139 results found
ShinyHunters is actively extorting universities after exploiting an unpatched Oracle PeopleSoft zero-day vulnerability. The attacks have been ongoing...
MyPillow, a US-based retail company, has been listed on a ransomware gang's leak site, with the threat actors claiming to have stolen private data. Th...
In June 2026, retailer JCPenney and associated brands were targeted in a ShinyHunters 'pay or leak' extortion campaign. The breach exposed 368,418 rec...
Fortinet, a global cybersecurity company, is the target of a sweeping credential-harvesting campaign affecting over 30,000 of its devices across nearl...
In June 2026, fashion retailer Ralph Lauren was targeted in a ShinyHunters 'pay or leak' extortion campaign. The group published hundreds of gigabytes...
A zero-day vulnerability in Oracle's enterprise resource planning (ERP) software was exploited by the threat actor group ShinyHunters, disproportionat...
American Tower, a telecommunications tower infrastructure company, suffered a data breach in June 2026 as part of a ShinyHunters 'pay or leak' extorti...
The NPM software supply chain was targeted by a Rust-written malware campaign named IronWorm, disclosed in June 2026. The campaign specifically target...
A China-linked espionage group compromised North American medical, academic, and military research networks for over a year, exfiltrating sensitive re...
Meta confirmed a vulnerability in an AI tool that led to unauthorized access to over 20,000 Instagram accounts. The breach was publicly disclosed in J...
Grafana Labs, a US-based technology company, confirmed a data breach resulting from the TanStack supply chain attack. The breach was publicly disclose...
Udemy, an online training company headquartered in the United States, suffered a data breach in April 2026 following a 'pay or leak' extortion attempt...