A large-scale Fortinet credential campaign has reportedly exposed access data associated with tens of thousands of VPN and firewall devices across the globe. Security researchers say the operation targeted internet-facing Fortinet systems and collected credentials tied to major corporations, government agencies, and critical infrastructure organizations. The findings highlight the continuing value of network edge devices…
Kodak has confirmed that it experienced a cybersecurity incident after the ShinyHunters extortion group claimed responsibility for stealing company data. The announcement follows reports that the threat actor attempted to pressure the company by publishing details of the alleged breach. The incident adds Kodak to a growing list of organizations targeted by cybercriminal groups that…
Security researchers have uncovered a massive collection of exposed login records that could give cybercriminals access to accounts across the internet. The discovery involves dozens of datasets containing billions of credentials gathered from infostealer malware, previous data breaches, and other compromised sources. Researchers say the exposed information includes usernames, passwords, and login URLs tied to…
A massive dataset allegedly containing information on 5.4 million Swedish citizens has appeared on a cybercrime forum. The seller claims the records came from a compromised data provider. Researchers who reviewed samples have confirmed that the information appears genuine. The discovery has triggered fresh concerns about privacy and data security in Sweden. The country maintains…
An iRhythm data breach has exposed patient information after hackers compromised third-party business applications used by the cardiac monitoring company. The healthcare technology provider disclosed the incident in a filing with the U.S. Securities and Exchange Commission and confirmed that attackers obtained data stored within externally hosted systems. While iRhythm says the intrusion did not…
A Nintendo data breach claim has surfaced after a threat actor demanded $2 million to prevent the release of allegedly stolen corporate information. The group, known as ShadowByte$, claims it obtained nearly a decade of employee-related records and internal company documents. Nintendo has not confirmed the alleged breach. However, researchers who reviewed sample files reported…
An Infinite Campus breach exposed data linked to more than 137,000 user accounts after the cybercrime group ShinyHunters published information it allegedly stole during an extortion campaign. The incident affects one of the largest student information system providers in the United States and highlights the growing threat facing education technology platforms. According to reports, attackers…
A new Sysco data breach claim has emerged after the cybercrime group ShinyHunters alleged it stole 61 million records linked to the food distribution giant. The threat actor recently listed the company on its leak site and claimed to possess a massive dataset containing customer and business information. The allegations have drawn attention because Sysco…
A new Kodak data breach claim has surfaced after the cybercrime group ShinyHunters alleged it gained access to millions of customer records. The threat actor recently added Kodak to its leak site and threatened to release the stolen information unless its demands are met. The incident has attracted attention across the cybersecurity community because of…
A Council of Europe breach claim has raised concerns about the security of sensitive employee and payroll information. The cybercrime group ShinyHunters alleges it stole hundreds of gigabytes of data from the organization and exposed a large collection of personnel records. The claim has not been independently confirmed by the Council of Europe. However, security…