-
Jaime CÃÆÃ'Ã'âmara Group (JCG)
September 27, 2022
•
[ ransomware, malware ]
Brazilian media conglomerate Jaime C''mara Group (JCG) is the victim of a ransomware attack.
-
Hope College
September 27, 2022
•
[ hack, education ]
On December 15, 2022, Hope College reported a data breach with the Montana Attorney General after the school determined that an unauthorized party had gained access to files containing confidential student information.
-
Jaime CÃÆ'Ã'¢mara Group (JCG)
September 27, 2022
•
[ ransomware, cyberattack, media ]
Brazilian media conglomerate Jaime C''mara Group (JCG) is the victim of a ransomware attack.
-
Auth0
September 26, 2022
•
[ leak, misconfiguration, technology ]
Authentication service provider Auth0 discloses what it calls a "security event" involving some of its code repositories (from 2020 and earlier) obtained by unknown means from its environment.
-
Undisclosed victim in Ukraine
September 26, 2022
•
[ ransomware, malware ]
The Bl00dy ransomware, built from the LockBit 3.0 Builder, hits an undisclosed victim in Ukraine.
-
Watchfinder
September 26, 2022
•
[ hack, retail ]
Luxury pre-owned watch website Watchfinder warns its user base that their personal data has been accessed after an employee's account was broken into and a customer list accessed.
-
petrolplus
September 26, 2022
•
[ hack, ddos, finance ]
IT Army of Ukraine conducted a DDoS attack against a Russian organization providing services for paying in gas stations.
-
Poder Judicial de Chile
September 26, 2022
•
[ hack, malware, government ]
The Poder Judicial de Chile issues an alert about a computer virus.
-
CSI Laboratories
September 26, 2022
•
[ social, phishing, healthcare ]
CSI Laboratories discloses to have been hit by a phishing attack.
-
Ukrainian foreign intelligence service
September 26, 2022
•
[ espionage, hack, government ]
The Russian hacker group RaHDIt posts the data of 1,500 employees of the Ukrainian foreign intelligence service.
-
Kyivgaz
September 25, 2022
•
[ hack, ddos, manufacturing ]
The Russian-affiliated collective "People's CyberArmy" claims to have conducted a DDoS attack against a company operating the gas infrastructure of Kyiv.
-
Latvian funds management portal
September 25, 2022
•
[ hack, ddos, government ]
NoName057(16) claims to have conducted a DDoS attack against a Latvian governmental service.
-
Novosibirsk TV provider
September 25, 2022
•
[ hack, technology ]
An unknown Ukrainian-affiliated threat actor has conducted a cyberattack against a satellite television provider in Novosibirsk. The broadcast was defaced with a broadcast of an appeal from the Armed Forces of Ukraine.
-
ATB-Market
September 24, 2022
•
[ hack, ddos, retail ]
The Russian-affiliated collective "People's CyberArmy" claims to have conducted a DDoS attack against the website of a Ukrainian chain store.
-
BankingLab
September 24, 2022
A threat actor claims to have breached the BankingLab banking platform exploiting the CVE-2022-35405 vulnerability affecting multiple Zoho ManageEngine products.
-
German National Tourist Board
September 24, 2022
•
[ hack, ddos, government ]
Anonymous Russia claims to have conducted a DDoS attack against the official website for German tourism.
-
Traderie
September 24, 2022
•
[ leak, technology ]
In September 2022, the in-game trading marketplace Traderie suffered a data breach that exposed almost 400k records (this preceded a subsequent breach the following year). The incident exposed email and IP addresses, usernames and links to social media profiles. The data was provided to HIBP by a source who requested it be attributed to "oathnet.ru".
-
ClickASnap
September 24, 2022
In September 2022, the online photo sharing platform ClickASnap suffered a data breach. The incident exposed almost 3.3M personal records including email addresses, usernames and passwords stored as SHA-512 hashes. Further, a collection of paid subscriptions were also included and contained names, physical addresses and amounts paid.
-
Apex Capital Corp.
September 23, 2022
Apex Capital Corp. confirms that the company experienced a data breach after an unauthorized party gained access to sensitive consumer data that had been entrusted to the company.
-
FMC Services (Family Medical Center Services)
September 23, 2022
FMC Services confirms that the company experienced a data breach after an unauthorized party gained access to sensitive consumer data contained on its network.