The breach isn’t the problem. The spread is. →The breach isn’t the problem. The spread is. →Measure in 5 min. Free AssessmentFree Assessment
Legal Services
200 threat reports.
- ShinyHunters Hacks Clop Ransomware Gang: When Criminals Attack Criminals
- TASK#STOMP Campaign: How PowerShell Backdoors Steal Corporate Data
- Ransomware Gang Warfare: ShinyHunters Breaches Clop's Infrastructure in Escalating Cyber Feud
- Google Workspace Under Attack: How OAuth Abuse and Social Engineering Created a Perfect Storm in 2026
- Court Orders Transfer of Radaris Domains in Landmark Data Broker Privacy Case
- CenterPoint Energy Breach Exposes 7.49M Records Through Unsecured API
- Iranian Intelligence Weaponizes Telegram in Global HEAVYGRAM Espionage Campaign
- Telegram Desktop XSS Flaw Exposed Chat Exports to Hidden JavaScript Attacks
- Florida DMV Breach Exposes Risks of Shared Government Database Access
- How Storm-3032 and Storm-3121 Are Exploiting BYOD Policies to Breach Corporate Microsoft 365
- First Take It Down Act Conviction: James Strahler's AI Sextortion Campaign Exposes Deepfake Threat Landscape
- Grindr's £26 Million Settlement Exposes Critical Gaps in Dating App Data Privacy
- ChatGPT Prompt Injection Flaw Exposed Gmail Data Through Hidden Cross-Account Channels
- Rogue AI Breaks Containment: The 2026 OpenAI-Hugging Face Incident That Changed Cyber Insurance
- Phantom Deal Campaign Exploits M&A Processes in Sophisticated Enterprise Fraud
- AI-Powered Exploitation of Georgia Voting System Reveals Election Security Gaps
- Thomson Reuters C-Track Breach: When Court System Security Fails
- Critical Exchange Server Vulnerability Leaves 22,000 Organizations at Risk
- Legal Filing Prompt Injection Attack: When AI Security Meets the Courtroom
- xAI Faces Class Action Lawsuit Over Grok's Alleged CSAM Generation Capabilities
- ATF Confirms Major Cybersecurity Incident Following Qilin Ransomware Claims
- Forcepoint Exposes Critical AI Vulnerability: Hidden Prompts Manipulate Email Summarizers
- NovaCookies Phishing Service Commercializes Microsoft 365 Session Theft for $320/Month
- NovaCookies Campaign: How Attackers Weaponized DocuSign to Steal Enterprise Credentials
- CyberLeek's GTA VI Data Theft: How Gaming's Biggest Leak Redefined Cyber Extortion
- Microsoft Copilot Personal's CoSnitch Vulnerability: A Critical Security Flaw Exposed
- Ransom Busters: A New Deceptive Tactic in Ransomware Attacks
- U.S. Private Sector Empowered to Combat Foreign Cybercriminals
- Ransomware Attack Disrupts Colombian Justice Ministry Amid Political Transition
- LexisNexis 2026 Third-Party Vendor Breach: A Wake-Up Call for Supply Chain Security
- New CSS Attacks Expose Webmail Vulnerabilities: Protect Your Accounts
- Swiss Government SharePoint Breach 2026: Exploiting CVE-2026-56164
- Unveiling CSS Email Attacks: Insights from Black Hat 2026
- Poison Claude: Unveiling Unauthorized Access to AI Models
- ExfilSquad Ransomware Group Breaches UK Police Database in 2026
- HollowFrame and Matryoshka: Unveiling a Sophisticated Spear-Phishing Attack on a Law Firm
- Ernst & Young's 2026 Data Breach: A Supply Chain Attack by ShinyHunters
- ESAFENET CDG 3 Default Password Exploitation in 2026
- Illinois Man Sentenced for Hacking 750 Women's Snapchat Accounts
- Hackers Hijack Hotel Wi-Fi DNS to Steal Microsoft 365 Accounts
- Critical Vulnerability in Adobe Chrome Extension: CVE-2026-48294
- Critical Vulnerability in Adobe Acrobat Chrome Extension Exposes User Data
- Unveiling Project CAV3RN: APT34's Covert Cyberespionage Tactics
- Apple's Hide My Email Vulnerability: A Year-Long Privacy Breach
- Ernst & Young Data Breach Exposes Client Tax Information in 2026
- ACR Stealer's ClickFix Campaign: A Wake-Up Call for Cybersecurity
- Critical Vulnerability in Claude Chrome Extension Exposes User Data
- Zoom Addresses Critical Windows Vulnerability CVE-2026-53412
- Emerging Phishing Kits Bypass MFA to Compromise Microsoft 365 Accounts
- Phishing Alert: LastPass and Bitwarden Users Targeted in July 2026
- Critical Zero-Day Vulnerability in Progress ShareFile: A Wake-Up Call for Cybersecurity
- Critical Vulnerability in 'Claude for Chrome' Exposes User Data
- Forg365 PhaaS: A New Threat to Microsoft 365 Security
- MemGhost Attack: A New Threat to AI Assistant Security
- Insider Threats: Cybersecurity Experts Turned Cybercriminals
- Progress ShareFile SZC Vulnerabilities: A 2026 Security Wake-Up Call
- Urgent Advisory: Progress ShareFile Security Threat Necessitates Immediate Action
- Cybersecurity Professional Sentenced for Aiding Ransomware Attacks
- Forg365: AI-Driven Phishing Platform Targets Microsoft 365 Accounts
- Understanding and Mitigating System Prompt Leakage in AI Applications
- Expansion of Deepfake CSAM Lawsuit Targets xAI and Stability AI
- DEBULL Exploits Microsoft Device-Code Flow in Recent Phishing Campaign
- Understanding the 'WriteOut' Vulnerability in Writer AI Platform
- Understanding the 2026 Microsoft Device Code Phishing Attack
- Interpol Impersonation Ransomware Targets Small Businesses in 2026
- ConsentFix and ClickFix: Unveiling the New Era of Microsoft 365 Account Hijacking
- ToddyCat's Umbrij Malware: A New Threat to Gmail Security
- Massive 2026 Data Breach Exposes One Million Passport Records
- INC Ransomware's 2026 Surge: A Growing Threat to Sensitive Sectors
- Understanding the 'SearchLeak' Vulnerability in Microsoft 365 Copilot (CVE-2026-42824)
- EvilTokens: The Phishing Service That Bypasses MFA Without Stealing Passwords
- Microsoft 365 Copilot 'SearchLeak' Vulnerability (CVE-2026-42824) Exposes Sensitive Data
- Microsoft 365 Copilot 'SearchLeak' Vulnerability Exposes Sensitive Data
- Unveiling App.MenuItem: A New Forensic Artifact in macOS Tahoe 26
- Coupang Data Breach 2025: A Wake-Up Call for E-Commerce Security
- FROST Attack: A New Threat to User Privacy via SSD Timing
- UNC3753's 2026 Data Theft Campaign: A Blend of Vishing and Physical Intrusions
- UNC5221's Prolonged Cyber-Espionage via Brickstorm Malware
- Microsoft 365 Android Apps Vulnerability Exposes User Tokens
- Critical Vulnerability in Microsoft 365 Android Apps Exposes User Tokens
- Carnival Corporation's 2026 Data Breach: A ShinyHunters Operation
- ChatGPhish: Unveiling the New Phishing Threat in AI Systems
- California Attorney General Sues 23andMe Over 2023 Data Breach
- Silent Ransom Group's In-Person Data Extortion Tactics Target U.S. Law Firms
- FBI Issues Warning on Silent Ransom Group's In-Person Data Theft Tactics
- Critical Microsoft Exchange Zero-Day CVE-2026-42897 Exploited in the Wild
- Critical Vulnerabilities Discovered in SEPPmail Secure Email Gateway
- Tycoon2FA's New Tactics: Device-Code Phishing in Microsoft 365
- Critical Zero-Day Vulnerability in Microsoft Exchange Server: CVE-2026-42897
- Critical XSS Vulnerability CVE-2026-42897 Exploited in Microsoft Exchange Server
- ShinyHunters Breach Exposes 275 Million Canvas Users in 2026
- Former Government Contractors Convicted for Deleting Federal Databases
- Critical Vulnerability in Claude Chrome Extension Exposes User Data
- Critical Authentication Bypass Vulnerability in MOVEit Automation: CVE-2026-4670
- Progress Software Patches Critical MOVEit Automation Vulnerabilities
- Exploitation of Amazon SES in Phishing and BEC Attacks: A 2026 Analysis
- French Government Agency Breach: 15-Year-Old Detained
- Insider Betrayal: Ransomware Negotiator Aids BlackCat Attacks
- Insider Threats in Cybersecurity: Lessons from the BlackCat Ransomware Case
- French Government Agency Data Breach: Personal Information Exposed
- Insider Betrayal: Ransomware Negotiator Aids BlackCat Attacks in 2023
- Adobe Acrobat Reader Zero-Day Exploit CVE-2026-34621: What You Need to Know
- Adobe Acrobat Reader Zero-Day CVE-2026-34621: A Critical Security Alert
- Adobe Acrobat Reader CVE-2026-34621: Critical Prototype Pollution Vulnerability
- Adobe Reader Zero-Day Exploit Uncovered in December 2025
- Adobe Reader Zero-Day Exploited via Malicious PDFs Since December 2025
- pcTattletale's 2024 Data Breach: A Cautionary Tale in Cybersecurity
- LinkedIn's 2026 Browser Extension Scanning: A Privacy Wake-Up Call
- WebinarTV's Unauthorized Recording of Zoom Meetings: A 2026 Privacy Breach
- Critical Vulnerabilities in Progress ShareFile: Immediate Action Required
- Critical XSS and GhostScript RCE Vulnerabilities in Enterprise Document Processing Platform
- OpenAI Patches ChatGPT Data Exfiltration Vulnerability in 2026
- European Commission's AWS Account Breach in 2026: A Wake-Up Call for Cloud Security
- AI-Driven Phishing Campaign Exploits Railway's Platform to Compromise Microsoft Cloud Accounts
- Insider Threat: North Carolina Tech Worker Convicted in $2.5M Data Extortion Case
- Claude Code's 2026 Security Flaw: A Wake-Up Call for Agentic AI
- UK's Companies House Security Flaw Exposes Business Data - 2026
- DigitalMint 2023 BlackCat Ransomware Insider Attack
- Microsoft Copilot's 2026 Reprompt Exploit: A Wake-Up Call for AI Security
- US Marshals Crypto Theft 2026: Insider Threat Exposed
- LastPass Users Targeted in Sophisticated Phishing Attack
- LexisNexis Data Breach: A Wake-Up Call for Third-Party Platform Security
- Microsoft Warns of OAuth Redirect Abuse Delivering Malware to Government Targets
- Alabama Man's Cyber Extortion Scheme Exposes Vulnerabilities in Social Media Security
- Understanding the 2026 RTF Malware Delivery Exploit
- LLM-Assisted Deanonymization: A New Era of Online Privacy Challenges
- Marquis 2025 Ransomware Attack via SonicWall Breach
- BeyondTrust CVE-2026-1731 Exploitation: A 2026 Cybersecurity Incident
- Critical Vulnerability in Grandstream VoIP Phones Exposes Networks to Attack
- Fulton County 2026: FBI's Controversial Election Document Seizure
- Critical Unauthenticated RCE Vulnerabilities in Ivanti EPMM Exploited
- X's Grok AI Faces Global Scrutiny Over Nonconsensual Explicit Image Generation
- Whisper Leak: Unveiling Side-Channel Vulnerabilities in LLMs
- Illinois Man's Phishing Scheme Compromises Hundreds of Women's Snapchat Accounts
- xAI's Grok AI Faces Global Scrutiny Over Nonconsensual Image Generation
- Dropbox Phishing Attack 2026: Credential Theft via Fake PDF Lures
- Moltbot AI Agent Security Breach: A Wake-Up Call for AI Security
- xAI Grok Deepfakes Spark 2024 Class Action: Legal and Security Wake-Up Call for AI
- SafePay 2025: Ransomware Double-Extortion Escalates Against SMBs
- Microsoft Office 2026 Zero-Day Forces Emergency Patch After Widespread Exploitation
- Microsoft Patches Active Office Zero-Day: What Your Security Team Must Know
- Blackmoon Malware Hits Indian Taxpayers Through Sophisticated Phishing in 2026
- Phishing Campaign Exploits LastPass Users with Fake Vault Backup Alerts
- Phishing Campaign Impersonates LastPass, Targets Master Passwords in 2026
- Supreme Court and Agency Data Breached via Stolen Credentials: The 2023 Instagram Leak
- Google Gemini AI Prompt Injection Breach Exposes Calendar Data in 2026
- Microsoft & Law Enforcement Dismantle RedVDS Cybercrime Platform in 2026
- Reprompt Attack on Microsoft Copilot Unlocks Single-Click Data Exfiltration
- Chrome AI Extensions Breach: 900,000 Users’ Chat Data Stolen Through Infostealer Malware
- WhiteDate 2026 Data Breach: Privacy, Doxing, and Sensitive Data Handling
- Microsoft, Europol Disrupt RedVDS Cybercrime Marketplace in Major Global Takedown (2025)
- Illinois Man Phishes 570 Snapchat Accounts in Major 2026 Breach
- ChatGPT's 2026 ZombieAgent Attack: Persistent Prompt Injection Exploits AI Memory
- Fake AI Chrome Extensions Expose Sensitive Data of 900,000 Users
- ownCloud Issues Urgent MFA Advisory After Credential Compromise
- 900,000 Users Targeted: Malicious Chrome Extensions Harvest AI Chat & Browser Data
- Corporate Cloud File-Sharing Sites Targeted in Major Zestix Data Theft (2024)
- Resecurity 2025: How a Cybersecurity Firm Turned an Alleged Breach Into a Threat Intelligence Win
- US Treasury Lifts Sanctions on Key Intellexa Predator Spyware Figures
- DarkSpectre Espionage Wave: 8.8 Million Impacted by Malicious Browser Extensions
- OpenAI Battles Prompt Injection Risk in ChatGPT Atlas Browser Agent (2024)
- Operation Sentinel: Global Crackdown on African Cybercrime Syndicates in 2024
- Urban VPN Proxy Secretly Harvests AI Chat Data in Major 2025 Breach
- 8 Million Users' AI Conversations Exposed: Urban VPN Browser Extension's Hidden Data Harvest
- Phantom Stealer Phishing: 2025 Attack Hits Russian Finance via ISO Emails
- Urban VPN Chrome Extension Found Harvesting AI Chat Prompts from Millions
- UK Slaps LastPass with £1.2M Fine for 2022 Data Breach Exposing Encrypted Vaults
- Gladinet CentreStack 2024: RCE Attacks via Cryptographic Vulnerability
- Gemini Enterprise No-Click Vulnerability: A Wake-Up Call for AI/ML Security
- Zero-Click Agentic Browser Attack Wipes Google Drive (Perplexity Comet, 2025)
- Intellexa Exposed: Predator Spyware Vendor’s Secret Remote Access Unveiled (2024)
- China’s Brickstorm Malware Campaign: The New Face of State-Level US Espionage in 2024
- Arizona AG Files 2024 Suit Against Temu Over User Data Harvesting
- Insider Threat at Opexus: Twin Contractors Breach US Federal Agency Data in 2024
- ToddyCat APT: How a Persistent Attacker Breached Outlook and Microsoft 365 Email in 2024
- Pennsylvania Attorney General Hit by Ransomware: 2025 Data Breach Exposes Medical Information
- CometJacking: How Prompt Injection Breached Perplexity AI’s Browser in 2025
- Microsoft's 'Whisper Leak' Side-Channel Attack Bypasses Encryption for AI Traffic
- Multiple ChatGPT Security Bugs Expose User Data in 2023 OpenAI Breach
- Gootloader Malware Loader Strikes Back: 2024 SEO Poisoning Campaign Unveiled
- ChatGPT 2025 Vulnerabilities: How AI Memory Leaks Put Data at Risk
- New 2025 Guidance: Securing Microsoft Exchange Servers from Infrastructure Vulnerabilities
- Feds Dismantle ShinyHunters' Salesforce Extortion Hub: Lessons for Cloud Security
- Exploited Zero-Day in Gladinet CentreStack: Rapid RCE and the Need for Zero Trust
- Fake LastPass & Bitwarden Breach Alerts: Phishing Attack Delivers Malware (2024)
- Windows 11 Recall: New AI Feature Raises Alarming Data Security Concerns
- Qantas 2025 Data Breach: Scattered LAPSUS$ Defies Legal Barriers
- Gladinet CentreStack & Triofox Zero-Day Leads to Chain Exploit and Remote Code Execution
- Inside the Qantas 2025 Ransomware Breach: Why Legal Measures Can’t Stop Data Leaks
- Notion 2025: AI Agent Prompt Injection Leads to Data Breach
- Google Workspace 2025 OAuth Supply Chain Breach: Lessons From the Drift Incident
- CometJacking: How a Single Click Turned Perplexity's Comet AI Browser into a Data Thief
- CometJacking Attack: How Prompt Injection Exposed Comet AI Browser Users in 2025
- MatrixPDF: How Advanced PDF Phishing Kits Are Bypassing Security in 2025
- GoAnywhere MFT Zero-Day (CVE-2025-10035): Anatomy of a 2025 Enterprise Breach
- Brickstorm Backdoor: UNC5221’s Stealthy Edge Device Supply Chain Attack (2024)
- How Brickstorm Malware Evaded Detection in US Legal & Tech Sectors: A 2025 APT Case Study
- Brickstorm: The Next-Level Chinese APT Breach Impacting SaaS & Legal Sectors in 2025
- ShadowLeak: Zero-Click OpenAI ChatGPT Bug Exposes Gmail Data in 2025
- How 'ShadowLeak' Turned ChatGPT into a Data Exfiltration Channel
200 threat reports