence surveillance warrants, according to a CNN report citing an anonymous source. The breach was confirmed by an FBI spokesperson, who stated that the b
**Ransomware Surge in Early 2026: Key Trends and Evolving Threat Tactics** A recent analysis by Bitdefender reveals a sharp rise in ransomware attacks targeting U.S. organizations in the first two months of 2026, with **53 active groups** claiming victims seven of which have dominated the threat la
**Cyberattack Disrupts Canvas Learning Portal at Major Universities Worldwide** Hackers breached Instructure Inc.’s Canvas platform this month, forcing the company to temporarily suspend services for thousands of colleges and universities globally. The attack, detected on **May 1**, exploited a vul
**Cybercrime Surges in 2025–2026: The Shift from Hacking to "Logging In"** In 2025, the U.S. reported a record $20.9 billion in cybercrime losses up 26% from the previous year marking the first time annual damages exceeded $20 billion. However, the real shift lies not in the scale of theft but in t
Broadcom, OpenWrt, Check Point, Cisco, OpenAI, Gitea and Brazilian Government: CVE Vulnerability Alerts
Critical (100)**Critical Cybersecurity Vulnerabilities and Exploits Unfold Across Multiple Platforms** A surge of high-severity vulnerabilities and active exploitation campaigns has targeted enterprise systems, AI infrastructure, and consumer devices in recent weeks. **Critical Flaws Under Active Attack** CISA
**Russian-Speaking Hacker Linked to Global Cybercrime and Espionage Operation** A Russian-speaking threat actor has been identified as the orchestrator of a large-scale cyber operation targeting organizations worldwide, acting as an **initial access broker (IAB)** for ransomware groups. The campaig
**EU and UK Impose Sanctions on Russia Over Cyberattacks Targeting Europe** The European Union and the United Kingdom announced coordinated sanctions on Monday against Russia, holding Moscow’s FSB intelligence agency responsible for a series of cyberattacks across Europe. The measures target nine i
Brussels Airport
Critical (100)Brussels Airport experienced a cyberattack on Friday evening that crippled its passenger and baggage check-in systems, forcing manual processing and causing significant operational disruptions. The attack, which also affected other European airports, targeted a third-party service provider’s systems
Salesforce
Critical (100)The ransomware group **ShinyHunters (Scattered Lapsus$ Hunters)** breached **Salesforce** by exploiting stolen OAuth tokens from **Salesloft Drift’s AI chatbot integration**, compromising **1.5 billion records** across **760 companies** (including Cisco, Disney, and Marriott). The leaked data includ
T-Mobile
Critical (100)In August 2021, T-Mobile experienced a significant cybersecurity breach, resulting in the theft of data from about 50 million existing and potential customers. The information compromised included customer addresses, drivers' licenses, and social security numbers. This breach was orchestrated by a 2
**VoidLink Malware Framework Exposes Critical Gaps in Kubernetes and AI Workload Security** In December 2025, Check Point Research disclosed *VoidLink*, a sophisticated Linux malware framework designed to infiltrate cloud-native and AI workloads, marking a shift in how threat actors target modern i
HSBC, Nationwide, Barclays, Lloyds, Marks & Spencer and Co-op: Cyber-attack threat keeps me awake at night, bank boss says
Critical (100)**UK Banking Sector Faces Relentless Cyber Threats as IT Failures Disrupt Services** The UK’s financial sector is grappling with escalating cybersecurity risks and frequent IT outages, with bank executives warning of the severe consequences for market stability and public trust. Speaking before the
DermCare Management: DermCare Management Data Breach Exposes Personal Information: Murphy Law Firm Investigates Legal Claims
Critical (100)**DermCare Management Data Breach Exposes Sensitive Information of Thousands** On **February 26, 2025**, **DermCare Management**, a healthcare services provider, detected suspicious activity on its computer network, signaling a **data breach**. A subsequent forensic investigation revealed that cybe
**Klue Faces Unprecedented Dual Extortion Attack After Data Breach** Vancouver-based market intelligence platform **Klue** has disclosed a rare and escalating cybersecurity crisis, involving **two criminal groups with conflicting extortion demands** following a data breach. The incident, first repo
**Cybersecurity Roundup: Key Threats, Breaches, and Industry Shifts** This week’s cybersecurity landscape saw significant developments across state-sponsored attacks, corporate breaches, regulatory interventions, and emerging AI-driven threats. **State-Backed Surveillance & Hacking** Citizen Lab r
**Cybersecurity Roundup: Zero-Days, AI Threats, and Massive Exploits Dominate July 2026** This week’s cybersecurity landscape underscored the relentless expansion of attack surfaces, with high-impact vulnerabilities, active exploits, and emerging threats targeting everything from enterprise identit
Paidwork: Infosec expert: Paidwork users' data pwned after 23M-record database dumped online
Critical (100)**Massive Data Breach Exposes 23 Million Paidwork Users’ Personal and Financial Information** A significant data breach has compromised the personal and financial details of over **23 million users** of the microtask platform **Paidwork**, with the exposed database surfacing online earlier this mon
Anthropic: Russian Hacker Jailbreaks Claude to Turn into an AI-Powered Penetration Testing Platform
Critical (100)**Russian Threat Actor "Trim" Repurposes AI Models for Automated Cyberattacks** A Russian-speaking cybercriminal known as *Trim* has developed an automated penetration testing tool, *AI Pentest Checker*, by jailbreaking frontier AI models to bypass security controls. First appearing on a Russian-la
**Critical Vulnerabilities Found in Internet-Exposed Building Automation Systems Near U.S. Data Centers** A recent security study uncovered **548 internet-exposed building automation devices** near U.S. data centers running **end-of-life (EOL) software**, leaving them permanently unpatched against
**Iranian-Linked Cyberattack Disrupts 30+ Minnesota Water Systems** A coordinated cyberattack targeted operational technology (OT) across more than 30 community water systems in Minnesota, disrupting pumps, wells, water towers, and wastewater lift stations. The incident, disclosed by Minnesota IT S
Snowflake
Critical (100)For much of the summer, Snowflake, a cloud data storage provider, was targeted by a series of data breaches affecting over 165 customers, exposing hundreds of millions of records. These customers included large corporations such as AT&T, Santander, and Live Nation Entertainment. Despite the breach's
**Ransomware Attacks on Healthcare Sector Remain High in 2025, with Shifts in Targets and Tactics** In the first nine months of 2025, Comparitech recorded **293 ransomware attacks** on hospitals, clinics, and other direct healthcare providers matching 2024’s figures for the same period. However, at
Collins Aerospace (RTX Corp)
Critical (100)A cyber attack on **Collins Aerospace’s Muse software platform**—used for flight check-ins, baggage handling, and boarding coordination—disrupted operations at major European airports, including **Heathrow (UK), Berlin (Germany), and Brussels (Belgium)**. The attack forced airlines to manually proce