Exact Sciences legacy-systems vishing data incident
A vishing attack caused unauthorized access to a limited number of legacy Exact Sciences systems in Abbott's Cancer Diagnostics business.
AffectedAbbott Laboratories · Exact Sciences Corporation
Search source-backed cases by attack path, incident type, year, or response theme.
A vishing attack caused unauthorized access to a limited number of legacy Exact Sciences systems in Abbott's Cancer Diagnostics business.
AffectedAbbott Laboratories · Exact Sciences Corporation
Brinks Home confirmed that an unauthorized party accessed certain company systems and said its investigation remained in progress.
AffectedBrinks Home
Glendale Community College investigated potential unauthorized copying of data related to student educational records.
AffectedGlendale Community College
Moody Bible Institute disclosed an investigation after cybercriminals claimed access to certain internal systems.
AffectedMoody Bible Institute
External-party access to a significant amount of data in the university's student record system.
AffectedThe University of Nottingham
An Inter-Con Security Systems incident recorded by the Indiana Attorney General and associated with a separately verified HIBP corpus.
AffectedInter-Con Security Systems, Inc.
A data-theft incident followed by public publication of Madison Square Garden and Knicks-related records.
AffectedNew York Knicks · Madison Square Garden Sports Corp.
Two former employees retained certain Quontic customer records after departing the company.
AffectedQuontic Bank Acquisition Corp.
Documents intended for secure destruction at RCOC's Cypress office were mistakenly discarded in regular trash and could not be recovered.
AffectedRegional Center of Orange County
Charter Communications acknowledged recent unauthorized activity and a related data-exfiltration incident.
AffectedSpectrum · Charter Communications, Inc.
Unauthorized access to data on DentaQuest's computer network between May 17 and May 20, 2026.
AffectedDentaQuest LLC · Clever Care Health Plan
Alleged disclosure of CVS digital-property user data to Criteo or other technology providers through embedded technology; the defendants deny wrongdoing and the court has not decided the merits.
AffectedCVS Pharmacy, Inc.
Cybersecurity incident involving the vendor that handles Texas hunting and fishing license sales.
AffectedTexas Parks and Wildlife Department
Cushman & Wakefield confirmed a limited data-security incident caused by vishing.
AffectedCushman & Wakefield plc
Unauthorized remote access to the Reborn Gaming Store backend through a vulnerability that Reborn Gaming described as affecting cPanel and WHM.
AffectedReborn Gaming
Unauthorized activity in Canvas detected on April 29, 2026, involving data access through a Free-for-Teacher account.
AffectedInstructure, Inc.
Unauthorized access to Vimeo user and customer data resulting from a incident at analytics vendor Anodot.
AffectedVimeo.com, Inc.
CTT confirmed a contained security incident associated with external exposure of Locky smart-locker-network data.
AffectedCTT – Correios de Portugal, S.A.
ADT detected unauthorized access to certain cloud-based environments on April 20, 2026.
AffectedADT Inc.
Canada Life identified unauthorized access to certain applications through an employee account.
AffectedThe Canada Life Assurance Company
A Pitney Bowes supplier data incident corroborated by a downstream government customer and associated with a later-public corpus verified by HIBP.
AffectedOffice of the Revenue Commissioners · Pitney Bowes Inc.
Unauthorized access to Inditex databases hosted by a former technology provider and associated by HIBP with Zara.
AffectedIndustria de Diseño Textil, S.A. · Zara
An unauthorized actor used social engineering against an employee account, accessed part of Carnival's IT environment, and copied personal information.
AffectedCarnival Corporation
An unauthorized third party used social engineering to obtain one employee's credentials and access certain Marcus & Millichap systems.
AffectedMarcus & Millichap, Inc.
Unauthorized access to limited data on a webpage hosted by Salesforce for McGraw Hill.
AffectedMcGraw Hill
An unauthorized third party accessed 7-Eleven systems used to store franchisee documents on April 8, 2026.
Affected7-Eleven, Inc.
A data incident associated with My Lovely AI user identifiers, prompts, and generated-media links.
AffectedMy Lovely AI
Unauthorized access to an unnamed contracted vendor's systems used to support Lumexa Imaging and affiliated imaging practices.
AffectedLumexa Imaging Holdings, Inc.
JRK identified unusual network activity on March 26, 2026 and later determined that an unauthorized party may have accessed files.
AffectedJRK Property Holdings, Inc.
Addi told customers that it detected unauthorized access to part of the information on its platform on March 25, 2026.
AffectedAddi
Unauthorized access to a Sound Radix support-agent account and evidence of access to its broader user database.
AffectedSound Radix
Unauthorized access to and acquisition of emails and SharePoint files after social engineering compromised one user email account.
AffectedAcadia Healthcare Company, Inc.
Unauthorized access to personal information on systems operated by RCI Internet Services, a subsidiary of RCI Hospitality Holdings.
AffectedRCI Internet Services, Inc.
Unauthorized access to an Infinite Campus employee's Salesforce account and an associated school-staff contact-data exposure.
AffectedInfinite Campus, Inc.
Crunchyroll confirmed an incident involving a third-party vendor and information primarily limited to customer-service ticket data.
AffectedCrunchyroll, LLC
An unauthorized third party accessed one of CareCloud Health's six electronic-health-record environments and caused an approximately eight-hour disruption.
AffectedCareCloud, Inc.
Baydöner said it found evidence that unauthorized people accessed supplier systems and that an independent technical investigation was continuing.
AffectedBaydöner Restoranları A.Ş.
A targeted phone-phishing attack enabled unauthorized access to an Aura employee corporate account for approximately one hour.
AffectedCircle Media Labs, Inc. · Aura
A Bridgeway Benefit Technologies incident with a regulator-reported March 5-May 19 event range.
AffectedBridgeway Benefit Technologies LLC
Unauthorized access to the SUCCESS.com administrative system, publication of offensive content, and sending of an unauthorized newsletter.
AffectedSUCCESS Enterprises, LLC
An unauthorized individual accessed certain Ameriprise stored data and files between March 2 and March 18, 2026.
AffectedAmeriprise Financial, Inc.
Unauthorized access within an RXNT solution used by a portion of its healthcare customers, with data acquisition between March 1 and March 3, 2026.
AffectedNetworking Technology, Inc.
A hacking or IT incident affecting a BAYADA network server during a regulator-reported February 18-March 2 period.
AffectedBAYADA Home Health Care, Inc.
A contained cybersecurity incident involving an internal CarGurus company database.
AffectedCarGurus, Inc.
Regulator records describe hacking or unauthorized access affecting an Eyemart Express network server between February 12 and February 13, 2026.
AffectedEyemart Express, LLC
Two voice-phishing attacks against Odido customer service that led to unauthorized access and customer-data exfiltration affecting Odido and Ben customers.
AffectedOdido · Ben
An unknown person or people accessed information in TMHP systems over a seven-week interval.
AffectedTexas Medicaid and Healthcare Partnership
A cyberattack in which an unauthorized party compromised the hospital's computer network and information systems.
AffectedNacogdoches Memorial Hospital
Unauthorized activity on Figure systems that included personal data being obtained through queries against loan and loan-inquiry databases.
AffectedFigure Lending LLC · Figure Payments Corporation · Figure Lending Corp. · Figure Markets Credit LLC
Targeted phishing led to unauthorized access to a limited portion of Xsolis's environment from January 20 through January 22, 2026.
AffectedXsolis, Inc.
An unauthorized actor accessed or acquired files from a limited portion of Safetyfirst Systems' environment between January 16 and January 19, 2026.
AffectedSafetyfirst Systems, LLC
An attacker infiltrated the companies' information systems and accessed subscriber-related personal data in October 2024.
AffectedFree Mobile · Free
A threat actor used social engineering to access a Betterment employee account and marketing and operations applications on January 9, 2026.
AffectedBetterment
A Panera Bread incident confirmed by the company and associated with a later-public contact-information corpus.
AffectedPanera Bread
Unauthorized access to a limited number of QualDerm network systems and removal of information stored in those systems.
AffectedQualDerm Partners, LLC
Unauthorized read-only access to benefits-participant data through an application programming interface.
AffectedNavia Benefit Solutions, Inc. · Washington State Health Care Authority
An exfiltration from a French Ministry of Sports information system associated with the Pass'Sport program and a later-public personal-data corpus.
AffectedMinistère des Sports, de la Jeunesse et de la Vie associative
APOIA.se told affected users that a point vulnerability permitted access to a database limited to registration data.
AffectedAPOIA.se
Unauthorized access to a historic file server at the Practice's Hawthorn location.
AffectedLifespan Physician Group of Massachusetts, Inc.
Unauthorized activity in an ancillary service dashboard that SoundCloud contained and investigated.
AffectedSoundCloud
Incident documented by California Attorney General in the retained source snapshot.
AffectedFarmers Insurance
Unauthorized access to NYC Health + Hospitals systems from approximately November 25, 2025 through February 11, 2026, discovered on February 2.
AffectedNew York City Health and Hospitals Corporation
A Suno-confirmed incident involving outdated source code, with a later HIBP corpus whose personal-data scope is not confirmed by Suno.
AffectedSuno, Inc.
Social-engineering-enabled access to Penn development and alumni systems, information theft, and an offensive fraudulent email.
AffectedUniversity of Pennsylvania
Unauthorized access to limited Substack user data, identified and disclosed in February 2026.
AffectedSubstack, Inc.
Unauthorized activity in Unlimited Technology Systems' commercial datacenter and acquisition of files containing patient information.
AffectedUnlimited Technology Systems, LLC
Unauthorized activity affected a specific e-commerce database containing customer accounts across four Canadian Tire Corporation retail banners.
AffectedCanadian Tire · Party City Canada · SportChek · Canadian Tire Corporation, Limited · Mark's
Incident documented by BleepingComputer in the retained source snapshot.
AffectedHarrods
Unauthorized access to MCBS's network and potential unauthorized acquisition of files used for medical billing services.
AffectedMCBS, LLC
Unauthorized access to files on a limited number of Insightin servers through GoAnywhere file-transfer software.
AffectedCoordinated Care of Washington, Inc. · Centene Corporation · Wellcare of Washington, Inc. · Wellcare Health Insurance Company of Washington, Inc. · Insightin Health, Inc.
Incident documented by Workday in the retained source snapshot.
AffectedWorkday
Incident documented by UK National Cyber Security Centre in the retained source snapshot.
AffectedJaguar Land Rover
A backup of the breachforums.hn MyBB user table and forum signing-key material was exposed and later released publicly.
AffectedBreachForums (.hn iteration)
Incident documented by KLM in the retained source snapshot.
AffectedKLM · Air France
Incident documented by TechRadar in the retained source snapshot.
AffectedPandora
Incident documented by BleepingComputer in the retained source snapshot.
AffectedAllianz Life
A historical dataset relating to Canada Goose customer transactions was published online; Canada Goose said it had no indication that its own systems were breached.
AffectedCanada Goose
Phone-based social engineering against an overseas third-party contact centre that connected a Qantas CRM instance to a threat-actor data-extraction tool.
AffectedQantas Airways Limited
Unauthorized access to a shared network and possible access or removal of files maintained by Operation PAR, Boley Centers, and Eleos.
AffectedPersonal Enrichment through Mental Health Services, Inc. · Boley Centers, Inc. · Operation PAR, Inc.
Incident documented by Google Threat Intelligence Group in the retained source snapshot.
AffectedGoogle
Incident documented by BleepingComputer in the retained source snapshot.
AffectedAdidas
Incident documented by BleepingComputer in the retained source snapshot.
AffectedHarrods
Unauthorized access to data maintained on legacy Cerner systems, with activity reported from January 22 through April 1, 2025.
AffectedCerner Corporation · Munson Healthcare
Incident documented by Government of Newfoundland and Labrador in the retained source snapshot.
AffectedPowerSchool
Incident documented by Co-op Group in the retained source snapshot.
AffectedCo-op Group
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedCoinbase
Related customer-data incidents documented by the Hong Kong privacy regulator and IBM in retained source snapshots.
AffectedDior · Chanel · Louis Vuitton
Incident documented by Marks & Spencer in the retained source snapshot.
AffectedMarks & Spencer
Incident documented by Vietnam Airlines in the retained source snapshot.
AffectedVietnam Airlines
Incident documented by CISA in the retained source snapshot.
AffectedSee evidence record
Unauthorized access to insurance-eligibility verification records through a web portal used by some TriZetto healthcare-provider customers.
AffectedTriZetto Provider Solutions
Unauthorized access to a limited portion of Conduent's environment and exfiltration of client-associated files.
AffectedConduent Incorporated · Blue Cross and Blue Shield of Texas · Conduent Business Services, LLC
Incident documented by Brookfield Business Partners in the retained source snapshot.
AffectedCDK Global
Incident documented by NHS England in the retained source snapshot.
AffectedSynnovis · National Health Service
One or more attackers used social engineering to take over Cap emploi adviser accounts and access France Travail job-seeker data.
AffectedFrance Travail · Cap emploi network
Incident documented by Microsoft in the retained source snapshot.
AffectedMicrosoft
Incident documented by UnitedHealth Group in the retained source snapshot.
AffectedUnitedHealth Group · Change Healthcare
Incident documented by CISA in the retained source snapshot.
AffectedSee evidence record
Incident documented by U.S. District Court for the District of Montana in the retained source snapshot.
AffectedAdvance Auto Parts
Incident documented by Ascension in the retained source snapshot.
AffectedAscension
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedAT&T
Incident documented by CrowdStrike in the retained source snapshot.
AffectedMicrosoft · CrowdStrike
Incident documented by U.S. District Court for the District of Montana in the retained source snapshot.
AffectedNeiman Marcus
Incident documented by U.S. District Court for the District of Montana in the retained source snapshot.
AffectedLendingTree · QuoteWizard
Incident documented by Santander in the retained source snapshot.
AffectedSantander
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedLive Nation Entertainment · Ticketmaster
Incident documented by oss-security in the retained source snapshot.
AffectedSee evidence record
Incident documented by Norton Healthcare in the retained source snapshot.
AffectedNorton Healthcare
Incident documented by DP World Australia in the retained source snapshot.
AffectedDP World Australia
Incident documented by Okta in the retained source snapshot.
AffectedOkta
Incident documented by BleepingComputer in the retained source snapshot.
AffectedSony
Incident documented by California Department of Justice in the retained source snapshot.
AffectedProspect Medical Holdings
Incident documented by Retool in the retained source snapshot.
AffectedRetool
Incident documented by Microsoft in the retained source snapshot.
AffectedMicrosoft
Incident documented by Recorded Future News in the retained source snapshot.
AffectedShell
Incident documented by CyberScoop in the retained source snapshot.
AffectedUS Department of Energy
Incident documented by BBC in the retained source snapshot.
AffectedBritish Airways · BBC · Zellis · Boots
Incident documented by Google Cloud Mandiant in the retained source snapshot.
Affected3CX
Incident documented by California Attorney General in the retained source snapshot.
AffectedLos Angeles Unified School District
Incident documented by Office of the Australian Information Commissioner in the retained source snapshot.
AffectedOptus
Incident documented by BleepingComputer in the retained source snapshot.
AffectedActivision Blizzard
Incident documented by Reddit in the retained source snapshot.
AffectedReddit
Incident documented by ION Group in the retained source snapshot.
AffectedION Trading
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
Affected23andMe
Incident documented by MKS Instruments, Inc. in the retained source snapshot.
AffectedMKS Instruments · Applied Materials
Incident documented by Ardent Health Services in the retained source snapshot.
AffectedArdent Health Services
Incident documented by The Boeing Company in the retained source snapshot.
AffectedBoeing
Incident documented by British Library in the retained source snapshot.
AffectedBritish Library
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedCaesars Entertainment
Incident documented by The Clorox Company in the retained source snapshot.
AffectedClorox
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedHCA Healthcare
Incident documented by U.S. Department of the Treasury in the retained source snapshot.
AffectedIndustrial and Commercial Bank of China Financial Services
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedJohnson Controls
Incident documented by Latitude Financial in the retained source snapshot.
AffectedLatitude Financial
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedMGM Resorts
Incident documented by CISA and FBI in the retained source snapshot.
AffectedProgress Software
Incident documented by Northwest Iowa Community College in the retained source snapshot.
AffectedNational Student Clearinghouse
Incident documented by UK Home Office in the retained source snapshot.
AffectedRoyal Mail
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedT-Mobile
Incident documented by CommonSpirit Health in the retained source snapshot.
AffectedCommonSpirit Health
Incident documented by Twilio in the retained source snapshot.
AffectedTwilio
Incident documented by Suffolk County, New York in the retained source snapshot.
AffectedSuffolk County, NY
Incident documented by California Department of Justice in the retained source snapshot.
AffectedSan Francisco 49ers
Incident documented by Cisco Talos in the retained source snapshot.
AffectedCisco
Incident documented by Cloudflare in the retained source snapshot.
AffectedCloudflare
Incident documented by California Attorney General in the retained source snapshot.
AffectedShields Health Care Group
Phishing-enabled compromise traced to September 2020, followed by major network activity and discovery in July 2022.
AffectedSouth Staffordshire Water Plc · South Staffordshire Plc
Incident documented by Microsoft in the retained source snapshot.
AffectedMicrosoft
Incident documented by BleepingComputer in the retained source snapshot.
AffectedSamsung
Incident documented by Continental AG in the retained source snapshot.
AffectedContinental AG
Incident documented by DoorDash in the retained source snapshot.
AffectedDoorDash
Incident documented by Dropbox in the retained source snapshot.
AffectedDropbox
Incident documented by LastPass in the retained source snapshot.
AffectedLastPass
Incident documented by Mailchimp in the retained source snapshot.
AffectedMailchimp
Incident documented by Medibank in the retained source snapshot.
AffectedMedibank
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedNVIDIA
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedRackspace
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedRockstar Games
Incident documented by Toyota Times in the retained source snapshot.
AffectedKojima Industries Corporation · Toyota Motor Corporation
Incident documented by UK National Cyber Security Centre in the retained source snapshot.
AffectedViasat
Unauthorized access to Illuminate's AWS-hosted IO Suite environment using a former employee's still-active privileged access key, followed by student-data exfiltration and destructive activity.
AffectedIlluminate Education, Inc.
Belgian Ministry of Defence is documented in 2 public sources with 5 structured claims.
AffectedBelgian Ministry of Defence
Incident documented by Heise in the retained source snapshot.
AffectedMedia Markt
Incident documented by BleepingComputer in the retained source snapshot.
AffectedAccenture
Incident documented by Electronic Arts in the retained source snapshot.
AffectedElectronic Arts
Incident documented by United States Department of Justice in the retained source snapshot.
AffectedColonial Pipeline
Incident documented by CNA Financial in the retained source snapshot.
AffectedCNA Financial
Incident documented by Health Service Executive in the retained source snapshot.
AffectedIreland HSE
Incident documented by JBS Foods in the retained source snapshot.
AffectedJBS Foods
Incident documented by Kaseya in the retained source snapshot.
AffectedKaseya VSA
Incident documented by SITA in the retained source snapshot.
AffectedSITA
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedT-Mobile
Exploitation of a private beta application to view and download server files, including a Myspace93 password file.
AffectedWindows93
Incident documented by CISA in the retained source snapshot.
AffectedSolarWinds
Incident documented by U.S. Securities and Exchange Commission in the retained source snapshot.
AffectedGoDaddy
A contemporaneously reported SCUF Gaming website compromise and customer incident notification associated by HIBP with a later-verified account-data corpus.
AffectedSCUF Gaming
Try a broader search or clear the current filters.