news
72M Accounts Allegedly Exposed in Under Armour Data Breach
Under Armour is investigating claims that a dataset tied to roughly 72 million customer records was posted online after an extortion attempt linked to the Everest ransomware group, raising risks of targeted phishing and account takeover attempts even as the company says it has found no evidence that passwords or payment systems were affected.What Happened…
Read MoreAT&T Settlement: Claims Closed, Up to $7.5K Combined
AT&T’s proposed $177,000,000 data breach settlement remains pending final court approval as of August 29, 2026. The combined class action covers two data incidents announced in 2024 involving personal information and customer call and text metadata.AT&T Settlement Status — August 29, 2026Eligible class members who submitted claims by December 18, 2025 could receive compensation for…
Read MoreMatch Group Hit by 10M Dating Record Leak
What Happened in the BreachMatch Group said it is investigating a security incident after the ShinyHunters extortion group claimed it obtained more than 10 million records tied to Match Group dating services, including Hinge, OkCupid, and Match.com. Match Group told media outlets it moved quickly to terminate unauthorized access and said it has not seen…
Read More1.4TB Of Alleged Nike Data Posted Online Sparks Investigation
Nike is investigating a potential cybersecurity incident after the extortion group WorldLeaks claimed it stole and leaked about 1.4TB of internal files tied to the sportswear giant, a case that could expose sensitive product and factory documentation even if customer records remain unaffected.What Happened in the BreachWorldLeaks, an extortion crew that posts victims on a…
Read MoreCrunchbase Hit by Massive 2M Record Data Leak
Crunchbase confirmed a cybersecurity incident after the extortion group ShinyHunters claimed it stole company documents and posted a tranche of data online, part of a broader wave of social engineering intrusions tied to single sign on account takeovers.Crunchbase told SecurityWeek it detected a threat actor exfiltrated certain documents from its corporate network, said business operations…
Read MoreDHS Data Leak Reveals 4k ICE Identities
Personal details tied to about 4,500 Immigration and Customs Enforcement and Border Patrol personnel were reported as leaked to the ICE List website, an episode that has intensified a U.S. debate over privacy, transparency, and the safety of federal officers.What Happened in the 4,500 ICE Names Leak Data BreachThe ICE List website and multiple news…
Read MoreOracle Breach: Ransom Demands Keep Coming Months Later
What Happened in the Oracle E-Business Suite Hack? A sprawling extortion campaign tied to the CL0P brand has targeted organizations that run Oracle’s E-Business Suite (EBS), with attackers claiming they stole data from victims’ EBS environments and then pressuring executives for payment. The campaign surfaced publicly in late September 2025 and continued into January 2026, with…
Read MoreBrightspeed Breach: 1M Customers on Edge
What HappenedU.S. fiber broadband provider Brightspeed opened an internal cybersecurity investigation in early January 2026 after a criminal group, Crimson Collective, claimed it accessed company systems and stole sensitive customer data affecting more than 1 million individuals. The group made the allegation public on January 4, 2026 via Telegram and shared screenshots and small data…
Read More17.5M Instagram Leak: The Reset Email You Must Avoid
What Happened in the Instagram Breach? In early January 2026, a threat actor known as “Solonik” posted a dataset titled “INSTAGRAM.COM 17M GLOBAL USERS — 2024 API LEAK” on a dark-web marketplace. The data reportedly covered about 17.5 million Instagram accounts and included usernames, names, email addresses, phone numbers, and some partial physical addresses.Shortly after…
Read MoreLedger Breach: Did Your Name And Address Get Exposed?
What HappenedIn early January 2026, hardware wallet maker Ledger warned that a data breach involving unauthorized access to the Global-e platform, its e-commerce and payment provider, exposed the personal details of some Ledger customers who purchased products through Ledger’s online shop.Ledger said the incident involved unauthorized access to order data stored in Global-e systems and…
Read More