Data Breaches & Leaks
Cybersecurity news in this category

Click to Pray App Exposed Personal Data of 719,000 Users Through Unprotected API Endpoint

Measuring Data Leak Risk by Days of Silence Rather Than Megabytes in Cloud Environments

Russian Interior Ministry Opens Five Criminal Cases Against 'Glaz Boga' Analog Platforms Selling Personal Data of Russian Citizens
Solar inRights 3.11 Automatically Blocks Corporate Accounts Whose Passwords Appear in Dark Web Leaks
GC Solar has released Solar inRights 3.11, a major update to its identity and access management platform that integrates directly with the Solar AURA threat monitoring service. The new version automatically detects corporate credentials exposed in open sources and dark web dumps, validates whether the same login-password pairs remain active inside the organization, and instantly revokes access while alerting the security team. The feature addresses the common scenario in which employees reuse work email addresses and passwords on third-party websites, allowing attackers to test stolen credentials against corporate systems in what appears to be legitimate login attempts. Research cited by Solar shows that a single large Russian company typically has more than 600 unique corporate accounts circulating in public and underground sources, although only about 4 percent directly indicate infrastructure compromise. Yandex Cloud data further reveals that valid account abuse featured in 54 percent of over 25,000 attacks on cloud and hybrid environments during the first half of 2025. In addition to the leak-response capability, version 3.11 introduces improved search, request filtering, and integration templates for Active Directory, Exchange, and 1C.
Hacker Leaks Suno Source Code Exposing Massive Scraping of 2 Million YouTube Music Tracks and Customer Data Breach
A hacker known as ellie.191 has leaked the internal source code of Suno, one of the largest AI music generation services, to 404 Media, revealing extensive unauthorized scraping of copyrighted material from YouTube Music, Deezer, Genius, and other platforms. The leaked files, believed to date from 2023 and 2024, detail how Suno collected over 2 million music tracks and hundreds of thousands of hours of audio, including 152,000 hours from YouTube Music alone, along with 420,000 podcasts totaling nearly 1 million hours. Additional datasets came from Pond5, Jamendo, Freesound, MuseScore, and other libraries, with the company using Bright Data proxies to bypass restrictions and tools to isolate vocals from instrumental tracks. The breach also exposed hundreds of thousands of customer records, including emails, phone numbers, and partial Stripe payment data, which multiple users have already confirmed as accurate. Suno claims the incident was limited, occurred in November 2025, and involved only outdated code, while denying any leak of sensitive payment information. The hacker gained access via an employee account compromised by the Shai-Hulud worm, which stole GitHub and cloud credentials, and stated the attack was driven purely by curiosity rather than a specific motive. This disclosure lends support to ongoing lawsuits from the Recording Industry Association of America alleging direct copyright infringement by Suno.
Over 600 Leaked Corporate Accounts Found Per Major Russian Company, with Half Exposing Plaintext Passwords
A study by Solar AURA examined nearly 19,300 records tied to the ten largest Russian companies from the RBC500 ranking and uncovered 6,194 unique corporate accounts. More than half of these credentials — 3,739 — were circulating on the dark web with passwords in plaintext. Only 4% of cases showed evidence of direct compromise of corporate infrastructure, indicating that the majority stemmed from employees reusing work emails and passwords on external platforms such as marketplaces, forums, and SaaS services. Researchers also identified over 12,600 additional records containing employee personal data that can be leveraged for targeted social-engineering attacks. The findings highlight how credential-stuffing, phishing, and password-reset abuse become trivial once external leaks occur, especially when short or reused passwords are involved. Experts recommend continuous leak monitoring, mandatory multi-factor authentication, and rapid blocking of exposed accounts to reduce risk.
Argentina Football Association Admits Hack After Victory Over Egypt: Fake Email Questions Referee Integrity in World Cup Match
Following Argentina's 1/8 finals victory over Egypt at the FIFA World Cup, the Argentine Football Association (AFA) suffered a significant cyber intrusion that allowed hackers to send a forged email from an official AFA Medios account to accredited journalists. The message accused French referee Francois Letexier of biased officiating in favor of Argentina, lavishly praised the Egyptian team's performance, and included threatening language tied to the Middle East conflict. AFA quickly denied authorizing the message and confirmed unauthorized access to internal systems, including parts of its database containing emails, passwords, and IP addresses that may now be sold on dark web forums. The fabricated claims closely mirrored public criticisms voiced by Egyptian coach Hossam Hassan and player Mostafa Zico after their elimination. AFA has launched a full investigation to assess the breach's scope and improve security, while advising affected users to change passwords immediately. Argentina, meanwhile, continues preparations for its quarterfinal clash against Switzerland.
630GB of Apple Secrets Leaked on Dark Web: WorldLeaks Breach Shatters Tata Electronics Supply Chain Security
In June 2026, the ransomware group WorldLeaks infiltrated Tata Electronics, Apple's key manufacturing partner in India, and exfiltrated 630GB of highly sensitive data comprising over 200,000 files that were subsequently posted on the dark web. The stolen materials include unreleased iPhone 18 Pro motherboard schematics, A20 Pro chip technical manuals, complete supplier lists, Tesla component designs, and employee passport copies, exposing the vulnerabilities in Apple's two-decade supply chain secrecy system built at a cost of billions of dollars. WorldLeaks, formerly known as Hunters International, employed a 'steal-only' tactic without encryption, capitalizing on the growing trend of data extortion that has proven more profitable than traditional ransomware. The breach raises serious concerns about Apple's ambitious India manufacturing expansion, which aims to increase local component sourcing from 10% to 50% within three years, and highlights broader risks to global supply chains involving companies such as Tesla, TSMC, and Qualcomm. Apple responded swiftly by deploying DMCA takedowns across platforms like X within 24 hours, yet the irreversible nature of dark web leaks underscores the need for enhanced supplier security audits, data segmentation, and proactive data loss prevention measures.
Medtronic Cyberattack Exposes Patient Data: Six-Day Breach Puts Social Security Numbers and Health Records at Risk
In April 2026, medical device giant Medtronic suffered a cyber intrusion that lasted six days, allowing unauthorized access to backend IT systems containing sensitive patient information. The breach, discovered on April 19 after beginning on April 13, exposed names, contact details, birth dates, Social Security numbers, and health treatment data linked to devices such as pacemakers, insulin pumps, and neurostimulators. Although the medical devices themselves remain unaffected and show no signs of remote tampering, the leaked data poses severe risks of identity theft, financial fraud, and targeted scams that could persist for years. Medtronic has initiated emergency response measures, engaged external experts, and notified law enforcement and regulators, while offering 24 months of free identity monitoring to affected users. The incident highlights how even large enterprises struggle with securing ordinary office IT systems that store critical patient records, underscoring the need for individuals to monitor accounts and adopt stronger security habits.
15-Year-Old Saitama Student Uses ChatGPT to Mass-Cancel 46,812 Bandai Channel Subscriptions, Triggering Service Outage and Data Breach Concerns
A 15-year-old boy from Saitama Prefecture has been arrested for developing and deploying a program that canceled 46,812 user subscriptions on the Bandai Channel anime streaming service owned by Bandai Namco Filmworks. The teenager initially wrote the code himself while in middle school but turned to ChatGPT to rewrite it in a faster programming language after the original version proved too slow. On November 4, 2025, he sent thousands of fake account-deletion requests that forced the company to temporarily shut down the platform. When the company attempted to block his access, the student changed his IP address more than 30 times to continue the attack. He had previously been detained in June for other computer-related offenses and later admitted he simply wanted access to numerous accounts without holding any grudge against the company. The incident prompted Bandai Namco Filmworks to report the matter to Tokyo police and later disclose a potential leak of personal data belonging to up to 1.36 million users, although no evidence of data publication has been found.