Boston Scientific Still Recovering From Cyberattack

Boston Scientific is still experiencing the aftermath of a cyberattack that caused significant global network disruptions. The medical device company has engaged cybersecurity firm CrowdStrike to assist in the ongoing investigation of the incident.

Berlin Won’t Pay Extortion Group Claiming Data Theft

The Rhysida ransomware group has claimed to have exfiltrated over 5TB of data, which includes personal information and credentials. Authorities in Berlin have stated they will not pay any ransom to the extortion group.

Hasbro Data Breach Exposed Employee Personal Information

The toy and game company Hasbro has disclosed a data breach that resulted from a cyberattack earlier this year. The attack caused disruptions to the company's operations, and the breach has exposed personal information of employees.

Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network

Berlin's state government has confirmed it is the target of an extortion attempt after its state administrative network was compromised in August. The government has stated it will not meet the hackers' demands, and forensic analysis revealed further data exfiltration from the Senate Department for Mobility, Transport, Climate Protection and Environment.

ATF Confirms Cyber Incident After Ransomware Group Claims Attack

The Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) has confirmed a major cyber incident that is being investigated by the Department of Justice. This confirmation follows a claim by a ransomware group that they were responsible for the attack.

Manchester Airports Group says hackers stole travelers' data

The Manchester Airports Group (MAG) has reported a data breach resulting from a cyberattack. Hackers successfully accessed MAG's systems and exfiltrated customer data, specifically information collected during Wi-Fi sign-ups across Manchester, Stansted, and East Midlands airports.

Cybercrooks jet off with Manchester Airports Group customer data

Manchester Airports Group (MAG), the UK's largest airport operator, has suffered a data breach that may have affected up to 8.7 million customers. The nature and extent of the compromised data are still under investigation, but the incident is believed to involve cybercriminals.

Carhartt data breach exposes information of 12.9 million accounts

The ShinyHunters extortion group has published sensitive data from approximately 13 million accounts stolen from the clothing retailer Carhartt. The data breach was first identified earlier this month and subsequently confirmed by data breach notification service Have I Been Pwned.

ATF confirms “major incident” after recent Qilin breach claims

The U.S. Bureau of Alcohol, Tobacco, Firearms and Explosives (ATF) has confirmed a "major incident" involving a system compromise, following claims by the Qilin ransomware gang that they breached the agency. The full scope and impact of the incident are still being investigated.

The State of Ransomware in Education 2026

A report analyzes the state of ransomware attacks in the education sector, based on insights from 226 IT and cybersecurity leaders across 17 countries. The article focuses on organizations that experienced ransomware incidents in the past year.

Boston Scientific discloses 'global disruption' in ongoing cyberattack

Medical device manufacturer Boston Scientific has disclosed a "global disruption" affecting its IT systems due to an ongoing cyberattack. The company is currently investigating the incident and has not provided a timeline for restoring its IT services.

Sensitive Information Exposed in Nutex Health Data Breach

Nutex Health has reported a data breach to the SEC, confirming unauthorized access and exfiltration of sensitive information. The full extent and nature of the compromised data are still under investigation.

Is Cyber Facing an Affordability Crisis?

The article discusses the increasing costs associated with cybersecurity, including breach expenses and defense spending, which are creating an affordability crisis for small businesses. This exposure of smaller organizations poses a significant risk to overall supply chain security.

Hospital operator Nutex Health says data stolen in cyberattack

Nutex Health, a healthcare and services provider, is investigating a cyberattack where an unauthorized third party exfiltrated data from company servers. The extent of the data stolen and its potential impact are currently under investigation.

Hundreds of leaked AWS keys give full control over corporate accounts

Over 9,300 Amazon Web Services (AWS) access keys were publicly exposed between August 2022 and August 2026, and many of them remain active and valid. This exposure grants full administrative control over affected corporate AWS accounts, allowing attackers to access, modify, or delete sensitive data and resources.

SickKids data breach exposes employee and job applicant info

Toronto's Hospital for Sick Children (SickKids) experienced a data breach that exposed personal information of employees and job applicants. The incident originated from a vulnerability in third-party software, but critical clinical systems and patient records remained unaffected.

Healthtech firm CareCloud data breach impacts 3.7 million patients

U.S. healthcare IT company CareCloud has disclosed that a data breach incident suffered earlier this year has impacted over 3.7 million individuals. The extent of the compromised data and the specific methods of intrusion are still under investigation, but the breach has significant implications for patient privacy and data security within the healthcare sector.

US charges Iranian hackers over $3.4 billion intellectual property theft

The U.S. has indicted 17 individuals from Iran, identified as members of the Mabna Institute, for their alleged involvement in a sophisticated intellectual property theft scheme. This operation, spanning several years, targeted numerous American organizations and resulted in the illicit acquisition of valuable data.

One Attacker Has Scraped Both Salesforce and ServiceNow Portals Since 2025

A single attacker, operating under the moniker 'City Forum campaign,' has been scraping data from both Salesforce and ServiceNow customer portals across various industries for over a year. The campaign has been traced back to a single server hosted by a specific provider.

Heights Finance Data Breach Impacts at Least 1.2 Million Individuals

Hackers have accessed sensitive personal and financial information belonging to at least 1.2 million individuals through a breach on a third-party platform used by Heights Finance. The stolen data includes names, addresses, phone numbers, Social Security numbers, and financial details.

SafePal Hardware Wallet Maker Says Flaw Exposed Data of Nearly 40,000 Customers

Hardware wallet maker SafePal has announced a data exposure incident affecting nearly 40,000 customers. An authorization flaw in an order-tracking plug-in inadvertently exposed customer names, email addresses, shipping addresses, phone numbers, and purchase details. The company has begun notifying affected individuals.

What you say during a cyber breach can — and will — be used against you

Communications made during the initial chaotic hours of a cyber incident can have significant legal and financial repercussions long after the attack. What is said and documented can become evidence in litigation and investigations, and simply copying legal counsel does not automatically grant attorney-client privilege.

Pokémon Center data breach exposes customer info, cancels some orders

The Pokémon Center has announced a data breach affecting customers in the UK and Germany. Hackers gained access to customer personal and order information through a third-party logistics provider, CEVA Logistics. This breach has also led to the cancellation of some customer orders.

680,000 Impacted by French Tax Authority Data Breach

Hackers have breached the French tax authority, impacting an estimated 680,000 individuals. The attackers gained access to the system using compromised credentials, leading to the exposure of enterprise and personal tax-related data.