Cloudflare (2024)
Okta-sourced tokens used by nation-state to access internal wiki
SaaS platforms, cloud providers, developer tooling, and app-layer infrastructure are concentrated attack surfaces. One tech vendor breach can expose thousands of downstream customers. Below is every tech-sector breach LeakTrace has indexed.
Okta-sourced tokens used by nation-state to access internal wiki
7,071,293 records exposed — Email addresses, Passwords
2,721,835 records exposed — Email addresses, Geographic locations, IP addresses, Names and 1 more
190,000 UK customer support ticket records exposed through Spectos vulnerability
Cyberattack froze 30K shipping containers at major ports
1,274,077 records exposed — Email addresses, Geographic locations, Names, Usernames
654,510 records exposed — Dates of birth, Email addresses, Names, Passwords and 2 more
LockBit hit Infosys subsidiary — 57,000 Bank of America customers affected
6.5M insurance and financial records exposed — LockBit ransomware via Indian IT services
SEC charged CISO for fraud — $26M settlement over Sunburst attack disclosure failures
6,164,643 records exposed — Email addresses, IP addresses, Passwords, Usernames
4,348,570 records exposed — Email addresses, Usernames
Cyberattack disrupted 1,202 devices across 196 stores
76,682 records exposed — Email addresses, Names, Phone numbers, Physical addresses
LockBit published 43GB of stolen data after ransom was not paid
43GB of data stolen and leaked by LockBit ransomware
35.9M customer usernames and hashed passwords exposed via CitrixBleed vulnerability
All customer support users affected — HAR file theft exposed session tokens across clients
Customer support system breach exposed session tokens — Cloudflare, 1Password impacted
Support system breach — session tokens of 134 customers accessed by threat actor
74,776 records exposed — Email addresses, IP addresses, Passwords, Usernames
35.9M customers affected by Citrix Bleed exploitation
35.9M customer records exposed via Citrix Bleed vulnerability
27,917,714 records exposed — Dates of birth, Email addresses, Job titles, Names and 2 more