An almost year-long data breach at TriZetto Provider Solutions (TPS) has leaked the sensitive health data of 3.4 million individuals.
A data breach at data analytics company LexisNexis L&P has leaked the details of over 400,000 cloud profiles after an attacker breached its AWS infrastructure.
Hackers used sophisticated techniques and leveraged a commercial internet service provider vendor’s infrastructure to breach FBI surveillance systems, something both Chinese and Russian state-backed threat actors are notorious for doing. It is unclear at this point which of the numerous Chinese hacking groups may have been involved with the security breach.
Plaintiffs in New Jersey and California are suing Meta for alleged privacy violations after anonymous contractors stepped forward to reveal intimate videos from the company's AI smart glasses are being surreptitiously shared. The privacy lawsuit claims that Meta's marketing tagline of "designed for privacy, controlled by you" is false.
A ransomware attack at the University of Hawaii Cancer Center has exposed the sensitive personal information of more than 1.2 million people, forcing it to pay a ransom.
A data breach has leaked sensitive medical records of over 15 million French citizens after hackers breached a centralized health information management system used by various health facilities.
Researchers with Truffle Security are warning that old and seemingly benign Google API keys might now be weaponized by threat actors after gaining Gemini AI authorization permissions, in a destructive attack that could target a victim's wallet.
The Oasis researchers document a vulnerability chain that can be initiated from any website the AI agent (or its user) visits, without users needing to interact in any way or being at all aware that they are being compromised. The attack targets the OpenClaw "gateway" that essentially acts as the AI agent's nerve center.
A third-party data breach at the online DIY platform ManoMano has affected nearly 38 million customers after attackers breached its subcontractor’s Zendesk instance.
Reddit has been assessed £14.47 million in fines by the UK Information Commissioner's Office (ICO) due to failures to adequately age-gate children under 13, which in turn led to impermissible collection and use of their personal data as well as potential exposure to mature content. The penalty is one of the largest it has issued thus far, and the largest for a children's privacy offense.










