CISA (Ivanti breach)
US Cybersecurity agency itself breached via Ivanti VPN zero-days
SaaS platforms, cloud providers, developer tooling, and app-layer infrastructure are concentrated attack surfaces. One tech vendor breach can expose thousands of downstream customers. Below is every tech-sector breach LeakTrace has indexed.
US Cybersecurity agency itself breached via Ivanti VPN zero-days
230K user health tracker records exposed
Battery manufacturer production shut down by cyberattack
Data breach exposed internal employee and customer data
67K customer records exposed in reservation system breach
18K corporate customer records accessed via unauthorized entry to internal order management system
207,114 records exposed — Email addresses, Genders, IP addresses, Names and 3 more
Production systems compromised, all certificates revoked
Employee and client project data stolen in Hunters International ransomware attack
5,970,416 records exposed — Dates of birth, Email addresses, Genders, Names and 3 more
26 billion records from LinkedIn, Twitter, Dropbox, and other platforms
15,111,945 records exposed — Email addresses, Names, Usernames
LockBit ransomware stole financial data from sandwich chain
Akira ransomware disrupted Tietoevry cloud hosting — Swedish universities and firms hit
Russian Midnight Blizzard accessed email and SharePoint
Russian SVR hackers accessed senior executive email accounts for months via legacy OAuth app
Cactus ransomware stole 1.5TB — sustainability business division impacted
36M customer records from Citrix Bleed breach notifications
70,840,771 records exposed — Email addresses, Passwords
26B records compiled from credential-stuffing logs and stealer malware — largest compilation ever
15.1M user records scraped via public API endpoint
15M user records scraped via exposed API endpoint
600M user messages and metadata scraped and posted to dark web marketplace
3.2M workspace records exposed via CVE exploitation