BreachCase
HomeSearchMy BreachcaseAbout
BreachCase

Breach data is aggregated from public sources and analyzed using AI. Information may not be fully accurate.

About

Data Breach Intelligence

AI-powered tracking of data breach incidents. Stay informed and stay alert.

Recent Breaches

View all

npm Supply Chain Malware Attack 2026

technology

The npm ecosystem was targeted by a supply chain malware attack involving malicious packages that propagated in a worm-like manner. The attack aimed t...

2026-05

Trellix 2026 Source Code Breach

technology|United States

Trellix, a cybersecurity company, confirmed a breach involving unauthorized access to a portion of its source code repository. The incident was recent...

2026-05

Cursor Extension Flaw Exposes Developer API Keys

technology|United States

Cursor, a developer-focused code editor, experienced a security flaw in its extension system that allowed malicious extensions to steal API keys and s...

2026-05

NGate Malware Abuses HandyPay App for NFC Fraud in Brazil 2026

finance|Brazil

A new wave of NFC fraud in Brazil is fueled by the NGate malware, which abuses the legitimate HandyPay Android app to steal contactless payment card d...

2026-05

Thomson Reuters 2026 SSN Exposure Lawsuit

technology|United States

Thomson Reuters, a multinational technology and information services company, is facing a class-action lawsuit filed on 2026-05-01 in the U.S. Distric...

2026-05

Malicious npm Dependency Targets Crypto Wallets via AI Commit

technology

A malicious npm dependency was discovered that is linked to an AI-assisted code commit, targeting cryptocurrency wallets. The attack exploits the soft...

2026-05

Lightning AI 2026 Supply Chain Attack Credential Theft

technology|United States

Lightning AI, a technology company, suffered a supply chain attack when threat actors compromised the popular Python package Lightning on PyPI. Two ma...

2026-05

Browser Extensions Selling User Data 2026

technology

Dozens of browser extensions have been found to openly sell user data, as disclosed in their privacy policies. The affected organizations are the deve...

2026-05

Malicious Chrome Extensions Campaign Exposes User Data

technology|United States

A campaign involving 108 malicious Chrome extensions compromised user data by stealing browser sessions and Google account information, while also inj...

2026-05

Lazarus Group 2026 macOS ClickFix Campaign

technology|North Korea

The Lazarus Group, a North Korean state-sponsored threat actor, is targeting macOS users in a campaign leveraging the ClickFix technique for initial a...

2026-05

Facebook 2026 AccountDumpling Phishing Campaign

technology|United States

Facebook, a technology company, was targeted in a phishing campaign that compromised approximately 30,000 user accounts. The operation, codenamed Acco...

2026-0530.0K records

APT28 Router DNS Hijacking Campaign 2026

government|United Kingdom

The United Kingdom Government, through its National Cyber Security Centre (NCSC), disclosed a campaign by Russian state-sponsored threat actor APT28 t...

2026-05