Tag: breach
-
The Hugging Face Wake-Up Call: What an Autonomous AI Attack Means for CISOs
The Hugging Face Wake-Up Call: What an Autonomous AI Attack Means for CISOs andrew.gertz@t“¦ Wed, 09/16/2026 – 01:04 Data Breach Data Security Encryption Key Management Identity & Access Management Camille Charaudeau – Global Vice President, Strategy & Innovation More About… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/the-hugging-face-wake-up-call-what-an-autonomous-ai-attack-means-for-cisos/
-
The Hugging Face Wake-Up Call: What an Autonomous AI Attack Means for CISOs
The Hugging Face Wake-Up Call: What an Autonomous AI Attack Means for CISOs andrew.gertz@t“¦ Wed, 09/16/2026 – 01:04 Data Breach Data Security Encryption Key Management Identity & Access Management Camille Charaudeau – Global Vice President, Strategy & Innovation More About… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/the-hugging-face-wake-up-call-what-an-autonomous-ai-attack-means-for-cisos/
-
The Hugging Face Wake-Up Call: What an Autonomous AI Attack Means for CISOs
The Hugging Face Wake-Up Call: What an Autonomous AI Attack Means for CISOs andrew.gertz@t“¦ Wed, 09/16/2026 – 01:04 Data Breach Data Security Encryption Key Management Identity & Access Management Camille Charaudeau – Global Vice President, Strategy & Innovation More About… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/the-hugging-face-wake-up-call-what-an-autonomous-ai-attack-means-for-cisos/
-
Daily OT Security News: September 15, 2026
The threat landscape for operational technology (OT) and industrial control systems (ICS) remains critical as organizations face increasing vulnerabilities and targeted attacks. Recent reports highlight significant breaches, regulatory updates, and emerging threats that require immediate attention from security teams. Key… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/daily-ot-security-news-september-15-2026/
-
Crypto Industry Figures Blackmailed by Revolut’s Hacker
Payments Platform Socially Engineered With Hacked Government Agency Email Account. Personally identifiable information for multiple cryptocurrency industry figures was targeted and stolen by the threat actor who hacked payments platform Revolut, prompting warnings for these customers’ personal safety, with some receiving direct extortion threats. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/crypto-industry-figures-blackmailed-by-revoluts-hacker-a-32824
-
CenterPoint Energy confirms customer data stolen in cyberattack
CenterPoint Energy disclosed a breach compromising some customers’ personal information after an attacker leaked data allegedly stolen from the utility company. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/centerpoint-energy-confirms-customer-data-stolen-in-cyberattack/
-
Leaks, data breaches, and ransom notes: The worst hacks of 2026 so far
From the massive DOGE data breach and the compromise of critical infrastructure to the hack of federal surveillance systems, here are the most damaging security incidents and data breaches of 2026 so far. First seen on techcrunch.com Jump to article: techcrunch.com/2026/09/15/the-worst-hacks-and-breaches-of-2026-so-far/
-
Electric and gas utility CenterPoint Energy warns of data breach after dark web post
Houston-based CenterPoint Energy notified federal regulators about an incident that exposed some customer data on the dark web. First seen on therecord.media Jump to article: therecord.media/centerpoint-energy-data-breach
-
SaaS API Security Incidents: What 2026 Breach Data Shows
Key TakeawaysAn analysis of 60 disclosed API breaches in 2025 found broken authentication caused 52 percent of incidents, with unsafe consumption of third party APIs accounting for another 27 percent.SaaS companies accounted for 8 percent of breaches in that same… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/saas-api-security-incidents-what-2026-breach-data-shows/
-
eBook: Identity-First Threat Intelligence
Attackers increasingly bypass traditional defenses by logging in with credentials that have already been stolen, exposed, or sold on the Dark Web. As infostealer malware … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/15/enzoic-ebook-identity-first-threat-intelligence/
-
NonDay VPN Flaw Left Japan ‘s Government Shared Network Platform Exposed: 246,000 Records at Risk
Tags: access, breach, data-breach, exploit, flaw, government, network, risk, service, vpn, vulnerability, zero-dayJapan ‘s Digital Agency disclosed a VPN breach exposing 246,000 government employee records across 23 ministries. Detected June 25, publicly disclosed September 11. Japan ‘s Digital Agency disclosed that attackers exploited a vulnerability in a VPN device to access its Government Solution Service (GSS), potentially leaking personal information belonging to approximately 246,000 government employees, public…
-
Japan Government Network Breach Puts 246,000 People at Risk
A vulnerability in Japan’s shared government network may have exposed personal information tied to 246,000 workers across 23 organizations. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/cybersecurity/news-government-network-breach-apac-japan/
-
Brevo Breach Sends Trezor Phishing Email to 347,000 Subscribers
A Brevo breach allowed attackers to send Trezor phishing emails to 347,000 subscribers, exposing security risks created by trusted third-party vendors. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/cybersecurity/news-brevo-trezor-phishing-email-347000-subscribers/
-
Assume Breach Must Now Mean Assume Impersonation
‘Assume breach’ is a useful operating principle for enterprise security: Build as if an attacker will eventually get past the perimeter. That mindset led teams to adopt Zero Trust, stronger endpoint controls, network segmentation, and tighter identity and access management. The premise… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/assume-breach-must-now-mean-assume-impersonation/
-
Japan’s Digital Agency says VPN flaw exposed 246,000 personnel records
Japan’s Digital Agency has discovered a data breach that may have exposed around 246,000 record rows containing personal information of government employees. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/japans-digital-agency-says-vpn-flaw-exposed-246-000-personnel-records/
-
Microsoft 365 Passkey Phishing Turns Login Into a Cloud Breach
Microsoft warns that passkey-themed phishing is hijacking Microsoft 365 accounts, adding rogue MFA methods, and slowly stealing business cloud data. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/threats/news-passkey-phishing-microsoft-365-cloud-data/
-
Japan’s Digital Agency says VPN flaw exposed 246,000 personnel records
Japan’s Digital Agency has discovered a data breach that may have exposed around 246,000 record rows containing personal information of government employees. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/japans-digital-agency-says-vpn-flaw-exposed-246-000-personnel-records/
-
Revolut Reveals Data Breach Tied to Faked Official Request
Financial Platform Was Socially Engineered Into Disclosing Sensitive Customer Data. Digital financial platform Revolut is notifying customers that it suffered a data breach exposing their personal details after it fell for an official-looking impersonation scam involving a request for customer information sent using a legitimate government agency domain email. First seen on govinfosecurity.com Jump to…
-
Revolut Reveals Data Breach Tied to Faked Official Request
Financial Platform Was Socially Engineered Into Disclosing Sensitive Customer Data. Digital financial platform Revolut is notifying customers that it suffered a data breach exposing their personal details after it fell for an official-looking impersonation scam involving a request for customer information sent using a legitimate government agency domain email. First seen on govinfosecurity.com Jump to…
-
Revolut discloses data breach exposing financial info, passports
Fintech company Revolut has disclosed a data breach after sharing data from an undisclosed number of customers with a threat actor impersonating a government agency. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/revolut-discloses-data-breach-exposing-financial-info-passports/
-
What we know about the Revolut data breach so far
Someone impersonating a government agency, using an email address on that agency’s domain, obtained sensitive customer records from Revolut. The bank confirmed the … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/14/revolut-data-breach-privacy/
-
Cybersecurity attention fades within months after a breach
Cybersecurity attention often rises after an incident, then recedes as organizations return to their existing priorities and practices, according to a new ManageEngine survey … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/09/14/manageengine-cybersecurity-breach-confidence-report/
-
153 Million Driver’s Licenses for Sale: Why Identity Verification Is Broken
A reported dark-web service offering more than 153 million U.S. and Canadian driver’s-license scans for sale has brought the hidden cost of identity verification into focus. Tom, Scott, and Kevin discuss the alleged breach and FBI inquiry, why a license… First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/09/153-million-drivers-licenses-for-sale-why-identity-verification-is-broken/
-
Revolut confirms customer data breach through fake government requests
Revolut said it notified affected customers and alerted the relevant government agency, law enforcement, and financial regulators. First seen on techcrunch.com Jump to article: techcrunch.com/2026/09/12/revolut-confirms-customer-data-breach-through-fake-government-requests/
-
ID Verification Firm IDScan.net Confirms Data Breach
IDScan.net Confirms Breach – But Leaves Victim Count and Point of Entry Unanswered. A Louisiana identity verification company has confirmed a breach reportedly tied to the darkweb sale of more than 153 million U.S. and Canadian driver’s licenses, but its notice does not say how many people were affected or how attackers got in. First…
-
FTC rescinds policy statement requiring health apps to notify customers after a breach
The policy, passed under the Biden administration, forced health apps to disclose when users’ personal health records were exposed in a breach or shared without authorization. First seen on cyberscoop.com Jump to article: cyberscoop.com/ftc-rescinds-health-app-data-breach-policy/

