Editor's Message

Welcome to DBD. On March 8th 2026, DBD celebrated it's sixth anniversary and PRiSM celebrated it's third anniversary. Both projects have made a huge impact on my life and I'd like to thank each and everyone of you who have supported me, with special thanks to those individuals and communities who have helped me build up my knowledge on cybercrime and ransomware over the years. Thanks again for all your continued support. Stay safe. :)


“Data Breaches Digest and its PRiSM portal provide Dentons Global Security Team with valuable insights into the ransomware landscape, from the latest incidents to trends over time, as well as the ability to customize visual analytics. Timely reports and tracking by Data Breaches Digest help inform cyber intelligence for the world’s largest law firm and thus our cybersecurity posture across more than 80 countries worldwide.”
Dentons Senior Analyst, Washington D.C.



Tuesday, 21 July 2026

Ransomware Operator Claims - Week 29 2026

Welcome to last week's ROC Report, an exclusive summary of Ransomware Operator's global victims that were claimed during the period between 13th July and 19th July 2026, kindly assisted by our partners.

DBD discovered and researched 183 Ransomware Victims over 47 Countries and Islands claimed by 38 Data-Leaking Ransomware Operators last week.

For further analysis on these (and any historic) Ransomware Operator Claims, including the Victim Names and Industry Sectors attacked, please use our PRiSM application.

Download PDF



Data Source: Data Breaches Digest. Flag Icons created by Freepik and provided by Flaticon.


Monday, 20 July 2026

Data Breaches Digest - Week 30 2026

Welcome to this week's Data Breaches Digest, a catalogue of links concerning Data Breaches and Cyber Security that were published on the Internet during the period between 20th July and 26th July 2026.


23rd July

10-month cyber attack exposes personal data of South Korean diplomats

62% of Indian organisations affected by ransomware say AI made attacks more effective

AI agent turns rogue in landmark cyber attack

Australia: New South Wales accounting and advisory firm allegedly hit by SafePay ransomware

Australia's Origin Energy confirms customer data breach

Chaos ransomware's msaRAT: Living off the browser to build a covert C2 channel

ChatGPT joins the phishing target list, signalling a new security challenge for CIOs

ChatGPT now ranks as one of the most impersonated brands in phishing attempts

Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access

Check Point warns of SmartConsole zero-day exploited in attacks

Chick-fil-A Confirms Customer Data Accessed in Cyberattack

Chick-fil-A Confirms Data Breach After Credential Stuffing Attack Exposes Customer Personal and Payment Data

Chick-Fil-A Data Breach Exposes Information From New York Customers

Companies are still paying ransoms to cyber criminals despite official advice

Credential stuffing attack triggers Chick-fil-A customer data breach

Cyber threats escalate across the Philippines as AI-driven fraud grows

Dolphin X: New Windows Stealer Uses AI to Rank Which Victims Are Worth Robbing

Estée Lauder Companies hit by data breach targeting HR operation software

First day of school pushed back in Tennessee County due to cyber attack

From 16,619 phishing attacks to AI-driven fraud: cyber threats intensify across the Philippines in H1 2026

Hacker Attack Wipes Romania’s Property Registry, Freezing Real Estate Market

Hackers Lurked for 10 Months Inside South Korea Diplomatic System

Heart Care Centers of Illinois Discovers Historic Phishing Attack Exposed Patient Data

HermeticReader Flaw (CVE-2026-48294) in Adobe’s Acrobat Extension Exposed WhatsApp Chats to Any Website

Hong Kong bucks APAC trend as targeted cyberattacks outpace ransomware

India: China-linked phishing scam impersonates Income Tax department, probe reveals

India ranks second in APAC for ransomware attacks in H1 2026

Iran-linked hacker group threatens wider cyberattacks on US critical infrastructure

LAPSUS$ Announces Permanent Shutdown, Claims Mercor Data Sold to Chinese Buyers

Microsoft Leads Q2 2026 Brand Phishing as ChatGPT Emerges as a New Phishing Target

Montenegro: Phishing Campaign Misusing the Names of the Central Bank and Western Union

Multi-patch vulnerability fixes can leave open source exposed

New msaRAT malware uses Chrome, Edge browsers to route C2 traffic

Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs

Omnicell Data Breach: Everest Ransomware Group Claims 1TB Stolen from the Healthcare Automation Firm

OpenAI and Hugging Face Investigate AI Models’ Cyber Breakout

OpenAI models going rogue is “a wake-up call” says co-founder of Hugging Face, and will become the “most common” type of cyber attack

Oracle July 2026 Patch Fixes 1,434 CVEs Across 334 Products

Origin Energy confirms customer data breach after unauthorised access

Origin Energy confirms data breach

Origin Energy confirms data breach, apologises after hacker claims to have accessed records of 2 million customers

Origin Energy confirms data breach, apologises to customers

Origin Energy data breach: Credit card, bank details included in data breach as Origin confirms incident

Origin Energy probes potential data breach, engages cybersecurity experts

Origin Energy reports customer bank, credit card details caught up in data breach

Origin Energy reports cyber attack, customer data stolen in network breach

Proofpoint survey reveals Ransomware Gangs frequently Re-Extort Victims after initial Ransom Payment

Proton warns how smart TVs spy on you: here’s how to stop them

Ransomware Attack at Coca-Cola’s Fairlife Dairy Company Halts U.S. Operations

Ransomware Attack Puts a Chill On Japanese Frozen-Food Chain

Ransomware succeeds by exploiting people's trust, not just systems

Russian-linked hacker group claims attack on major Japanese frozen food company

Shadow AI is becoming enterprise security’s biggest blind spot

South Africa: Rectron Implements Recovery Measures Following Cyber Incident

South Korea: Foreign ministry plans to change diplomats' email addresses after data breach

South Korea: Seoul's 5,000 won compensation fuels anger after bike-sharing service data breach

Suno data breach exposed personal information of more than 55 million users

Swiss rail manufacturer Stadler refuses to pay $12.3 million ransom after cyberattack

Swiss train maker Stadler refuses Everest $12 million ransomware demand

Swiss train maker tells ransomware crooks to get off at the next stop

The AI code vulnerabilities that grow with your app

The silence after the breach is the part you control

Two Thirds of Australian Organisations Affected by Ransomware Say AI Made These Attacks More Effective

Two-Thirds of Ransomware Victims Say AI Boosted Attack Effectiveness

Ubuntu fixes 3 flaws that could let attackers become admins

When the Responder Is the Threat - Ransomware Negotiators, Insider Trust, and Incident Response Ethics

22nd July

$3 Million Settlement Agreed to Resolve Healthcare Services Group Data Breach Litigation

23andMe pays Georgia after data breach exposed genetic info of 171,000 Georgians

23andMe Reaches $18 Million Settlement Over Data Breach Affecting 6.9 Million Customers

55 Million Impacted by Suno Data Breach

A bizarre new malware campaign hacks your printer and forces it to print out ransomware demands

A critical vulnerability in WordPress has led to a wave of hacker attacks

Adobe Acrobat Extension Flaw Let Malicious Sites Read WhatsApp Web Data

Adobe Chrome extension flaw let sites access private WhatsApp chats

AI can’t fix cybersecurity’s hiring problem

AI models cheat on cybersecurity evaluations, then fail to admit it

AI Music Platform Suno Hit by Massive Data Breach Exposing 55 Million Users, Fuels Copyright Controversy

Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522)

Anubis Ransomware Gang Claims Coca-Cola’s Fairlife Breach, Threatens to Leak 1TB of Data

Anubis ransomware gang claims Coca-Cola's Fairlife in data extortion threat

Apple Faces Lawsuit Over Hide My Email Privacy Vulnerability

AT&T phishing campaign exploits website redirect vulnerability

Attend Northwest Iowa Community College? You may have been affected by a data breach

Authorities Dismantle Kratos Phishing-as-a-Service Platform and Seize 200 Servers

Authorities Shut Down Phishing Empire Launching 15,000 Attacks Every Month

Beyond backups: creating a ransomware recovery process for data in AI environments

Breached! Origin Energy discloses data breach to Australian Stock Exchange (ASX)

Calls for Guardrails Grow as OpenAI Discloses ‘Unprecedented’ Autonomous Cyber Attack

ChatGPT maker's rogue AI acted on its own in 'unprecedented' cyber-attack

Chick-fil-A alerts D.C., Maryland and other customers to data breach

Chick-fil-A confirms data breach following suspicious account logins

Chick-fil-A customers’ information exposed in data breach

Chick-fil-A data breach: What customers need to know

Chick-Fil-A Data Breach Exposes Customer Payment Data

Chick-fil-A Data Breach Exposes Sensitive Information on Customer Accounts

Chick-fil-A data breach hits customers in 10 states

Chick-fil-A discloses data breach after credential stuffing attacks

Chick-fil-A One Data Breach: Credential Stuffing Hits Loyalty App a Second Time

Chick-fil-A reveals data breach - customers warned hackers may have accessed their account info

Chick-fil-A says some customers’ information exposed in data breach

Chick-fil-A Sends Data Breach Notifications After Password Attacks

CISA orders urgent action on actively exploited Langflow RCE flaw

Clover Health Reports Data Breach After Cyber Intrusion

Compromised Credentials drive most Ransomware Attacks as new Cyber Threat groups continue to Emerge

Craneware Group Data Breach Potentially Impacts Employee and Customer Data

Credential stuffing attack at Chick-fil-A comes with data breach notice for customers

Critical Langflow vulnerability fully opens doors to hackers and is under active exploitation

Cyber Attack on Major Japanese Refrigerated Logistics Provider Disrupts KFC and Other Food Chains

Data Breach at Largest Indian Nuclear Power Plant Leaks Sensitive Files

Data breach at Suno affects over 55 million users

Data breach delays start of Sumner County school year

Employees Are Misusing AI tools at Work: Making ROI Hard to Measure and Risking Data Leaks

Ernst & Young (EY) tells clients of third-party data breach

Estée Lauder Notifies Employees Following Oracle E-Business Data Breach

Experts warn paying ransomware ransoms prompts repeat extortion

Fake password-manager alerts could put your vault at risk

Federal agencies broaden alert on Iran-linked Operational Technology (OT) attacks

French fleet manager data leak allowed unlocking of doors, disabling vehicles

German and U.S. authorities dismantle Kratos phishing kit, arrest developer in Indonesia

German law enforcement claims to have ‘dismantled’ mega phishing-as-a-service group Kratos

Glassnode Investigates Customer Data Exposure, Warns of Phishing Risks

GO2 Health confirms limited data breach, patient data remains largely secure

Greedy ransomware crews return for seconds after victims cough up first extortion payments

Hacker breaches South Korean database of nearly all diplomats

Hacker group Ransomhouse claims cyberattack on Japan food giant Nichirei

Hacker group Ransomhouse claims cyberattack that disrupted KFC and other businesses

Hacker group RansomHouse claims responsibility for cyberattack on Nichirei

Hacker Used Steam Games to Steal $220K in Cryptocurrency

Hacker Wipes Romania’s Land Registry, Freezing the Property Market

Hackers Abuse Compromised Outlook Accounts to Steal MFA-Protected Microsoft 365 Sessions

Hackers Clone Microsoft Login Portals to Capture Credentials and Session Tokens in Real Time

Hackers Deface Kenya President William Ruto’s Website, Demand $330K Ransom

Hackers Exploit Windmill Flaw to Read Arbitrary Server Files Without Authentication

Hackers Use Procurement Phishing and Adversary-in-The-Middle (AiTM) Kits to Hijack MFA-Protected Microsoft 365 Sessions

How Agentic Ransomware is Changing Enterprise Cybersecurity

How OpenAI’s human mistake led to the AI-powered hack on Hugging Face

Hugging Face ‘hacker’ was rogue OpenAI model

If you pay a hacker’s ransom, chances are that they’ll come back for more

Illinois Man Sentenced to Over 6 Years for Hacking Hundreds of Women’s Snapchat Accounts via Phishing to Steal Women’s Pictures

It’s Past Time to Rethink Cyber Resilience

JADEPUFFER agentic ransomware returns, targets AI assets with ENCFORGE payload

Japanese food logistics giant recovers as extortion group claims cyberattack

Kratos Phishing Kit Dismantled: 200 Servers Seized, MFA-Bypass Tool Killed

Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review Agents

Nearly half of organisations falling victim to ransomware encryption pay up, says report - although half of those often negotiate the payment down first

New Data Shows Suno Breach Affected 55 Million Accounts

New InfraTrust report reveals infrastructure flaws admins should patch first

New Kimsuky campaign compromised South Korean software vendors

New ransomware group uses printers to deliver ransom notes

New Ubuntu Desktop Vulnerability Turns Local Access Into Root Control

Nichirei System Outage: Ransomware Group "RansomHouse" Claims Responsibility, Possibly Same Group Behind ASKUL Attack

Odyssey-Themed Scams Appear Within Hours of Film’s Release

OpenAI: Our models breached Hugging Face during a cyber capability test

OpenAI Claims Its AI Models Went Rogue and Hacked Another Company

OpenAI models behind breach of Hugging Face systems, companies say

OpenAI Models Escaped Test Environment and Breached Hugging Face

OpenAI Reveals Its AI Model Went Rogue And Launched ‘Unprecedented’ Cyber Attack

OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark

OpenAI says its AI models hacked Hugging Face during testing

OpenAI says its AI went rogue and launched 'unprecedented' cyber-attack

OpenAI’s Own AI Models Escaped Their Sandbox to Hack Hugging Face and Cheat a Benchmark

Origin Energy Customers Affected by Potential Data Breach

Origin Energy customers face potential data leak as hacker issues ultimatum

Origin Energy faces potential data breach as hackers claim millions of customer records

Origin Energy investigates alleged cyber attack after hacker claims to have stolen data of two million customers in ransom bid

Origin Energy investigates breach as hacker claims data of millions

Origin Energy Investigates Data Breach After Hacker Claims Access to 2 Million Customers’ Information

Origin Energy investigating 'potential' breach of Australian customers' data

Origin Energy investigating 'potential' customer data breach

Origin Energy investigating potential data breach ‘as a matter of urgency’

Pakistan: Punjab Busts International Tycoon2FA Phishing Syndicate Behind 96,000 Fake Banking Apps, Two Arrested

Phishing attack on behalf of Nova Poshta: scammers send letters about "tax audits"

Phishing campaign targets global institutions with fake procurement emails

Police Dismantle Kratos Phishing Kit Built to Steal Microsoft 365 Sessions and Bypass MFA

Police dismantle Kratos phishing platform behind 15,000 monthly campaigns

Police Dismantle Kratos Phishing-as-a-Service Platform and Take Down Over 200 Servers

Proofpoint Research Finds 65% of Organizations Affected by Ransomware Say AI Made Attacks More Effective

Ransomware: Building better cyber-recovery metrics

Ransomware Attacks Are About Embarrassment, Cyber Expert Says

Ransomware Attacks Rise 3% in Q2 as Supply Chain Compromises Escalate, NCC Group Warns

Ransomware Does Not Pause While You Figure Out Who Is in Charge

Ransomware Group Threatening to Leak Data Stolen From Coca-Cola’s Fairlife

Ransomware increasing across all metrics in 2026

Ransomware Statistics: Costs, Trends & Attack Data

Ransomware, Spies and Hacktivists Converge on UK and Ireland, New Threat Report Warns

Researchers Find Self-Hosted Guardrail-Free AI Models Multiply Attack Variants Faster than Signature-Based Defenses Can Track

Russian Hacker Jailbreaks Claude to Turn into an AI-Powered Penetration Testing Platform

Russian-Linked Hacker Group Claims Attack on Nichirei; Internal Data Released on Dark Web Site

Russian-Speaking Hacker Jailbreaks Claude Opus to Build AI Pentesting Tool

Security Experts Discuss the Evolution of JADEPUFFER

Security teams keep finding critical flaws after scheduled testing ends

South Africa: ICT distributor Rectron suffers cyber attack

South Korea: National Diplomatic Academy Data Breach Undetected For 10 Months

South Korea discloses data breach impacting diplomats worldwide

Southern Door Schools make changes, regains $68K lost to phishing scam

Stadler Rail refuses to pay $12.3 million ransom after ransomware attack

STIIIZY Handing Over $2,950,000 To Settle Data Breach Class Action Lawsuit

Suno admits data breach that reportedly leaked 55.3 million users’ data

Suno data breach affecting 55 million users reveals how AI giant was scraping songs illegally for training

Suno’s Data Breach Exposed 55 Million Users' Information, but the AI Song Generator App Didn’t Tell You

Supply Chain Threats Escalate as Global Ransomware Activity Rises Month on Month

Swiss rail giant Stadler rejects $12.3 Million ransom demand after cyberattack

The 72-Hour Rule: CISA Just Turned Patch Management Into a Ticking Clock

Third-Party SDKs Raise Privacy Questions for Apps Marketed to U.S. Military

Threat group claims credit for ransomware attack on Coca-Cola’s dairy unit

TrickBot Ditches HTTP for DNS Tunneling in Latest Variant

Trojanized Newtonsoft.Json Fork Hides Game-Rigging Code in a Working Library

Ubuntu snap-confine Vulnerability Enables Local Root Access

Upbound says hack caused $13 million in fraudulent Acima leases

When the Hacker Does Your Legal Risk Assessment for You

Why Are Businesses Still Paying Ransoms If Hackers Keep Demanding More?

Why misconfigured clouds are a hacker’s easiest target

Why Modern SOCs Need Multi-Layered Detections

Why phishing detection alone won’t save K-12 school districts anymore

21st July

23andMe settles multistate data breach lawsuit for $18 Million

79% of ransomware attacks now originate from compromised identities

79% of Ransomware Attacks Start with Compromised Identities

90,000 Flock cameras have quietly gone up in the US: What they track and how to check your city

A New Ransomware Threat Actor Emerges Every Week

AgentBaiting: Fake AI Skills Trick Claude Code, Gemini, and ChatGPT Into Spreading Malware

AI agents are still logging in as humans

AI agents tricked into recommending malicious GitHub repositories

AI firm ORO says North Korean hacker stole $600K worth of crypto

AI music generator Suno breach affects 55 Million users, per Have I Been Pwned

AI-generated reports push GNOME to shorten its disclosure window

AI-Only Cyberattack Hits Hugging Face, Offering First Real-World Example Of Feared 'Agentic' Threat

Akamai Warns of Fraudulent AI Agent Activity Aimed at E-Commerce Sites

Alkegen Data Breach Exposes Personal and Protected Health Information

Anubis ransomware claims Coca-Cola Fairlife attack, threatens data leak

ApolloMD Agrees to Pay $4.02 Million to Settle Data Breach Lawsuit

Apple Fixes Hide My Email Bug That Exposed Real Addresses in Mail Logs

Asia-Pacific cyber threats rise on AI & geopolitics

Australia: GO2 Health medical clinic in Brisbane waited almost three months to alert patients it was hacked

Australia: New South Wales (NSW) accounting and advisory firm allegedly hit by SafePay ransomware

AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code

Coca-Cola Fairlife hack claimed by Anubis ransomware

Coca-Cola Fairlife ransomware attack halts production as cyber threats to operations grow

Craneware Confirms Data Theft After Cyberattack, Investigations Underway

Craneware Exposes Significant Data Theft in Monday Data Breach

Critical Palo Alto VPN bug now exploited by Qilin ransomware gang

Critical ServiceNow AI Platform Flaw Exploited for Unauthenticated Code Execution

Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public Proof-of-Concept (PoC)

Critical SharePoint RCE flaw exploited to steal machine keys

Critical wp2shell WordPress flaws exploited to install webshells

Cyberattack Halts Coca-Cola’s Fairlife Productions

Ernst & Young breach exposes client tax data - find out if you're at risk and what to do next

Estée Lauder Confirms Data Breach: SSNs, Passport Numbers, and Health Data Exposed via Oracle EBS Exploit

Estée Lauder Confirms Cyberattack Affecting Personal Information

Estée Lauder discloses data breach tied to Oracle EBS vulnerability

Europe’s top carpooling platform BlaBlaCar was breached, hackers claim

Fairlife hits pause on US production after ‘ransomware event’

Fake FBI agents target people who already got scammed

Fake FBI Agents Use Internet Crime Complaint Center (IC3) Complaints to Target Scam Victims

Fake Troubleshooting Prompts Trick Online Banking Users in Spain and Portugal into Installing Trojans

FakeGit campaign uses 7,600 GitHub repos to push SmartLoader malware

FBI Warns of Deepfake Videos Impersonating Internet Crime Complaint Center (IC3) Leadership

Federal Trade Commission (FTC) warns of phishing scam involving fake letters about unclaimed insurance money

German authorities dismantle Kratos phishing-as-a-service infrastructure

Global car rental service data leak exposes thousands of drivers

Got an email from X about a suspicious login? It can be a phishing scam

Government ransomware attacks rose 13% globally to 187 incidents in first half of 2026, with The Gentleman most active

Hacked! Ernst & Young informs clients of third-party data breach

Hacker Turns AI Jailbreaks Into Offensive Attack Platform

Hackers Already Exploiting Newly Patched WordPress Flaws, Researchers Warn

Hackers Exploit Palo Alto PAN-OS Flaw to Deploy Qilin Ransomware

Hackers Exploiting Palo Alto’s PAN-OS Vulnerability to Deploy Qilin Ransomware

Healthcare Software Provider Craneware Announces Data Breach

Here’s How A Hacker Allowed Google’s AI To Do 89% of the Crime

How AI and ransomware are reshaping cybersecurity

How ransom attacks on small businesses open doors to larger organisations

Hugging Face confirms data breach by AI agent: Why it has sparked a debate on cyber guardrails

JADEPUFFER Deploys ENCFORGE Ransomware Built to Destroy AI Models and Training Data

JadePuffer returns with ransomware built to target AI models and infrastructure

Kaspersky Warns of Printer-Based Ransomware Tactic in LATAM

Kentucky part of multi-state 23andMe data breach settlement

Kenya probes hack of president's website after bitcoin ransom demand

Kratos phishing-as-a-service kit loses its battle with international law enforcement

Major US hospitals partner Craneware confirms data breach

Makeup giant Estée Lauder says hackers accessed Social Security numbers

Malaysia: Telco identifies suspect in data breach as Malaysian Communications and Multimedia Commission (MCMC) demands full report

New Bit2Watt Attack Could Let Cloud Tenants Disrupt Power Grids Without an Exploit

New ENCFORGE Ransomware Targets AI Model Files in Langflow RCE Attack

New Zealand: Ministry apologises after data breach affects 276 student records

Open-Source Android AI Agents Could Let Invisible Screen Text Run Code on Host PCs

OpenAI and Hugging Face partner to address security incident during model evaluation

OpenAI says Hugging Face was breached by its pre-release models

Paidwork Data Breach Exposes 23.3 Million Accounts, Banking Data and bcrypt Password Hashes

Patients sue diagnostics company over data breach

PhishByte warns Essential Eight misses phishing risk

Police dismantle Kratos phishing platform, arrest developer

PR3TACK preemptive framework maps threats before attackers use them

Prints of darkness: Hackers printing demands during ransomware campaigns across Latin America

Qilin exploits Palo Alto Networks GlobalProtect VPN firewalls

Qilin Ransomware Attackers Exploit PAN-OS Authentication Bypass for Initial Access

Qilin Ransomware Claims 1,358 Victims as Global Attacks Reach New Record

Ransomware detections among Indian SMBs rise in Q1 2026

Ransomware Is Accelerating, But It's Not Because of AI

Ransomware victims fail to fix flaws that exposed them

Received a ‘KrisFlyer Anniversary Draw’ e-mail? It could be a phishing scam, Singapore Airlines warns

Research says JadePuffer Ransomware wipes off data on AI Model Infrastructure

Researchers Uncover North Korean 'ClickFake' Campaign Targeting Web3 Pros

Reynella East College updates parents, carers following June data breach

Russian Hacker Turns Jailbroken Claude Into Pentest Platform

Scammers Are Impersonating Internet Crime Complaint Center (IC3) Using Fake Profiles and AI-Generated Videos, FBI Updates Warning

Singapore Airlines warns against phishing scam in 'KrisFlyer Anniversary Draw' emails

SonicWall SMA zero-days were exploited weeks before disclosure

South Korea: Seoul Notifies 4.62 Million of Ttareungyi Data Breach, Offers Free Passes

South Korea: Seoul to compensate 4 million bike-sharing users after data breach

South Korea Confirms Cyberattack on Diplomatic Academy, Data of 6,000 Diplomats at Risk

Spain fines 23andMe nearly $3 million for cybersecurity failings enabling 2023 hack

SportsMed Physical Therapy Data Breach Exposes Health Information

Suno Data Breach: 55 Million Emails and Stripe Records Exposed

UK government scraps plans for digital ID cards after millions of Brits opposed

Understanding Illicit Ecosystems: Inside Rehub’s Rise as a Primary Ransomware Marketplace

US Hospital Finance Software Provider Craneware Reports Data Theft

'Was this you?': Scammers using phishing techniques to hijack X accounts

Websites hacked with a single HTTP request: WordPress critical exploit was developed with ChatGPT

Windows LegacyHive zero-day flaw gets free, unofficial patches

WordPress wp2shell Exploitation Grows as Public Exploit Fuels Mass Scanning

Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities

20th July

23andMe Pays $18 Million to Settle Multistate Data Breach Lawsuit

271 million Uber Eats and Starbucks records surface on hacker forum: Should you be worried?

AI agents just doubled inside the enterprise. Confidence rose faster than control did

An AI agent breached Hugging Face before an AI defender caught it: What users should do next

Attackers Combo Up Evasion Tactics for BEC Phishing

Australia: Crypto scam losses of $1.47 million in five days sparks Queensland police alert to new phishing threat

Centers Laboratory Discloses Data Breach Affecting 542K Individuals

Chinese police repatriate key suspect in phishing and Trojan virus case from Vietnam

Clover Health hit with data breach

Clover Health reveals data breach in SEC filing

Coca-Cola Company’s Fairlife targeted in ransomware attack

Coca-Cola’s Fairlife halts U.S. production after ransomware attack

Community College of Beaver County (CCBC) Data Breach Exposes Social Security Numbers and More

Craneware confirms data breach after cyberattack

Craneware Confirms Data Breach, Employee Records Among Exposed Data

Craneware reveals cyber attack with employee and customer data stolen

Critical ServiceNow code execution flaw now exploited in attacks

Cruciferra Crypter Uses Process Ghosting to Evade Detection

CVE-2026-42533 Exposes Critical Pre-Auth nginx RCE Flaw

Cyber Attack Against Major Milk Producer Could Lead To A Milk Shortage

Cyberattack hits Coca-Cola's $4 billion dairy brand, suspends US production

Cyberattack pauses Fairlife’s production, working to learn about impact on Webster plant

Data breach hits well-known AI company: ‘Sorry for any disruption’

DocuSign Phishing Kit Delivers RMM Tools to Windows and macOS

Don’t run into these ‘Gentlemen’. More on this Ransomware gang

Ecopetrol confirms ransomware attempt, data stolen from 3,300 accounts

Edinburgh-based healthcare firm 'hit with cyber attack' as hackers steal data

Ernst & Young Data Breach Affects Personal, Financial Information

Ernst & Young data breach exposes personal and financial information of tax clients

Ernst & Young reveals data breach following hack on support system

Estée Lauder discloses data breach via Oracle E-Business flaw

Experts Advise iPhone Users to Turn Off AirPlay to Prevent Hacker Threats via Public Wi-Fi

Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign

Fairlife Ransomware Attack Hits Production Systems, U.S. Operations Suspended

Fairlife shortage looms after ransomware hits Coca-Cola plants

Fairlife stops US milk production after ransomware attack

FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware

Family Partnerships Data Breach Exposes SSNs and Financial Account Information

FBI Arrests Florida Man in $220,000 Steam Crypto Theft Case

Free Archive Program 7-Zip Can Be Hacked With a Malicious File

‘Frustrated and stressed’: Thousands impacted by cyber attack at Calgary university

Governments Weigh Ransomware Payment Bans as Hackers Grow Bolder

Hacker stole from Steam users for years, got caught because he ordered food online

Hacker wipes European country’s entire land registry database, paralyzing real-estate market

Hacker wipes Romania's entire land registry database

Hackers are exploiting recently patched WordPress bugs, putting millions of websites at risk

Hackers Are Hiding Invisible Text in Phishing Emails to Fool AI Security Tools

Hackers steal $23.7 million in crypto from Ostium in off-chain attack

Hackers stole ‘significant’ amount of data from tech firm relied on by thousands of US hospitals and pharmacies

Hackers were inside South Korea's diplomat training system for 9 months

Health tech firm Craneware admits “significant volume” of customer and employee data exposed in cyber attack

Health tech firm Craneware says customer and staff data stolen in cyber attack

Healthcare phishing breach exposes SSNs, medical records for 15 months

Healthcare ransomware attacks up 14% in first half of 2026

Heart Care Centers of Illinois Data Breach Compromises PHI and PII

HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel

How receding Ransomware payments are reshaping the Economics of Cyber Extortion

Hugging Face: We Used AI to Catch the First Confirmed AI Agent Breach of a Major AI Platform

Hugging Face breach reveals why defenders need their own AI models on standby

Hugging Face breached by autonomous AI agent

Hugging Face confirms breach affected internal datasets and credentials, urges users to take action

Hugging Face Confirms Data Breach Caused by Autonomous AI Agent

Hugging Face Hacked in Autonomous AI Attack

Hugging Face Says Autonomous AI Agent System Breached Production Infrastructure

Hugging Face says it resorted to a Chinese AI model to battle a fully autonomous cyberattack because U.S. model guardrails stymied its defense

Hugging Face warns an autonomous AI agent hacked its network

Identity-based attacks overtake software flaws as leading ransomware entry point

India: Data breach exposes documents tied to Kudankulam nuclear plant expansion

India says allegedly leaked nuclear plant files pose no safety risk

Information Commissioner Notified After Data Breach Concerns At Former West Sussex County Council Buildings

Italy fines WINDTRE €1.7 million over security flaws behind two data breaches

Jadepuffer: Agentic attack evolves to destroy AI models

JadePuffer agentic attacks now target AI model data with ransomware

JadePuffer Returns With Ransomware Designed to Wipe AI Models

Kenya restores presidential website after cyber attack

Kenya’s Presidential Website Hit by Cyber Incident, Government Says No Data Was Stolen

Kentucky included in settlement with 23andMe following 2023 data breach

LG Monitors Spotted Installing Adware-Like App on Windows PCs

Little Flower Data Breach Exposes Health Information and SSNs

Minnesota Health Insurance Network Data Breach Exposes PHI and PII

Mythos Didn't Break Your Security Program. Your Exposure Window Could

New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction

New HollowGraph Malware Hijacks Microsoft 365 Calendars for Covert C2 Communications

New HollowGraph malware uses Microsoft Graph for stealthy C2 comms

New X phishing scam uses fake login alerts to steal your account

Oak Hill Data Breach Exposes SSNs and Medical Information

One threat that infiltrated the ANC, Anglo American, Mediclinic, South African Airways, and Pick n Pay

Paidwork breach exposes sensitive data of 23 million user

Paidwork Data Breach Exposes 23 Million User Records, Have I Been Pwned (HIBP) Says

Plugging an LG monitor into a Windows computer installs a potentially unwanted program

Police Chiefs Cite Transport for London (TfL) Hack in Push for Cybercrime Risk Orders

Qantas goes unpunished for staggering data breach

Ransomware attack disrupts fairlife’s US production

Ransomware attack forces Coca-Cola to suspend US production at dairy unit

Ransomware attacks hit SMBs harder than ever as cybercrime gang rivalry heats up

Ransomware detections on Indian SMBs is on the rise

Researchers Build WordPress Exploit Using OpenAI's GPT

Resource Center of Dallas Data Breach Affects At Least 9k Individuals: SSNs Exposed

Romania races to restore land registry after cyberattack disrupts property market

Russian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine

Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs

Sefas Innovation Data Breach Impacts Banks: Personal and Financial Info Exposed

ServiceNow pre-auth RCE exploited in the wild (CVE-2026-6875)

SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

Software provider to more than 2,000 US hospitals says hackers stole employee and customer data

SonicWall SMA1000 flaws exploited as zero-days to push custom malware

South African industrial giant that makes chemicals targeted by one of the world’s most notorious ransomware groups

South Carolina will receive $280,000 in 23andMe settlement after data breach

Thailand: Base-education hacker arrested in Phuket

The Gentlemen deploys new malware to take control of systems before encryption

The New Cyber Frontier: Ransomware Surges as AI Deepfakes Expose Corporate Vulnerabilities

The Odyssey piracy scams surface hours after its theatrical debut

The Rise of Calendar Phishing

The Windows 10 hangover is becoming a security problem

Threat Actors Allegedly Listed Starbucks Data on Hacker Forums

U.S. court seizes $8.37 million in crypto from ransomware negotiator accused of aiding hackers

U.S. Prosecutors Charge Russian Trio in Cybercrimes Causing More Than $62 Million in Losses

United Arab Emirates: Dubai Police Warns Against Online Scams Promising Work and Visit Visas

Unpatched SharkNinja flaw turns vacuum cleaner into a spy, reveals house maps, WiFi passwords

Why Security companies can’t create an invincible Vaccine against Ransomware

WordPress Critical RCE Security Flaw a Threat to Millions of Websites

WordPress urges immediate update: hackers are gaining full control with a critical exploit

World's Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent

wp2shell: The Unauthenticated WordPress Exploit That Needs No Login, No Plugins, Just a Vulnerable Core

X users are being hit by fake login alerts: the phishing emails look real

Zero-Day Hack Exposes South Korean Diplomatic Academy to Massive Data Breach

Thursday, 16 July 2026

Ransomware Operator Claims - Week 28 2026

Welcome to last week's ROC Report, an exclusive summary of Ransomware Operator's global victims that were claimed during the period between 6th July and 12th July 2026, kindly assisted by our partners.

DBD discovered and researched 164 Ransomware Victims over 41 Countries and Islands claimed by 35 Data-Leaking Ransomware Operators, including 2 Newly Discovered Ransomware Operators last week.

For further analysis on these (and any historic) Ransomware Operator Claims, including the Victim Names and Industry Sectors attacked, please use our PRiSM application.

Download PDF



Data Source: Data Breaches Digest. Flag Icons created by Freepik and provided by Flaticon.