A recent non-profit data breach has exposed a massive amount of personal information belonging to young job seekers in Brazil. The affected organisation, Gerar, supports youth employment and training programs. Attackers claim to have leaked 546GB of highly sensitive data, raising serious privacy concerns for thousands of individuals. Details of the exposure The leaked files…
The Toys R Us Canada data breach has compromised customer information after attackers gained unauthorized access to company databases. The breach became public when a hacker claimed to possess the retailer’s customer records and leaked them online. The company confirmed the incident and launched an investigation to protect affected customers. Discovery of the Incident Toys…
Hackers claim they breached Getir’s internal systems and leaked sensitive data online. The Getir data breach includes internal repository links, project details, and employee email addresses. Cybercriminals shared the information on a hacking forum, stating that they accessed internal developer environments. The leak does not appear to contain customer data, but cybersecurity experts warn that…
Luxury auction house Sotheby’s has confirmed a major data breach that exposed financial and personal information belonging to clients. The Sotheby’s data breach was detected on July 24, 2025, after investigators found signs of unauthorized data access. The incident highlights the persistent cybersecurity risks facing elite institutions that handle valuable transactions and private customer data.…
A recent American Airlines data breach has been traced back to its regional carrier, Envoy Air. The attack was part of a wider campaign by the Cl0p ransomware group exploiting a zero-day vulnerability in Oracle’s E-Business Suite. Although customer data remained secure, the breach exposed weaknesses in the airline industry’s reliance on third-party software. How…
The Mango third-party breach has exposed customer information linked to a compromised marketing vendor. Spanish fashion retailer Mango confirmed that attackers accessed contact data but not financial or account credentials. The incident highlights the ongoing risk of supply-chain attacks in the retail sector. How the breach occurred The breach originated from one of Mango’s external…
A recent Discord breach has exposed sensitive user data and sparked debate between the company and its third-party vendor, 5CA. Discord claims the incident stemmed from a compromised Zendesk integration managed by 5CA. However, 5CA denies any internal compromise, suggesting the issue may have resulted from user error rather than a platform hack. Details of…
SonicWall confirmed that attackers stole every firewall backup stored in its MySonicWall cloud. The company first claimed fewer than 5% of backups were affected but later admitted the breach reached all customers using the cloud backup feature. Full Scope of the Attack Hackers breached the MySonicWall portal and stole every firewall backup file in the…
A Discord third-party breach leaked government ID photos from over 70,000 users. Attackers targeted Zendesk, a vendor managing customer support and ID verification for Discord. The Scattered LAPSUS$ Hunters group claimed responsibility for the attack. This case highlights the dangers of outsourcing sensitive data handling to external providers. How the Breach Happened Attackers compromised Zendesk,…
The DraftKings credential stuffing breach has exposed sensitive user data after attackers exploited reused passwords across multiple platforms. Security experts warn that this incident highlights how credential abuse continues to be one of the most common and effective cyberattack methods. DraftKings confirmed that a number of customer accounts were compromised through credential stuffing. The attackers…