Heroku / Salesforce
OAuth token theft affected multiple customer repositories
SaaS platforms, cloud providers, developer tooling, and app-layer infrastructure are concentrated attack surfaces. One tech vendor breach can expose thousands of downstream customers. Below is every tech-sector breach LeakTrace has indexed.
OAuth token theft affected multiple customer repositories
OAuth tokens stolen from Heroku and Travis CI integrations
8.2M user records exposed by former employee
420,873 records exposed — Dates of birth, Email addresses, Genders, Names and 5 more
70GB of source code stolen from IT consultancy
2.3M patient records exposed via technology vendor breach
Lapsus$ stole 37GB of Bing, Cortana, and Bing Maps source code
LAPSUS$ breached via third-party vendor Sitel, 366 customer tenants affected
37GB of source code including Bing and Cortana stolen
746,682 records exposed — Browser user agent details, Chat logs, Email addresses, IP addresses and 4 more
Conti ransomware compromised customer data for popular math software company
Lapsus$ breached Vodafone Portugal — 200GB of source code claimed
190GB of source code including Galaxy device secrets stolen
Lapsus$ stole 190GB of source code — Galaxy device encryption algorithms exposed
71,335 records exposed — Email addresses, Passwords
Lapsus$ stole 1TB including proprietary GPU driver source code
LAPSUS$ stole 1TB including employee credentials and proprietary data
89,966 records exposed — Email addresses, Geographic locations, Names, Purchases
Cyberattack disrupted 4G/5G, TV, and SMS services for millions of customers
100K video interview recordings exposed in S3 misconfiguration
Chinese espionage compromised journalist email accounts
BlackCat ransomware disrupted energy trading company
73,944 records exposed — Email addresses, Genders, IP addresses, Passwords and 2 more
Lapsus$ compromised Okta support engineer — 366 enterprise customers impacted