Thousands of patient records stolen during major ransomware attack disrupting healthcare
Thousands of patient records stolen during major ransomware attack disrupting healthcare
2026 continues the year-over-year growth trend in confirmed disclosures. The list below updates as new breaches are reported by Verizon DBIR partners and major security news outlets.
Thousands of patient records stolen during major ransomware attack disrupting healthcare
Thousands of civil servants passwords exposed since early 2024, including White House linked credentials
Heat-and-power facility breached via private APN, serves ~50,000 residents
24 billion records including usernames, passwords, and URLs from infostealer malware
1M members' bank and personal data breached
Dispensary data exposed via Firebase misconfiguration
1M member bank and personal records breached
Aerospace and defense firm breached by Qilin
Cannabis dispensary data exposed via misconfiguration
Patient data exfiltrated by Storm threat actor
Financial records stolen by Play ransomware group
24B stolen credentials publicly exposed online
100K+ officer and justice professional records leaked
31K business ownership records exposed
Billions of records stolen across 165 breached orgs
Financial PII stolen by Play ransomware group
Billions of records stolen across 165 organizations
Government threat-sharing network breached
100K+ officers and justice staff PII exposed
1M members bank details and PII exposed
Billions of records stolen across 165 organizations
100K+ officer records stolen by ExfilSquad
Researchers observed the novel campaign exploiting unauthenticated guest access to quietly enumerate and exfiltrate exposed data from both platforms. The post Stealthy ‘City-Forum’ Attacks Target Salesforce and ServiceNo