One of the most widely deployed frontend cloud platforms in the world just confirmed a security breach — and the attack chain runs straight through a third-party AI tool sitting…
On April 13, 2026, Booking.com confirmed that unauthorized third parties accessed customer booking information. The company began notifying affected users via email on Sunday evening, stating it had detected "suspicious…
PayPal recently confirmed a serious data breach tied to its Working Capital loan system, exposing sensitive user data for over five months. A coding error allowed unauthorized access, sparking concerns…
A social engineering attack hit fintech platform Betterment in January 2026, compromising sensitive customer data through tricked employee credentials.This incident highlights ongoing risks in third-party access and phishing tactics targeting…
A massive cybersecurity incident has rocked Nike, with the extortion group WorldLeaks claiming responsibility for stealing and leaking over 1.4TB of internal data—nearly 190,000 files. The breach, which reportedly dates…
Sedgwick, a global leader in claims management and risk solutions, has disclosed a ransomware attack on its U.S. federal contractor subsidiary, Sedgwick Government Solutions. The incident, claimed by the emerging…
ManageMyHealth (MMH), New Zealand's leading patient portal serving approximately 1.8 million users, disclosed a significant cyber security incident on December 30, 2025, involving unauthorized access to the "Health Documents" module.…
The recent cyberattack on real-estate finance vendor SitusAMC has quickly become one of the most consequential third-party incidents facing U.S. financial institutions in 2025. By compromising a vendor deeply embedded…