Northrop Grumman (Vendor)
Defense program documents and 180K employee records exposed via subcontractor email compromise
Every confirmed data breach we've indexed across 4682+ incidents from healthcare, finance, technology, government, retail, and education. Sourced from Verizon DBIR, public disclosure feeds, and major security news outlets. Updated automatically.
Defense program documents and 180K employee records exposed via subcontractor email compromise
420K government contract records from Canadian IT services firm exposed in supply chain attack
222,762 records exposed — Email addresses, IP addresses, Passwords, Usernames
340K customer records from loyalty program and online orders exposed via web app vulnerability
New Trivy Docker images 0.69.5 and 0.69.6 compromised with TeamPCP infostealer, impacting CI/CD scans
A financially motivated data theft and extortion group is attempting to inject itself into the Iran war, unleashing a worm that spreads through poorly secured cloud services and wipes data on infected systems that use Ir
1.6M enterprise customer records from S/4HANA Cloud exposed via authentication bypass
272K armed forces personnel payroll records exposed via compromised third-party payroll system
6M records from 140K+ tenants allegedly accessed via authentication bypass in legacy systems
580K citizen records from health and education systems exposed via MOVEit successor exploit
920K citizen records from provincial MyAlberta Digital ID system exposed
Apple Multiple Products Buffer Overflow Vulnerability — Apple Safari, iOS, watchOS, visionOS, iPadOS, macOS, and tvOS contain a buffer overflow vulnerability that could allow the processing of maliciously crafted web con
1.4M Aeroplan member records compromised including travel history and passport data
Apple Multiple Products Improper Locking Vulnerability — Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain an improper locking vulnerability that could allow a malicious application to cause unexpected change
The U.S. Justice Department joined authorities in Canada and Germany in dismantling the online infrastructure behind four highly disruptive botnets that compromised more than three million hacked Internet of Things (IoT)
Craft CMS Code Injection Vulnerability — Craft CMS contains a code injection vulnerability that allows a remote attacker to execute arbitrary code.
Laravel Livewire Code Injection Vulnerability — Laravel Livewire contain a code injection vulnerability that could allow unauthenticated attackers to achieve remote command execution in specific scenarios.
Apple Multiple Products Classic Buffer Overflow Vulnerability — Apple watchOS, iOS, iPadOS, macOS, visionOS, and tvOS contain a classic buffer overflow vulnerability which could allow a malicious application to cause une
Cisco Secure Firewall Management Center (FMC) Software and Cisco Security Cloud Control (SCC) Firewall Management Deserialization of Untrusted Data Vulnerability — Cisco Secure Firewall Management Center (FMC) Software a
950K patient appointment and billing records exposed via compromised scheduling vendor
Customer firewall configurations and 280K support records exposed via compromised support portal
Microsoft SharePoint Deserialization of Untrusted Data Vulnerability — Microsoft SharePoint contains a deserialization of untrusted data vulnerability that allows an unauthorized attacker to execute code over a network.
1.1M enterprise customer support records accessed via compromised Aruba Networks portal
903,080 records exposed — Customer service comments, Email addresses, IP addresses, Names and 2 more