Explore documented cybersecurity incidents.

Search source-backed cases by attack path, incident type, year, or response theme.

179 cases

Data incidentAttack pathATT&CK T1566.004

Exact Sciences legacy-systems vishing data incident

A vishing attack caused unauthorized access to a limited number of legacy Exact Sciences systems in Abbott's Cancer Diagnostics business.

AffectedAbbott Laboratories · Exact Sciences Corporation

Data incidentAttack pathPublicly documented cyber incident

Brinks Home unauthorized-access data incident

Brinks Home confirmed that an unauthorized party accessed certain company systems and said its investigation remained in progress.

AffectedBrinks Home

Data incidentAttack pathPublicly documented cyber incident

Moody Bible Institute data incident

Moody Bible Institute disclosed an investigation after cybercriminals claimed access to certain internal systems.

AffectedMoody Bible Institute

Data incidentAttack pathPublicly documented cyber incident

Inter-Con Security Systems data incident

An Inter-Con Security Systems incident recorded by the Indiana Attorney General and associated with a separately verified HIBP corpus.

AffectedInter-Con Security Systems, Inc.

Data incidentAttack pathPublicly documented cyber incident

Madison Square Garden Sports data incident and publication

A data-theft incident followed by public publication of Madison Square Garden and Knicks-related records.

AffectedNew York Knicks · Madison Square Garden Sports Corp.

Data incidentAttack pathPublicly documented cyber incident

Quontic Bank former-employee records incident

Two former employees retained certain Quontic customer records after departing the company.

AffectedQuontic Bank Acquisition Corp.

Data incidentAttack pathPublicly documented cyber incident

Charter Communications contact-data incident

Charter Communications acknowledged recent unauthorized activity and a related data-exfiltration incident.

AffectedSpectrum · Charter Communications, Inc.

Data incidentAttack pathPublicly documented cyber incident

DentaQuest network data incident

Unauthorized access to data on DentaQuest's computer network between May 17 and May 20, 2026.

AffectedDentaQuest LLC · Clever Care Health Plan

Cybersecurity incidentAttack pathPublicly documented cyber incident

CVS-Criteo alleged data disclosure

Alleged disclosure of CVS digital-property user data to Criteo or other technology providers through embedded technology; the defendants deny wrongdoing and the court has not decided the merits.

AffectedCVS Pharmacy, Inc.

Data incidentAttack pathPublicly documented cyber incident

Reborn Gaming Store unauthorized-access data incident

Unauthorized remote access to the Reborn Gaming Store backend through a vulnerability that Reborn Gaming described as affecting cPanel and WHM.

AffectedReborn Gaming

Data incidentAttack pathPublicly documented cyber incident

Instructure Canvas cyber incident

Unauthorized activity in Canvas detected on April 29, 2026, involving data access through a Free-for-Teacher account.

AffectedInstructure, Inc.

Data incidentAttack pathPublicly documented cyber incident

Vimeo Anodot third-party data incident

Unauthorized access to Vimeo user and customer data resulting from a incident at analytics vendor Anodot.

AffectedVimeo.com, Inc.

Data incidentAttack pathPublicly documented cyber incident

CTT Locky customer-data incident

CTT confirmed a contained security incident associated with external exposure of Locky smart-locker-network data.

AffectedCTT – Correios de Portugal, S.A.

Data incidentAttack pathPublicly documented cyber incident

ADT cloud-environment data incident

ADT detected unauthorized access to certain cloud-based environments on April 20, 2026.

AffectedADT Inc.

Data incidentAttack pathPublicly documented cyber incident

Canada Life employee-account data incident

Canada Life identified unauthorized access to certain applications through an employee account.

AffectedThe Canada Life Assurance Company

Data incidentAttack pathPublicly documented cyber incident

Pitney Bowes customer and employee data incident

A Pitney Bowes supplier data incident corroborated by a downstream government customer and associated with a later-public corpus verified by HIBP.

AffectedOffice of the Revenue Commissioners · Pitney Bowes Inc.

Data incidentAttack pathPublicly documented cyber incident

Carnival Corporation social-engineering data incident

An unauthorized actor used social engineering against an employee account, accessed part of Carnival's IT environment, and copied personal information.

AffectedCarnival Corporation

Data incidentAttack pathPublicly documented cyber incident

Marcus & Millichap phishing data incident

An unauthorized third party used social engineering to obtain one employee's credentials and access certain Marcus & Millichap systems.

AffectedMarcus & Millichap, Inc.

Data incidentAttack pathPublicly documented cyber incident

7-Eleven franchisee-document data incident

An unauthorized third party accessed 7-Eleven systems used to store franchisee documents on April 8, 2026.

Affected7-Eleven, Inc.

Data incidentAttack pathPublicly documented cyber incident

My Lovely AI user-content data incident

A data incident associated with My Lovely AI user identifiers, prompts, and generated-media links.

AffectedMy Lovely AI

Data incidentAttack pathPublicly documented cyber incident

Lumexa Imaging vendor data disclosure

Unauthorized access to an unnamed contracted vendor's systems used to support Lumexa Imaging and affiliated imaging practices.

AffectedLumexa Imaging Holdings, Inc.

Data incidentAttack pathPublicly documented cyber incident

JRK Property Holdings data incident

JRK identified unusual network activity on March 26, 2026 and later determined that an unauthorized party may have accessed files.

AffectedJRK Property Holdings, Inc.

Data incidentAttack pathPublicly documented cyber incident

Addi unauthorized-access data incident

Addi told customers that it detected unauthorized access to part of the information on its platform on March 25, 2026.

AffectedAddi

Data incidentAttack pathPublicly documented cyber incident

Acadia Healthcare email and SharePoint data incident

Unauthorized access to and acquisition of emails and SharePoint files after social engineering compromised one user email account.

AffectedAcadia Healthcare Company, Inc.

Data incidentAttack pathPublicly documented cyber incident

RCI Internet Services contractor data incident

Unauthorized access to personal information on systems operated by RCI Internet Services, a subsidiary of RCI Hospitality Holdings.

AffectedRCI Internet Services, Inc.

Data incidentAttack pathPublicly documented cyber incident

Infinite Campus Salesforce-account data incident

Unauthorized access to an Infinite Campus employee's Salesforce account and an associated school-staff contact-data exposure.

AffectedInfinite Campus, Inc.

Data incidentAttack pathPublicly documented cyber incident

Crunchyroll customer-service ticket data incident

Crunchyroll confirmed an incident involving a third-party vendor and information primarily limited to customer-service ticket data.

AffectedCrunchyroll, LLC

Data incidentAttack pathPublicly documented cyber incident

CareCloud Health EHR data incident

An unauthorized third party accessed one of CareCloud Health's six electronic-health-record environments and caused an approximately eight-hour disruption.

AffectedCareCloud, Inc.

Data incidentAttack pathPublicly documented cyber incident

Baydöner supplier-system data incident

Baydöner said it found evidence that unauthorized people accessed supplier systems and that an independent technical investigation was continuing.

AffectedBaydöner Restoranları A.Ş.

Data incidentAttack pathATT&CK T1566.004

Aura phone-phishing data incident

A targeted phone-phishing attack enabled unauthorized access to an Aura employee corporate account for approximately one hour.

AffectedCircle Media Labs, Inc. · Aura

Data incidentAttack pathPublicly documented cyber incident

Bridgeway Benefit Technologies data incident

A Bridgeway Benefit Technologies incident with a regulator-reported March 5-May 19 event range.

AffectedBridgeway Benefit Technologies LLC

Data incidentAttack pathPublicly documented cyber incident

SUCCESS admin-system and customer-data incident

Unauthorized access to the SUCCESS.com administrative system, publication of offensive content, and sending of an unauthorized newsletter.

AffectedSUCCESS Enterprises, LLC

Data incidentAttack pathPublicly documented cyber incident

Ameriprise Financial stored-data incident

An unauthorized individual accessed certain Ameriprise stored data and files between March 2 and March 18, 2026.

AffectedAmeriprise Financial, Inc.

Data incidentAttack pathPublicly documented cyber incident

RXNT solution data incident

Unauthorized access within an RXNT solution used by a portion of its healthcare customers, with data acquisition between March 1 and March 3, 2026.

AffectedNetworking Technology, Inc.

Data incidentAttack pathPublicly documented cyber incident

BAYADA direct systems data incident

A hacking or IT incident affecting a BAYADA network server during a regulator-reported February 18-March 2 period.

AffectedBAYADA Home Health Care, Inc.

Data incidentAttack pathPublicly documented cyber incident

Eyemart Express network data incident

Regulator records describe hacking or unauthorized access affecting an Eyemart Express network server between February 12 and February 13, 2026.

AffectedEyemart Express, LLC

Data incidentAttack pathATT&CK T1566.004

Odido and Ben customer-contact-system incident

Two voice-phishing attacks against Odido customer service that led to unauthorized access and customer-data exfiltration affecting Odido and Ben customers.

AffectedOdido · Ben

Data incidentAttack pathPublicly documented cyber incident

Nacogdoches Memorial Hospital network data incident

A cyberattack in which an unauthorized party compromised the hospital's computer network and information systems.

AffectedNacogdoches Memorial Hospital

Data incidentAttack pathPublicly documented cyber incident

Figure Lending database-query data incident

Unauthorized activity on Figure systems that included personal data being obtained through queries against loan and loan-inquiry databases.

AffectedFigure Lending LLC · Figure Payments Corporation · Figure Lending Corp. · Figure Markets Credit LLC

Data incidentAttack pathATT&CK T1566

Xsolis targeted-phishing data incident

Targeted phishing led to unauthorized access to a limited portion of Xsolis's environment from January 20 through January 22, 2026.

AffectedXsolis, Inc.

Data incidentAttack pathPublicly documented cyber incident

Safetyfirst Systems server data incident

An unauthorized actor accessed or acquired files from a limited portion of Safetyfirst Systems' environment between January 16 and January 19, 2026.

AffectedSafetyfirst Systems, LLC

Data incidentAttack pathPublicly documented cyber incident

Free Mobile and Free subscriber data incident

An attacker infiltrated the companies' information systems and accessed subscriber-related personal data in October 2024.

AffectedFree Mobile · Free

Data incidentAttack pathATT&CK T1566.004

Betterment social-engineering data incident

A threat actor used social engineering to access a Betterment employee account and marketing and operations applications on January 9, 2026.

AffectedBetterment

Data incidentAttack pathPublicly documented cyber incident

Panera Bread contact-information data incident

A Panera Bread incident confirmed by the company and associated with a later-public contact-information corpus.

AffectedPanera Bread

Data incidentAttack pathPublicly documented cyber incident

QualDerm Partners network data incident

Unauthorized access to a limited number of QualDerm network systems and removal of information stored in those systems.

AffectedQualDerm Partners, LLC

Data incidentAttack pathPublicly documented cyber incident

Navia Benefit Solutions API data incident

Unauthorized read-only access to benefits-participant data through an application programming interface.

AffectedNavia Benefit Solutions, Inc. · Washington State Health Care Authority

Data incidentAttack pathPublicly documented cyber incident

French Ministry of Sports Pass'Sport data exfiltration

An exfiltration from a French Ministry of Sports information system associated with the Pass'Sport program and a later-public personal-data corpus.

AffectedMinistère des Sports, de la Jeunesse et de la Vie associative

Data incidentAttack pathPublicly documented cyber incident

APOIA.se user-registration data incident

APOIA.se told affected users that a point vulnerability permitted access to a database limited to registration data.

AffectedAPOIA.se

Data incidentAttack pathPublicly documented cyber incident

SoundCloud ancillary-dashboard data incident

Unauthorized activity in an ancillary service dashboard that SoundCloud contained and investigated.

AffectedSoundCloud

Cybersecurity incidentAttack pathATT&CK T1528, T1566

Farmers Insurance security incident

Incident documented by California Attorney General in the retained source snapshot.

AffectedFarmers Insurance

Data incidentAttack pathPublicly documented cyber incident

NYC Health + Hospitals network data incident

Unauthorized access to NYC Health + Hospitals systems from approximately November 25, 2025 through February 11, 2026, discovered on February 2.

AffectedNew York City Health and Hospitals Corporation

Data incidentAttack pathPublicly documented cyber incident

Suno outdated-source-code and data incident

A Suno-confirmed incident involving outdated source code, with a later HIBP corpus whose personal-data scope is not confirmed by Suno.

AffectedSuno, Inc.

Data incidentAttack pathPublicly documented cyber incident

Substack user contact-data incident

Unauthorized access to limited Substack user data, identified and disclosed in February 2026.

AffectedSubstack, Inc.

Data incidentAttack pathPublicly documented cyber incident

Unlimited Technology Systems data incident

Unauthorized activity in Unlimited Technology Systems' commercial datacenter and acquisition of files containing patient information.

AffectedUnlimited Technology Systems, LLC

Data incidentAttack pathPublicly documented cyber incident

Canadian Tire e-commerce database incident

Unauthorized activity affected a specific e-commerce database containing customer accounts across four Canadian Tire Corporation retail banners.

AffectedCanadian Tire · Party City Canada · SportChek · Canadian Tire Corporation, Limited · Mark's

Cybersecurity incidentAttack pathPublicly documented cyber incident

Harrods supplier data incident

Incident documented by BleepingComputer in the retained source snapshot.

AffectedHarrods

Data incidentAttack pathPublicly documented cyber incident

MCBS network data incident

Unauthorized access to MCBS's network and potential unauthorized acquisition of files used for medical billing services.

AffectedMCBS, LLC

Data incidentAttack pathPublicly documented cyber incident

Insightin Health GoAnywhere data incident

Unauthorized access to files on a limited number of Insightin servers through GoAnywhere file-transfer software.

AffectedCoordinated Care of Washington, Inc. · Centene Corporation · Wellcare of Washington, Inc. · Wellcare Health Insurance Company of Washington, Inc. · Insightin Health, Inc.

Cybersecurity incidentAttack pathATT&CK T1528, T1566

Workday security incident

Incident documented by Workday in the retained source snapshot.

AffectedWorkday

Cybersecurity incidentAttack pathPublicly documented cyber incident

Jaguar Land Rover security incident

Incident documented by UK National Cyber Security Centre in the retained source snapshot.

AffectedJaguar Land Rover

Data incidentAttack pathPublicly documented cyber incident

BreachForums user-database exposure

A backup of the breachforums.hn MyBB user table and forum signing-key material was exposed and later released publicly.

AffectedBreachForums (.hn iteration)

Cybersecurity incidentAttack pathPublicly documented cyber incident

Air France-KLM security incident

Incident documented by KLM in the retained source snapshot.

AffectedKLM · Air France

Cybersecurity incidentAttack pathATT&CK T1528, T1566

Pandora security incident

Incident documented by TechRadar in the retained source snapshot.

AffectedPandora

Cybersecurity incidentAttack pathATT&CK T1528, T1566

Allianz Life (US) security incident

Incident documented by BleepingComputer in the retained source snapshot.

AffectedAllianz Life

Data incidentAttack pathPublicly documented cyber incident

Canada Goose historical customer dataset publication

A historical dataset relating to Canada Goose customer transactions was published online; Canada Goose said it had no indication that its own systems were breached.

AffectedCanada Goose

Data incidentAttack pathATT&CK T1566.004

Qantas contact-centre data incident

Phone-based social engineering against an overseas third-party contact centre that connected a Qantas CRM instance to a threat-actor data-extraction tool.

AffectedQantas Airways Limited

Data incidentAttack pathPublicly documented cyber incident

Operation PAR, Boley Centers, and Eleos network incident

Unauthorized access to a shared network and possible access or removal of files maintained by Operation PAR, Boley Centers, and Eleos.

AffectedPersonal Enrichment through Mental Health Services, Inc. · Boley Centers, Inc. · Operation PAR, Inc.

Cybersecurity incidentAttack pathATT&CK T1528, T1566

Google Salesforce data theft incident

Incident documented by Google Threat Intelligence Group in the retained source snapshot.

AffectedGoogle

Cybersecurity incidentAttack pathATT&CK T1528, T1566

Adidas security incident

Incident documented by BleepingComputer in the retained source snapshot.

AffectedAdidas

Cybersecurity incidentAttack pathPublicly documented cyber incident

Harrods attempted cyber intrusion

Incident documented by BleepingComputer in the retained source snapshot.

AffectedHarrods

Data incidentAttack pathPublicly documented cyber incident

Cerner legacy systems data incident

Unauthorized access to data maintained on legacy Cerner systems, with activity reported from January 22 through April 1, 2025.

AffectedCerner Corporation · Munson Healthcare

Cybersecurity incidentAttack pathPublicly documented cyber incident

PowerSchool security incident

Incident documented by Government of Newfoundland and Labrador in the retained source snapshot.

AffectedPowerSchool

Cybersecurity incidentAttack pathPublicly documented cyber incident

Co-op Group security incident

Incident documented by Co-op Group in the retained source snapshot.

AffectedCo-op Group

Cybersecurity incidentAttack pathPublicly documented cyber incident

Coinbase security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedCoinbase

Cybersecurity incidentAttack pathATT&CK T1528, T1566

LVMH brands customer-data incidents

Related customer-data incidents documented by the Hong Kong privacy regulator and IBM in retained source snapshots.

AffectedDior · Chanel · Louis Vuitton

Cybersecurity incidentAttack pathATT&CK T1486

Marks & Spencer security incident

Incident documented by Marks & Spencer in the retained source snapshot.

AffectedMarks & Spencer

Cybersecurity incidentAttack pathATT&CK T1528, T1566

Vietnam Airlines security incident

Incident documented by Vietnam Airlines in the retained source snapshot.

AffectedVietnam Airlines

Cybersecurity incidentAttack pathPublicly documented cyber incident

Salt Typhoon telecommunications campaign

Incident documented by CISA in the retained source snapshot.

AffectedSee evidence record

Data incidentAttack pathPublicly documented cyber incident

TriZetto Provider Solutions portal data incident

Unauthorized access to insurance-eligibility verification records through a web portal used by some TriZetto healthcare-provider customers.

AffectedTriZetto Provider Solutions

Data incidentAttack pathPublicly documented cyber incident

Conduent Business Services data incident

Unauthorized access to a limited portion of Conduent's environment and exfiltration of client-associated files.

AffectedConduent Incorporated · Blue Cross and Blue Shield of Texas · Conduent Business Services, LLC

Cybersecurity incidentAttack pathPublicly documented cyber incident

CDK Global security incident

Incident documented by Brookfield Business Partners in the retained source snapshot.

AffectedCDK Global

Data incidentAttack pathPublicly documented cyber incident

France Travail job-seeker data incident

One or more attackers used social engineering to take over Cap emploi adviser accounts and access France Travail job-seeker data.

AffectedFrance Travail · Cap emploi network

Cybersecurity incidentAttack pathPublicly documented cyber incident

Microsoft Midnight Blizzard compromise

Incident documented by Microsoft in the retained source snapshot.

AffectedMicrosoft

Cybersecurity incidentAttack pathATT&CK T1078

Advance Auto Parts security incident

Incident documented by U.S. District Court for the District of Montana in the retained source snapshot.

AffectedAdvance Auto Parts

Cybersecurity incidentAttack pathPublicly documented cyber incident

Ascension Health security incident

Incident documented by Ascension in the retained source snapshot.

AffectedAscension

Cybersecurity incidentAttack pathATT&CK T1078

AT&T security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedAT&T

Cybersecurity incidentAttack pathPublicly documented cyber incident

CrowdStrike Channel File 291 outage

Incident documented by CrowdStrike in the retained source snapshot.

AffectedMicrosoft · CrowdStrike

Cybersecurity incidentAttack pathATT&CK T1078

Neiman Marcus security incident

Incident documented by U.S. District Court for the District of Montana in the retained source snapshot.

AffectedNeiman Marcus

Cybersecurity incidentAttack pathATT&CK T1078

QuoteWizard / LendingTree security incident

Incident documented by U.S. District Court for the District of Montana in the retained source snapshot.

AffectedLendingTree · QuoteWizard

Cybersecurity incidentAttack pathATT&CK T1078

Santander Bank security incident

Incident documented by Santander in the retained source snapshot.

AffectedSantander

Cybersecurity incidentAttack pathATT&CK T1078

Ticketmaster / Live Nation security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedLive Nation Entertainment · Ticketmaster

Cybersecurity incidentAttack pathPublicly documented cyber incident

xz Utils backdoor discovery

Incident documented by oss-security in the retained source snapshot.

AffectedSee evidence record

Cybersecurity incidentAttack pathPublicly documented cyber incident

Norton Healthcare security incident

Incident documented by Norton Healthcare in the retained source snapshot.

AffectedNorton Healthcare

Cybersecurity incidentAttack pathATT&CK T1486

DP World Australia security incident

Incident documented by DP World Australia in the retained source snapshot.

AffectedDP World Australia

Cybersecurity incidentAttack pathPublicly documented cyber incident

Sony security incident

Incident documented by BleepingComputer in the retained source snapshot.

AffectedSony

Cybersecurity incidentAttack pathPublicly documented cyber incident

Prospect Medical Holdings security incident

Incident documented by California Department of Justice in the retained source snapshot.

AffectedProspect Medical Holdings

Cybersecurity incidentAttack pathATT&CK T1566, T1621

Retool security incident

Incident documented by Retool in the retained source snapshot.

AffectedRetool

Cybersecurity incidentAttack pathPublicly documented cyber incident

Microsoft Storm-0558 email compromise

Incident documented by Microsoft in the retained source snapshot.

AffectedMicrosoft

Cybersecurity incidentAttack pathPublicly documented cyber incident

Shell security incident

Incident documented by Recorded Future News in the retained source snapshot.

AffectedShell

Cybersecurity incidentAttack pathPublicly documented cyber incident

US Department of Energy security incident

Incident documented by CyberScoop in the retained source snapshot.

AffectedUS Department of Energy

Cybersecurity incidentAttack pathPublicly documented cyber incident

3CX supply-chain compromise

Incident documented by Google Cloud Mandiant in the retained source snapshot.

Affected3CX

Cybersecurity incidentAttack pathPublicly documented cyber incident

LA Unified School District security incident

Incident documented by California Attorney General in the retained source snapshot.

AffectedLos Angeles Unified School District

Cybersecurity incidentAttack pathPublicly documented cyber incident

Optus security incident

Incident documented by Office of the Australian Information Commissioner in the retained source snapshot.

AffectedOptus

Cybersecurity incidentAttack pathATT&CK T1566

Activision Blizzard security incident

Incident documented by BleepingComputer in the retained source snapshot.

AffectedActivision Blizzard

Cybersecurity incidentAttack pathATT&CK T1566

Reddit security incident

Incident documented by Reddit in the retained source snapshot.

AffectedReddit

Cybersecurity incidentAttack pathPublicly documented cyber incident

ION Trading security incident

Incident documented by ION Group in the retained source snapshot.

AffectedION Trading

Cybersecurity incidentAttack pathATT&CK T1110

23andMe security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

Affected23andMe

Cybersecurity incidentAttack pathATT&CK T1486

Ardent Health Services security incident

Incident documented by Ardent Health Services in the retained source snapshot.

AffectedArdent Health Services

Cybersecurity incidentAttack pathPublicly documented cyber incident

Boeing security incident

Incident documented by The Boeing Company in the retained source snapshot.

AffectedBoeing

Cybersecurity incidentAttack pathATT&CK T1486

British Library security incident

Incident documented by British Library in the retained source snapshot.

AffectedBritish Library

Cybersecurity incidentAttack pathPublicly documented cyber incident

Caesars Entertainment security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedCaesars Entertainment

Cybersecurity incidentAttack pathPublicly documented cyber incident

Clorox security incident

Incident documented by The Clorox Company in the retained source snapshot.

AffectedClorox

Cybersecurity incidentAttack pathATT&CK T1486

HCA Healthcare security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedHCA Healthcare

Cybersecurity incidentAttack pathATT&CK T1486

ICBC (US arm) security incident

Incident documented by U.S. Department of the Treasury in the retained source snapshot.

AffectedIndustrial and Commercial Bank of China Financial Services

Cybersecurity incidentAttack pathATT&CK T1486

Johnson Controls security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedJohnson Controls

Cybersecurity incidentAttack pathATT&CK T1078

Latitude Financial security incident

Incident documented by Latitude Financial in the retained source snapshot.

AffectedLatitude Financial

Cybersecurity incidentAttack pathPublicly documented cyber incident

MGM Resorts security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedMGM Resorts

Cybersecurity incidentAttack pathPublicly documented cyber incident

National Student Clearinghouse security incident

Incident documented by Northwest Iowa Community College in the retained source snapshot.

AffectedNational Student Clearinghouse

Cybersecurity incidentAttack pathPublicly documented cyber incident

Royal Mail (UK) security incident

Incident documented by UK Home Office in the retained source snapshot.

AffectedRoyal Mail

Cybersecurity incidentAttack pathPublicly documented cyber incident

T-Mobile security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedT-Mobile

Cybersecurity incidentAttack pathATT&CK T1486

CommonSpirit Health security incident

Incident documented by CommonSpirit Health in the retained source snapshot.

AffectedCommonSpirit Health

Cybersecurity incidentAttack pathATT&CK T1566

Twilio security incident

Incident documented by Twilio in the retained source snapshot.

AffectedTwilio

Cybersecurity incidentAttack pathPublicly documented cyber incident

Suffolk County, NY security incident

Incident documented by Suffolk County, New York in the retained source snapshot.

AffectedSuffolk County, NY

Cybersecurity incidentAttack pathPublicly documented cyber incident

San Francisco 49ers security incident

Incident documented by California Department of Justice in the retained source snapshot.

AffectedSan Francisco 49ers

Cybersecurity incidentAttack pathATT&CK T1566, T1621

Cisco security incident

Incident documented by Cisco Talos in the retained source snapshot.

AffectedCisco

Cybersecurity incidentAttack pathPublicly documented cyber incident

Cloudflare blocked phishing campaign

Incident documented by Cloudflare in the retained source snapshot.

AffectedCloudflare

Cybersecurity incidentAttack pathPublicly documented cyber incident

Shields Health Care Group security incident

Incident documented by California Attorney General in the retained source snapshot.

AffectedShields Health Care Group

Data incidentAttack pathATT&CK T1204.002, T1566.001

South Staffordshire cyberattack and data incident

Phishing-enabled compromise traced to September 2020, followed by major network activity and discovery in July 2022.

AffectedSouth Staffordshire Water Plc · South Staffordshire Plc

Cybersecurity incidentAttack pathPublicly documented cyber incident

Okta security incident

Incident documented by Okta in the retained source snapshot.

AffectedOkta

Cybersecurity incidentAttack pathPublicly documented cyber incident

Microsoft security incident

Incident documented by Microsoft in the retained source snapshot.

AffectedMicrosoft

Cybersecurity incidentAttack pathPublicly documented cyber incident

Samsung security incident

Incident documented by BleepingComputer in the retained source snapshot.

AffectedSamsung

Cybersecurity incidentAttack pathPublicly documented cyber incident

Continental AG security incident

Incident documented by Continental AG in the retained source snapshot.

AffectedContinental AG

Cybersecurity incidentAttack pathPublicly documented cyber incident

DoorDash security incident

Incident documented by DoorDash in the retained source snapshot.

AffectedDoorDash

Cybersecurity incidentAttack pathATT&CK T1528, T1566

Dropbox security incident

Incident documented by Dropbox in the retained source snapshot.

AffectedDropbox

Cybersecurity incidentAttack pathPublicly documented cyber incident

LastPass security incident

Incident documented by LastPass in the retained source snapshot.

AffectedLastPass

Cybersecurity incidentAttack pathPublicly documented cyber incident

Mailchimp security incident

Incident documented by Mailchimp in the retained source snapshot.

AffectedMailchimp

Cybersecurity incidentAttack pathPublicly documented cyber incident

Medibank security incident

Incident documented by Medibank in the retained source snapshot.

AffectedMedibank

Cybersecurity incidentAttack pathPublicly documented cyber incident

Nvidia security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedNVIDIA

Cybersecurity incidentAttack pathATT&CK T1190, T1486

Rackspace security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedRackspace

Cybersecurity incidentAttack pathPublicly documented cyber incident

Rockstar Games security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedRockstar Games

Cybersecurity incidentAttack pathATT&CK T1190

Twitter API data exposure

Incident documented by X in the retained source snapshot.

AffectedX

Cybersecurity incidentAttack pathATT&CK T1621

Uber security incident

Incident documented by Uber in the retained source snapshot.

AffectedUber

Cybersecurity incidentAttack pathATT&CK T1561

Viasat KA-SAT network disruption

Incident documented by UK National Cyber Security Centre in the retained source snapshot.

AffectedViasat

Data incidentAttack pathPublicly documented cyber incident

Illuminate Education student-data incident

Unauthorized access to Illuminate's AWS-hosted IO Suite environment using a former employee's still-active privileged access key, followed by student-data exfiltration and destructive activity.

AffectedIlluminate Education, Inc.

Vulnerability exploitationAttack pathExploitation of Log4Shell

Belgian Ministry of Defence Log4Shell cyberattack

Belgian Ministry of Defence is documented in 2 public sources with 5 structured claims.

AffectedBelgian Ministry of Defence

Cybersecurity incidentAttack pathATT&CK T1486

Media Markt security incident

Incident documented by Heise in the retained source snapshot.

AffectedMedia Markt

Cybersecurity incidentAttack pathPublicly documented cyber incident

Accenture security incident

Incident documented by BleepingComputer in the retained source snapshot.

AffectedAccenture

Cybersecurity incidentAttack pathPublicly documented cyber incident

Electronic Arts security incident

Incident documented by Electronic Arts in the retained source snapshot.

AffectedElectronic Arts

Cybersecurity incidentAttack pathATT&CK T1486

Colonial Pipeline security incident

Incident documented by United States Department of Justice in the retained source snapshot.

AffectedColonial Pipeline

Cybersecurity incidentAttack pathATT&CK T1566

CNA Financial security incident

Incident documented by CNA Financial in the retained source snapshot.

AffectedCNA Financial

Cybersecurity incidentAttack pathATT&CK T1566

Ireland HSE security incident

Incident documented by Health Service Executive in the retained source snapshot.

AffectedIreland HSE

Cybersecurity incidentAttack pathPublicly documented cyber incident

JBS Foods security incident

Incident documented by JBS Foods in the retained source snapshot.

AffectedJBS Foods

Cybersecurity incidentAttack pathATT&CK T1190, T1195

Kaseya VSA security incident

Incident documented by Kaseya in the retained source snapshot.

AffectedKaseya VSA

Cybersecurity incidentAttack pathPublicly documented cyber incident

T-Mobile security incident

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedT-Mobile

Data incidentAttack pathPublicly documented cyber incident

Windows93 Myspace93 server-file incident

Exploitation of a private beta application to view and download server files, including a Myspace93 password file.

AffectedWindows93

Cybersecurity incidentAttack pathATT&CK T1213

GoDaddy multi-year compromise

Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.

AffectedGoDaddy

Data incidentAttack pathPublicly documented cyber incident

SCUF Gaming customer-account data incident

A contemporaneously reported SCUF Gaming website compromise and customer incident notification associated by HIBP with a later-verified account-data corpus.

AffectedSCUF Gaming