IdeaLab
October 4, 2024
•[ ransomware, data leak ]
IdeaLab confirmed data theft from an Oct 2024 ransomware breach claimed by Hunters International. 137,000 files (~262.8 GB) stolen and leaked impacting employees/contractors and dependents.
Charleston Area Medical Center
October 2, 2024
•[ phishing, data leak ]
Phishing attack on multiple email users; unauthorized access to one mailbox between Oct 23, 2024, possibly exposing personal and health information. No other systems impacted.
Heartland Community Health Center
October 1, 2024
•[ phishing, data leak ]
Clinic reported email account breach exposing sensitive patient and insurance information.
Onsite Mammography
October 1, 2024
•[ phishing, data leak ]
Phishing attack compromised a single employees email account, enabling exfiltration of PII and PHI data affecting over 350,000 individuals; no encryption involved.
Andy Frain Services
October 1, 2024
•[ ransomware, data leak ]
Physical security firm reported a ransomware intrusion in Oct 2024 attributed to Black Basta with exfiltration of a wide range of data; notices sent to ~100k people in May 2025.
Hunter Health Clinic
September 30, 2024
•[ phishing, data leak ]
Clinic said an unauthorized party accessed one employee mailbox around Sept 30, 2024; on May 1, 2025 it confirmed files with PHI/PII may have been accessed; notices issued May 15.
Dove Healthcare
September 29, 2024
•[ phishing, data leak ]
Healthcare provider disclosed email account compromise containing patient and employee information.
Mutua Madrileña
September 27, 2024
•[ cyber attack, data leak, third-party breach ]
Mutua Madrilea suffers a cyber attack on its home customer base, through an external provider, which affects thousands of customers.
AultCare Corporation
September 25, 2024
•[ phishing, data leak ]
An unauthorized party accessed an employee email account and a SharePoint instance on 2024-09-25. AultCare reviewed affected content and began notifying brokers and affected individuals by 2025-01-21.
Michigan Surgery Center
September 23, 2024
•[ data leak ]
Ambulatory surgery center reported unauthorized access to systems containing patient information.
Broadcom Inc
September 15, 2024
•[ ransomware, data leak ]
Ransomware on ADP partner Business Systems House led to theft of Broadcom employee data; leaks appeared in Dec 2024 and full impact was clarified to Broadcom in May 2025.
Grede Holdings LLC
September 12, 2024
•[ data leak ]
Grede Holdings mailed breach notices after unauthorized access exposed consumer information.
Nuna Baby Essentials
September 8, 2024
•[ data leak, payment card information ]
Company disclosed network intrusion exposing payment card information of customers.
Zenith American Solutions, Inc.
September 6, 2024
•[ phishing, data leak ]
Unauthorized access to Zenith American Solutions network discovered September 6 2024 after an employee email account was compromised via phishing; over 12,000 individuals names, dates of birth, Social Security numbers, and benefit-plan documents potentially accessed. The firm notified regulators January 2025 and publicly disclosed in June 2025. No actor attribution or ransom demand reported.
Plaisted Companies, Inc.
September 4, 2024
•[ data leak ]
On or around September 4 2024, Plaisted Companies, Inc. experienced unauthorized access to internal application servers storing personal data. The company reported potential exposure of files containing personally identifiable information and began notifications on March 26 2025. No encryption, data theft confirmation, or ransom activity was reported.
Numotion
September 2, 2024
•[ phishing, data leak ]
Email account compromises exposed customer information at numotion.
National Police
September 1, 2024
•[ data leak ]
Dutch intelligence services said a previously unknown Russian group (LAUNDRY BEAR) hacked multiple orgs including police; the police GAL was stolen in Sept 2024.
Northwest Retirement Plan Consultants
August 31, 2024
•[ data leak ]
NWRPC reported August 31, 2024 network access exposing sensitive information; notifications sent.
Port of Seattle
August 24, 2024
•[ ransomware, data leak ]
The Port of Seattle confirmed a ransomware-linked data breach attributed to the Rhysida group on August 24, 2024. Attackers exfiltrated approximately 90,000 records containing personal and employee data from legacy systems. No encryption or operational disruption occurred.
Chord Specialty Dental Partners
August 18, 2024
•[ email compromise, data leak ]
Email Account Compromise At Dental Service Organization Impacted Over 170,000 Individuals.