Data Breach Security News

Confirmed and reported data breaches — what was exposed, which organizations were affected, and how the incident came to light.

A data breach is an incident where sensitive information — customer records, credentials, source code, internal documents — is accessed or exfiltrated without authorization. This feed tracks newly disclosed breaches as organizations, researchers or attackers themselves report them, including what data was exposed and how the compromise happened. Breach disclosures are often incomplete at first and get revised as investigations continue.

Recent Data Breach items

CVE-2026-64927 A flaw was found in the multicloud-operators-channel component. This vulnerability allows a user with specific permissions to manipulate how the system handles sensitive information, kn…
@cveNotify · Sep 5, 2026
CVE-2026-71845 A flaw was found in insights-client. The setDefault() function logs the value of every environment variable it processes, including CCX_TOKEN, a bearer credential used in disconnected c…
@cveNotify · Sep 5, 2026
CVE-2026-71475 A flaw was found in insights-client. A compromised managed cluster, referred to as a 'spoke', can inject unencoded data into the Insights API URL path. This occurs because the ClusterID…
@cveNotify · Sep 5, 2026
CVE-2026-71474 A flaw was found in insights-client. When the application receives a non-200 response, it logs the request headers, which can include the cloud.openshift.com pull-secret token. A local…
@cveNotify · Sep 5, 2026
CVE-2026-71468 A flaw was found in acm-search-v2-api-rhel9. When the `getFederationConfig` function refreshes its cache, it improperly reuses a user's bearer token for all subsequent federated request…
@cveNotify · Sep 5, 2026
CVE-2026-64927 A flaw was found in the multicloud-operators-channel component. This vulnerability allows a user with specific permissions to manipulate how the system handles sensitive information, kn…
@cveNotify · Sep 5, 2026
CVE-2026-71845 A flaw was found in insights-client. The setDefault() function logs the value of every environment variable it processes, including CCX_TOKEN, a bearer credential used in disconnected c…
@cveNotify · Sep 5, 2026
CVE-2026-71475 A flaw was found in insights-client. A compromised managed cluster, referred to as a 'spoke', can inject unencoded data into the Insights API URL path. This occurs because the ClusterID…
@cveNotify · Sep 5, 2026
CVE-2026-71474 A flaw was found in insights-client. When the application receives a non-200 response, it logs the request headers, which can include the cloud.openshift.com pull-secret token. A local…
@cveNotify · Sep 5, 2026
CVE-2026-71468 A flaw was found in acm-search-v2-api-rhel9. When the `getFederationConfig` function refreshes its cache, it improperly reuses a user's bearer token for all subsequent federated request…
@cveNotify · Sep 5, 2026
Trezor Says ShipMonk Breach Exposed 67,000 U.S. Customers' Data It Said Was Deleted https://ift.tt/FLma4lv
@ctinow · Sep 5, 2026
CVE-2026-76139 A flaw was found in acm-operator-bundle. The build process for this component downloads and runs a script from a remote source without verifying its authenticity or integrity. This scri…
@cveNotify · Sep 5, 2026
CVE-2026-66794 A flaw was found in the `cluster-proxy-addon` component of Multicluster Engine for Kubernetes. This vulnerability allows an unauthenticated attacker, who can access the user-facing rout…
@cveNotify · Sep 5, 2026
CVE-2026-73266 A flaw was found in the clusterclaims-controller component of Multicluster Engine (MCE). An authenticated tenant can exploit this vulnerability by manipulating ClusterClaim labels. This…
@cveNotify · Sep 5, 2026
CVE-2026-76139 A flaw was found in acm-operator-bundle. The build process for this component downloads and runs a script from a remote source without verifying its authenticity or integrity. This scri…
@cveNotify · Sep 5, 2026
ShipMonk said it deleted Trezor customer data. A breach exposed it anyway.Trezor says 67,000 more U.S. customers had names, contact details, shipping addresses, and order numbers exposed. The breach i…
@thehackernews · Sep 5, 2026
CVE-2026-12843 The LearnDash LMS plugin for WordPress is vulnerable to authorization bypass in versions 4.25.0 - 5.1.6. This is due to the plugin not properly verifying that a user is authorized to pe…
@cveNotify · Sep 5, 2026
CVE-2026-86175 NetBox through 4.7.0 fails to redact sensitive data source backend credentials in REST and GraphQL API responses. Authenticated users with only view permission can retrieve plaintext pa…
@cveNotify · Sep 5, 2026
Hackers Use Frontier AI Agents to Breach Enterprise Network in Under 10 Hours https://gbhackers.com/hackers-use-frontier-ai-agents/
@PentestingNews · Sep 5, 2026
CARS24 Data Breach Exposes 3,100 Customer Records, Leads Allegedly Sold for ₹1,000 Each https://gbhackers.com/cars24-data-breach-exposes-3100-customer-records/
@PentestingNews · Sep 5, 2026
CVE-2026-13447 The Mstore Api plugin for WordPress is vulnerable to Authentication Bypass via JWT Forgery in versions up to, and including, 4.20.0 This is due to missing cryptographic signature verifi…
@cveNotify · Sep 5, 2026
CVE-2026-75135 UpSignOn for Windows before 7.19.0 contains a sensitive data exposure vulnerability that allows local attackers to recover the master password and decrypt vault contents by reading a re…
@cveNotify · Sep 5, 2026
IDScan sued over alleged data breach affecting 153 million drivers https://ift.tt/hwe3YXU
@ctinow · Sep 4, 2026
ShipMonk Data Breach Exposes Personal Data of 67,000 Additional Trezor Customers https://gbhackers.com/shipmonk-data-breach-exposes-personal-data/
@PentestingNews · Sep 4, 2026
CVE-2026-64403 In the Linux kernel, the following vulnerability has been resolved:Bluetooth: L2CAP: validate option length before reading conf opt valuel2cap_get_conf_opt() derives the option length f…
@cveNotify · Sep 4, 2026
Kentucky Appellate Court Data Caught in Multi-State Cyber Data Breach https://thecyberexpress.com/kentucky-appellate-court-data-breach-c-track/
@PentestingNews · Sep 4, 2026
French hospital fined €500,000 after breach exposes data of 727,000 https://ift.tt/76iDQJt
@ctinow · Sep 3, 2026
CVE-2026-8862 IBM Netezza Software 11.3.0.3 through Interim Fix 002 has credentials that are hardcoded in the application source code, allowing unauthorized access to the container registry. The expos…
@cveNotify · Sep 3, 2026
What We Missed: Did ShinyHunters 'Breach' ReliaQuest? https://ift.tt/fE83VJR
@ctinow · Sep 3, 2026
CVE-2026-61082 Vulnerability in the MySQL Connectors product of Oracle MySQL (component: Connector/J). Supported versions that are affected are 9.7.0-9.7.1. Easily exploitable vulnerability allows una…
@cveNotify · Sep 3, 2026

Other topics

CVE
Recent CVE identifiers and vulnerability disclosures aggregated from security feeds — new CVE IDs, published advisories, and the vendors and products they affect.
Ransomware
Ransomware attacks, extortion group activity, victim disclosures and decryptor releases tracked as they are reported.
Phishing
Phishing campaigns, credential-harvesting kits, and social-engineering techniques used to compromise users and organizations.
Zero-Day
Zero-day vulnerabilities being actively exploited before a patch exists, and the fixes that follow.
Exploit
Public exploit code, proof-of-concept releases, and technical exploitation write-ups for known vulnerabilities.
Patch
Vendor patches, security updates and fix releases for previously disclosed vulnerabilities.