The Workday data breach has been confirmed after attackers gained access to a third-party customer relationship management platform. The incident forms part of a broader campaign against Salesforce environments, underscoring how third-party systems can create major risks. While Workday’s internal systems remain secure, exposed business contacts could still fuel future phishing attempts. How the Breach…
The WestJet data breach has exposed sensitive details of passengers, including travel documents and booking records. The Canadian airline confirmed the cyberattack, stressing that no payment details were involved. What Hackers Accessed The attack began on June 13 and gave criminals access to personal information. Stolen records included passenger names, contact details, dates of birth,…
United Health hack affected about 192.7 million individuals. The cyberattack on Change Healthcare is now the largest healthcare data breach in U.S. history. Officials confirmed that stolen data includes health identifiers, diagnoses, billing codes, and Social Security numbers. What Happened In early 2024, hackers linked to the BlackCat ransomware group infiltrated Change Healthcare’s systems. The…
Italy hotel data breach has rocked the hospitality sector, with nearly 100,000 identity documents leaked online. The breach has triggered urgent warnings from authorities and raised concerns over guest safety. Details of the Breach Between June and August 2025, a hacker known as “mydocs” infiltrated hotel systems across Italy. The intrusions targeted at least ten…
Marks & Spencer online shop back online and fully operational after almost four months of disruption caused by a cyberattack. The retailer has restored full service, including Click & Collect, next-day delivery, and in-store returns, marking a significant milestone in its recovery. Full Service Restoration After weeks of uncertainty, Marks & Spencer has announced that…
A reported Kimsuky data breach has allegedly exposed sensitive internal information tied to the North Korean hacking group. Cybersecurity researchers claim the leak contains tools, operational details, and possibly identities linked to the group’s members. Alleged Breach Details The breach reportedly stems from a compromise of systems associated with Kimsuky, a North Korean state-backed cyber-espionage…
The Dutch National Cyber Security Centre (NCSC) confirmed that attackers exploited a Citrix NetScaler zero-day vulnerability (CVE-2025-6543) to breach several critical organizations. These intrusions occurred silently, with threat actors removing traces of their presence. About the Vulnerability CVE-2025-6543 stems from a memory overflow flaw in NetScaler ADC and NetScaler Gateway devices. When configured as a…
The Connex Credit Union data breach has impacted 172,000 members, exposing highly sensitive personal and financial details. The breach occurred between June 2 and June 3, 2025, when attackers accessed and possibly downloaded files containing customer information. Connex discovered the incident on June 3 and confirmed the scope by July 27. Sensitive Data Compromised The…
Google confirmed a data breach affecting a corporate Salesforce instance that stored information on potential Google Ads customers. This insiders-only incident exposed basic business contact details and internal notes, raising serious concerns about enterprise data protection. Threat Actors and Breach Mechanics Threat actors known as ShinyHunters conducted the attack. They accessed Google’s Salesforce instance and…
Cybersecurity experts discovered that more than 1.2 million medical devices are exposed and accessible to hackers online. This alarming discovery highlights how critical healthcare data and systems have become an easy target for attackers. How Devices Became Vulnerable Cybersecurity researchers from Modat performed an extensive internet scan. They identified over 70 types of misconfigured medical…