Barracuda Email Security Gateway
Chinese state-sponsored actors exploited zero-day — advised to replace all affected appliances
SaaS platforms, cloud providers, developer tooling, and app-layer infrastructure are concentrated attack surfaces. One tech vendor breach can expose thousands of downstream customers. Below is every tech-sector breach LeakTrace has indexed.
Chinese state-sponsored actors exploited zero-day — advised to replace all affected appliances
Malicious packages uploaded to Python Package Index supply chain
Chinese hackers exploited zero-day in email gateway, affected thousands
Support agent account compromised — user email addresses and support tickets exposed
215K customer records exposed
2.15M vehicle owners' data exposed for 10 years
2.15M vehicle owners' data exposed since 2013 via cloud misconfiguration
Unauthorized third party accessed Australian enterprise software company's systems
2.5TB of client legal data stolen by BlackCat — 65 government clients affected
2,075,625 records exposed — Dates of birth, Email addresses, Geographic locations, Names and 2 more
Cloud platform vulnerability exposed enterprise customer configurations
Intel Boot Guard private keys stolen in Money Message ransomware
Money Message ransomware stole 1.5TB — firmware signing keys published
Employee accidentally leaked proprietary source code to ChatGPT — internal data exposure
10TB of internal data stolen — ALPHV/BlackCat claimed responsibility
90TB of data stolen — pensions, NHS data, MOD records compromised by Black Basta
Desktop VoIP app supply chain attack linked to North Korean Lazarus Group
Private RSA SSH key accidentally exposed in public repository — emergency key rotation
500K customer records exposed in POS compromise
Payment data exposure from Redis bug — chat histories and partial credit card info visible
1.2M user chat titles and payment info exposed via bug
539K employee records exposed in ransomware
14M customer records stolen — driver licenses and passport numbers from Australian lender
30K employee credentials exposed via ransomware — customer doorbell footage access feared