Cloud Imperium Games, the developer behind Star Citizen, disclosed a Star Citizen data breach that exposed limited user account information. The company detected unauthorized access to backup systems in January and launched an internal investigation. While attackers accessed some personal data, the developer confirmed that passwords and payment information were not compromised. How the Breach…
The University of Hawaii Cancer Center ransomware attack exposed sensitive personal data belonging to nearly 1.2 million individuals. University officials confirmed that attackers breached research servers and accessed historical datasets containing Social Security numbers and other identifiers. The incident began in August 2025 but the center disclosed the full scope months later after investigators completed…
Qilin ransomware breach reports have placed French industrial supplier LISI Group in the spotlight. The cybercrime gang claims it infiltrated the company’s systems and exfiltrated sensitive internal data. The attackers posted the alleged breach on their dark web leak site, threatening to publish stolen files if demands are not met. The incident highlights the continued…
The ManoMano data breach has impacted approximately 38 million customers after attackers gained access through a compromised third-party service provider. The European DIY marketplace confirmed that unauthorized actors accessed customer information linked to its external customer support partner. The incident triggered notifications across multiple countries and raised fresh concerns about third-party security risks. ManoMano operates…
A significant UFP Technologies data breach has forced the medical device manufacturer to isolate parts of its IT infrastructure after detecting unauthorized network activity. The company confirmed that attackers stole and potentially destroyed internal data during the incident. UFP disclosed the cyberattack in a regulatory filing and launched a full investigation to determine the scope…
A massive dataset linked to CarGurus has surfaced online after the ShinyHunters hacking group reportedly followed through on a failed extortion attempt. The CarGurus data breach involves approximately 12.4 million records, now circulating publicly after negotiations between the attackers and the company allegedly collapsed. The release raises renewed concerns about large-scale data theft, public leaks,…
Optimizely has confirmed a data breach after attackers used a vishing campaign to gain access to internal systems. The Optimizely data breach did not involve ransomware or malware deployment. Instead, attackers relied on social engineering to trick employees into revealing credentials. This incident highlights how voice-based phishing continues to bypass technical safeguards. Even companies with…
A new extortion threat is unfolding in the Netherlands after the cybercriminal group ShinyHunters claimed responsibility for a large-scale breach involving telecom provider Odido. The group is now threatening to publish stolen customer data unless its demands are met. The ShinyHunters Odido data leak threat has raised serious concerns about identity theft, financial fraud, and…
The ShinyHunters Mercer Beacon data breach has surfaced after the hacking group claimed it stole millions of records from two U.S. investment advisory firms. The group alleges it exfiltrated sensitive corporate and client data from Mercer Advisors and Beacon Pointe Advisors. If verified, the breach could expose a significant volume of personally identifiable information and…
More than 600 FortiGate firewalls were compromised in just five weeks in what investigators describe as an AI-assisted FortiGate breach. The campaign did not rely on zero-day exploits or advanced malware. Instead, the attacker combined basic security weaknesses with commercial AI tools to scale the operation globally. The incident demonstrates how artificial intelligence can amplify…