project: unknownMission Request
// INCIDENT LOG //

BREACH ARCHIVES

Real-world breach coverage focused on exposed systems, business impact, detection patterns, third-party risk, and response lessons.

The Canvas/Instructure Breach: What Happened and What It Teaches

ShinyHunters claimed to have stolen 6.65 terabytes of data from nearly 9,000 schools using Canvas, then defaced login pages to pressure Instructure publicly. The incident reveals how centralized edtech platforms can become single points of failure, turning one exploited account tier into disruption for millions of students and teachers across thousands of institutions.

VulnerabilityRansomwareData Exfiltration
May 8, 2026DETAILS
Naturgy Data Leak: What Happened and What It Teaches Us About Third-Party Cyber Risk

On May 1, 2026, Spanish energy company Naturgy confirmed that customer identifying, contractual, and banking data may have been exposed through unauthorized access to a supplier's database. The breach did not originate from Naturgy's own systems. Here is a full breakdown of what happened and what it reveals about third-party security risk.

Supply ChainFinancialVulnerability
May 3, 2026DETAILS
Moldova's Health Insurance Cyber Incident: What Happened and What It Means

A cyberattack hit Moldova's national health insurance authority, with officials disputing the scale. The agency called it limited. A senior cybersecurity official suggested up to one-third of the database may have been affected. No ransom was demanded, pointing toward data theft over extortion. Here is a full breakdown of what is confirmed, what is contested, and what it reveals.

Data ExfiltrationHealthcareExtortion
May 2, 2026DETAILS
Mercor, LiteLLM, and the Kind of Breach Modern AI Companies Should Worry About

Mercor has confirmed it was affected by a supply-chain attack involving LiteLLM, an open-source package widely used in AI workflows. This was not a simple one-company story. It shows how AI infrastructure has created a new kind of risk concentration - and what happens when a poisoned dependency sits close to secrets, cloud credentials, and proprietary model pipelines.

Supply ChainCredential TheftMalware
Apr 6, 2026DETAILS
What Happened at UMMC: A Clear Look at the Ransomware Attack

In late February 2026, the University of Mississippi Medical Center (UMMC), the state’s only academic medical center and a critical healthcare provider across Mississippi, was hit by a ransomware attack that disrupted large portions of its

HealthcareRansomwareData Exfiltration
Feb 22, 2026DETAILS
What Happened in the Figure Technology Data Breach

In early February 2026, Figure Technology, a publicly traded fintech company that uses blockchain infrastructure for lending and financial services, confirmed it suffered a significant data breach. The company stated that hackers accessed c...

FinancialVulnerabilityPhishing
Feb 15, 2026DETAILS
Crunchbase and the ShinyHunters Vishing Campaign (2026)

In early 2026, Crunchbase, a private company intelligence platform, confirmed a data breach following claims by the ShinyHunters threat group. After a ransom demand was refused, attackers published stolen internal files reportedly containin...

RansomwareData ExfiltrationExtortion
Feb 3, 2026DETAILS
Analyzing the Sanxenxo Ransomware Attack

Ransomware attacks against local governments have become so common that headlines often blur together: “Municipality hit by cyberattack, services disrupted.”

RansomwareData ExfiltrationPhishing
Jan 28, 2026DETAILS
SegurCaixa Adeslas Data Breach in Spain: What We Know So Far

In recent days, SegurCaixa Adeslas, one of Spain’s largest health and insurance providers, has confirmed a cybersecurity incident that resulted in the exposure of personal and financial data belonging to some of its policyholders. The incid...

PhishingHealthcareFinancial
Jan 24, 2026DETAILS
Under Armour Data Breach: What We Know So Far

Under Armour has confirmed it is investigating claims of a significant data breach after hackers posted what they allege are 72 million customer records online. While the company has stopped short of confirming the full scale of the inciden...

PhishingSupply Chain
Jan 23, 2026DETAILS
Illinois DHS Data Exposure: What Happened

In January 2026, the Illinois Department of Human Services (IDHS) publicly disclosed a large-scale data exposure that affected more than 700,000 Illinois residents. While often referred to as a “data breach,” the incident was the result of

VulnerabilityRansomwareSupply Chain
Jan 21, 2026DETAILS