Topics
Actors, campaigns, malware, tools, incidents, reports, trends and policy items tracked across the pipeline. The badge marks entities covered on more than one day · these are the "stories that unfolded".
Total topics
531
8 types
Recent (30 d)
199
entities with new coverage in window
Distinct sources
401
hosts cited at least once
Total appearances
1107
brief-section attributions
Co-occurrence links
467
entity ↔ entity in same item
By type
- incident149 (28%)
- campaign134 (25%)
- actor82 (15%)
- tool66 (12%)
- trend34 (6%)
- report32 (6%)
- policy20 (4%)
- malware14 (3%)
Recent coverage
Aggregate mentions per ISO week, last 14 weeks.
- Minnesota coordinated water-utility OT cyberattack (July 2026)2026-08-022026-08-012026-07-29
- BIT/FOITT SharePoint Server breach (Switzerland, 2026-07)2026-08-05
- Canton Graubünden SharePoint Server breach (Switzerland, 2026-08)
- Shai-Hulud CHAINDROP wave
- ENDLESSDOORS
- Akira2026-08-052026-07-192026-07-122026-07-092026-06-30
- ByteToBreach2026-08-052026-07-262026-07-212026-07-19
- ANCPI Romania cadastre cyberattack2026-08-052026-07-262026-07-212026-07-19
- Hugging Face autonomous AI agent breach2026-08-052026-08-022026-07-312026-07-302026-07-26
- ExfilSquad2026-08-052026-08-042026-08-022026-07-31
- Anthropic cybersecurity-evaluation environment escape (July 2026)2026-08-052026-08-022026-07-31
- Liechtenstein VwbP beneficial-ownership register breach (July 2026)2026-08-052026-08-04
- Hungarian State Treasury (MVH) breach2026-08-05
- RUAG LLC Akira ransomware incident and VBS ownership review2026-08-05
- UK AISI cyber-range unsanctioned agent actions2026-08-05
- Ultraviolet2026-08-05
- PhantomKiller2026-08-05
- SNOWLIGHT2026-08-052026-07-10
- UNC51742026-08-05
- UNC65862026-08-05
- INC Ransom2026-08-042026-07-262026-07-252026-07-052026-06-22
- UTA05332026-08-042026-07-192026-07-18
- KNUCKLEBALL / ORANGETAIL SonicWall SMA toolset2026-08-042026-07-192026-07-18
- Sapphire Sleet2026-08-042026-08-022026-07-302026-06-292026-06-22
- UK Department for Education portal and Police National Legal Database breach (July 2026)2026-08-042026-08-022026-07-31
- LLM-fabricated CVE advisory wave (programmervuln/cveadvisory-)2026-08-04
- CrowdStrike 2026 Threat Hunting Report2026-08-04
- VAULT PANDA2026-08-04
- GENESIS PANDA2026-08-04
- UMBRAL BISON2026-08-042026-05-11
- ALTERED SPIDER2026-08-04
- Everest2026-08-022026-07-312026-07-262026-07-222026-06-08
- Qilin2026-08-022026-07-292026-07-192026-07-122026-06-29
- Screening Serpens2026-08-022026-07-292026-05-272026-05-232026-05-18
- ShinyHunters2026-08-022026-07-312026-07-282026-07-192026-07-18
- TeamPCP2026-08-022026-07-142026-06-272026-06-142026-06-12
- EU Cyber Resilience Act2026-08-022026-07-262026-07-192026-07-122026-06-29
- Joomla extension file-upload RCE wave2026-08-022026-08-012026-07-312026-07-262026-07-12
- Contagious Interview2026-08-022026-07-262026-07-192026-07-182026-06-16
- Ernst & Young third-party ITSM breach2026-08-022026-07-282026-07-19
- Stadler Rail supplier-platform breach2026-08-022026-07-312026-07-262026-07-22
- SANDWORM_MODE2026-08-022026-07-262026-07-23
- LAUNDRY BEAR2026-08-022026-07-312026-07-262026-07-252026-07-24
- Hermes AI agent2026-08-022026-07-312026-07-262026-07-25
- Cl0p2026-08-022026-07-272026-07-232026-07-142026-07-11
- Cl0p PTC Windchill / FlexPLM extortion campaign (2026)2026-08-022026-07-27
- MedusaHVNC2026-08-022026-07-28
- NightLedger2026-08-022026-07-29
- BridgeHead2026-08-022026-07-29
- UVVG Arad cyberattack (July 2026)2026-08-022026-07-29
- knaithe / KnYuan2026-08-022026-07-31
- OWAReaper2026-08-022026-07-31
- OctLurk2026-08-022026-07-31
- SilkLurk2026-08-022026-07-31
- Toy Ghouls2026-08-022026-07-31
- GenieLocker2026-08-022026-07-31
- Brinks Home breach (July 2026)2026-08-022026-07-31
- Midnight Blizzard2026-08-022026-08-012026-07-262026-06-092026-05-23
- Storm-29452026-08-022026-08-01
- CaptiveCrunch2026-08-022026-08-01
- CornFlake2026-08-022026-08-01
- ChocoShell2026-08-022026-08-01
- XCSSET2026-08-022026-08-01
- French Éducation nationale agent-training system breach (July 2026)2026-08-022026-08-01
- Adform trackpoint-async.js supply-chain crypto-clipper compromise (July 2026)2026-08-02
- CCI Nice Côte d'Azur eDRH administrator-account export breach (July 2026)2026-08-02
- COLDCARD hardware-RNG fallback wallet-seed theft (2026)2026-08-02
- Railway device-code phishing2026-08-012026-07-122026-07-10
- Ulej / Flowerbed2026-07-312026-07-262026-07-252026-07-24
- LurkProxy2026-07-31
- Nightmare Eclipse2026-07-292026-07-092026-06-222026-06-192026-06-14
- ARToken2026-07-292026-07-052026-07-02
- Chaos (ransomware-as-a-service)2026-07-292026-07-262026-07-24
- STAC47492026-07-29
- Sinobi2026-07-292026-06-22
- Warlock2026-07-292026-06-29
- UAT-117642026-07-29
- Cisco Talos IR Trends Q2 20262026-07-29
- ArcBridge2026-07-29
- LegacyHive2026-07-29
- Dysphoria2026-07-28
- Cybernox2026-07-27
- Cavern Manticore2026-07-262026-07-222026-07-212026-07-122026-07-09
- DragonForce2026-07-262026-07-192026-07-142026-07-122026-07-10
- JADEPUFFER2026-07-262026-07-212026-07-052026-07-04
- TA49222026-07-262026-07-212026-06-182026-06-052026-06-01
- Cavern2026-07-262026-07-222026-07-212026-07-122026-07-09
- XEntry Team2026-07-262026-07-22
- IFAGE Geneva — DragonForce leak-site claim (850 GB)2026-07-262026-07-192026-07-14
- Cruciferra2026-07-262026-07-21
- HOLLOWGRAPH2026-07-262026-07-222026-07-21
- BravoX2026-07-262026-07-24
- BravoX breach of a Yverdon-les-Bains fiduciary — Vaud municipalities data exposure2026-07-262026-07-24
- msaRAT2026-07-262026-07-24
- TA4582026-07-262026-07-25
- SpyPress2026-07-262026-07-25
- Hades2026-07-262026-07-252026-06-272026-06-142026-06-10
- Thailand Ministry of Finance — Hermes AI-agent-automated intrusion (2026-07)2026-07-262026-07-25
- EU Managed Security Services (EUMSS) certification scheme2026-07-26
- ENISA Health Action Plan Contribution Agreement2026-07-26
- BaFin TeamViewer MAR Article 17 disclosure fine2026-07-26
- FakeAgent2026-07-26
- SectopRAT2026-07-26
- TELESHIM2026-07-26
- MIXEDKEY2026-07-26
- BINDCLOAK2026-07-26
- Microsoft Email Threat Landscape Q2 20262026-07-25
- CyberAv3ngers2026-07-242026-07-19
- Kratos (phishing-as-a-service)2026-07-24
- OilRig2026-07-222026-07-09
- KNDA diplomatic-academy zero-day breach2026-07-22
- Sandworm2026-07-202026-07-132026-06-292026-05-302026-05-25
- UAC-01452026-07-20
- APT422026-07-19
- MuddyWater2026-07-192026-07-092026-05-282026-05-08
- Secret Blizzard2026-07-192026-07-132026-06-292026-06-272026-06-26
- The Gentlemen2026-07-192026-07-182026-07-122026-06-292026-06-27
- World Leaks2026-07-192026-07-16
- Transport for London 2024 intrusion2026-07-192026-07-17
- Check Point Annual AI Security Report 20262026-07-192026-07-14
- Amatera2026-07-192026-07-17
- CrashStealer2026-07-192026-07-14
- Scattered Spider2026-07-192026-07-172026-07-122026-07-102026-06-29
- Static Tundra2026-07-192026-07-13
- Poland energy-sector destructive attack (29 December 2025)2026-07-192026-07-13
- France/EU formal attribution of Turla (FSB Centre 16) espionage against France2026-07-192026-07-13
- Russian hijacking of IP cameras along NATO military-supply routes (2026-07)2026-07-192026-07-13
- AsyncAPI npm supply-chain compromise via GitHub Actions (M-RED-TEAM)2026-07-192026-07-162026-07-14
- M-RED-TEAM2026-07-192026-07-162026-07-14
- bandcampro2026-07-192026-07-14
- Patriot Bait2026-07-192026-07-14
- Storm-31382026-07-192026-07-14
- UNK_pyreq23232026-07-192026-07-15
- UNK_OutFlareAZ2026-07-192026-07-15
- Industrielle Werke Basel (IWB) third-party service-provider data breach (July 2026)2026-07-192026-07-16
- TELEPUZ2026-07-192026-07-16
- Kudankulam nuclear-plant contractor (Reliance Group) third-party-hosting data breach (July 2026)2026-07-192026-07-16
- UAT-117952026-07-192026-07-17
- Starland RAT2026-07-192026-07-17
- HelloNet2026-07-192026-07-17
- HelloNet toolkit2026-07-192026-07-17
- ACR Stealer2026-07-192026-07-172026-05-302026-05-262026-05-25
- Wind Tre vishing + API-enumeration breach (2025)2026-07-192026-07-17
- GoSerpent2026-07-192026-07-18
- TetrisPhantom2026-07-192026-07-18
- ClickLock Stealer2026-07-19
- OTTERCOOKIE2026-07-18
- WLDR2026-07-17
- CastleStealer2026-07-17
- The Syndicate2026-07-162026-07-122026-07-09
- Miasma2026-07-162026-07-142026-06-292026-06-272026-06-14
- Nayax cloud-account incident2026-07-162026-07-122026-07-09
- Pwn2Own Berlin 20262026-07-152026-05-17
- Operation Saffron2026-07-142026-05-222026-05-18
- Progress ShareFile Storage Zone Controller emergency shutdown2026-07-142026-07-13
- prt-scan2026-07-14
- 8882026-07-122026-07-08
- Bitter2026-07-122026-07-10
- UAT-78102026-07-122026-07-08
- Unsafe2026-07-122026-07-09
- FrostyNeighbor March–May 2026 campaign2026-07-122026-07-092026-05-232026-05-182026-05-15
- LSHIY Azure CLI ROPC token-spray2026-07-122026-07-10
- STAC3725 CitrixBleed 2-to-DragonForce IAB chain2026-07-122026-07-10
- CERT.LV LVM/Olpha ransomware intrusion (2026)2026-07-122026-07-10
- FortiBleed2026-07-122026-07-052026-06-292026-06-232026-06-22
- Groupe 3R ransomware breach2026-07-122026-07-092026-05-10
- KDDI email-platform breach2026-07-122026-07-09
- Nextcloud GmbH corporate Elasticsearch data exposure (2026)2026-07-122026-07-10
- Odido (Netherlands telecom) ShinyHunters breach2026-07-122026-07-10
- PDAG email-account compromise2026-07-122026-07-09
- ESET Threat Report H1 20262026-07-122026-07-09
- 'Ghost in the Database' ADFS key recovery2026-07-122026-07-09
- LONGLEASH / SHORTLEASH ORB malware suite2026-07-122026-07-08
- Adobe ColdFusion/Campaign APSB26-68/692026-07-122026-07-08
- UNK_MassTraction2026-07-122026-07-09
- Helix2026-07-122026-07-10
- @injectivelabs/sdk-ts npm supply-chain compromise (2026)2026-07-122026-07-10
- Forg3652026-07-122026-07-10
- Friendly Fire (AI Now Institute exploit)2026-07-122026-07-11
- Armored Likho2026-07-122026-07-11
- BusySnake Stealer2026-07-122026-07-11
- jscrambler npm supply-chain compromise (2026-07)2026-07-12
- GhostApproval2026-07-112026-07-09
- GigaWiper2026-07-11
- Crucio2026-07-11
- FlockWiper2026-07-11
- Hyadina2026-07-11
- PoisonX2026-07-11
- UNC66712026-07-102026-05-252026-05-182026-05-162026-05-11
- WP-SHELLSTORM2026-07-10
- Nightmare Eclipse Windows zero-day series2026-07-092026-06-222026-06-142026-06-122026-06-11
- Apex22026-07-092026-05-222026-05-18
- c2c / meow2026-07-09
- RedHook2026-07-09
- RoguePlanet2026-07-092026-06-222026-06-192026-06-142026-06-12
- IceCube2026-07-09
- UAT-59182026-07-08
- CrySome RAT2026-07-08
- Factory-v32026-07-08
- Kairos2026-07-052026-05-242026-05-192026-05-18
- 0DIN coding-agent prompt-injection chain2026-07-052026-06-29
- Mustang Panda ZOHOMURK2026-07-05
- Popa residential-proxy botnet2026-07-052026-07-042026-06-21
- StegoAd2026-07-052026-06-30
- Phantom Squatting2026-07-052026-07-01
- DHS HSIN breach2026-07-05
- Pegasus infection of PEGA-Committee MEP Stelios Kouloglou2026-07-052026-07-03
- Avalon2026-07-052026-07-04
- PamStealer2026-07-052026-07-04
- Umbrij2026-07-052026-07-01
- Medtronic breach2026-07-032026-05-252026-05-192026-05-18
- Trojanised ScreenConnect AsyncRAT campaign2026-07-02
- Argo CD repo-server unauthenticated RCE2026-07-02
- Bumblebee → AdaptixC2 → Akira intrusion2026-06-30
- Embargo2026-06-292026-05-17
- Gamaredon2026-06-292026-06-262026-06-032026-06-022026-06-01
- Bluekit PhaaS2026-06-292026-06-28
- Cordyceps2026-06-292026-06-25
- Icarus Salesforce OAuth extortion2026-06-292026-06-252026-06-24
- BadBlocker2026-06-292026-06-28
- Mini Shai-Hulud2026-06-292026-06-272026-06-142026-06-092026-06-06
- Operation Endgame — Amadey/StealC takedown2026-06-292026-06-252026-06-222026-06-19
- StrikeShark2026-06-292026-06-27
- macOS.Gaslight2026-06-292026-06-26
- Gogs argument-injection RCE2026-06-292026-06-012026-05-292026-05-25
- Edgecution2026-06-25
- Mistic2026-06-25
- Cloud-bucket hijacking via namespace reuse2026-06-24
- Webworm2026-06-222026-06-172026-05-212026-05-18
- AryStinger2026-06-22
- ErrTraffic2026-06-222026-06-17
- ShinyHunters PeopleSoft campaign2026-06-222026-06-12
- Cybercrime-underground AI adoption2026-06-222026-06-19
- Kyushu Electric SSD loss2026-06-22
- usbliter82026-06-222026-06-20
- AutoJack2026-06-222026-06-20
- Prinz Eugen2026-06-21
- Kodak breach2026-06-20
- CryptoBandits2026-06-19
- Operation Endgame — SocGholish expansion2026-06-19
- ScarCruft2026-06-18
- Zammad 7.1 security release2026-06-18
- DragonForce Backdoor.Turn intrusion2026-06-17
- Rokarolla2026-06-17
- UAT-86162026-06-162026-05-152026-05-11
- UNK_DeadDrop2026-06-16
- Outsider PhaaS2026-06-15
- VerdantBamboo2026-06-142026-06-112026-06-052026-06-022026-06-01
- Atomic Arch2026-06-142026-06-13
- IronWorm2026-06-142026-06-122026-06-062026-06-01
- Velvet Ant Operation Highland2026-06-142026-06-13
- Conti developer Lytvynenko guilty plea2026-06-14
- Cyber Europe 20262026-06-14
- Tchap messenger breach2026-06-14
- NIS2 CJEU referral (France, Spain)2026-06-14
- CrowdStrike 2026 Technology Threat Landscape Report2026-06-142026-06-11
- GreatXML2026-06-142026-06-12
- Agentjacking2026-06-13
- OceanLotus2026-06-12
- OpenClaw agent-phishing disclosures2026-06-12
- JDY botnet2026-06-11
- Ghost-Sender2026-06-10
- Job-seeker targeting wave (CH)2026-06-10
- Security-tool impersonation TDS campaign2026-06-10
- Dragos Q1 2026 Industrial Ransomware Analysis2026-06-10
- Entra Agent ID OBO abuse2026-06-102026-05-302026-05-25
- Fox Tempest2026-06-092026-05-202026-05-18
- C0XMO2026-06-08
- FIFA World Cup 2026 pre-event threat cluster2026-06-08
- OP-5122026-06-062026-06-01
- Silent Ransom Group physical USB intrusions2026-06-062026-06-012026-05-28
- Operation FlutterBridge2026-06-05
- DentaQuest2026-06-052026-06-01
- DesckVB RAT malspam2026-06-04
- Stock-exchange mailbox espionage2026-06-04
- Booking.com-fed hotel phishing (CH)2026-06-042026-06-01
- Operation XENOFISCAL2026-06-03
- Sophos 2026 Active Adversary Report2026-06-032026-06-01
- Operation Dragon Weave2026-06-02
- Ghost Stadium PhaaS2026-06-012026-05-30
- Italian low-cost commercial spyware2026-06-01
- SmartApeSG ClickFix campaign2026-06-01
- TrapDoor2026-06-012026-05-262026-05-25
- Dutch/Belgian/Irish booking-SaaS breach2026-06-01
- EU 20th Russia sanctions package2026-06-012026-05-18
- ENISA NIS360 20262026-06-012026-05-25
- GREYVIBE2026-05-302026-05-25
- Kimsuky2026-05-302026-05-17
- ChatGPhish2026-05-302026-05-25
- LLMShare2026-05-302026-05-25
- ESET APT Activity Report Q4 2025 – Q1 20262026-05-302026-05-25
- Asocks residential-proxy takedown2026-05-29
- JINX-01642026-05-29
- Ababil of Minab2026-05-282026-05-25
- GlassWorm takedown2026-05-28
- AI-chatbot search-poisoning cryptojacking2026-05-28
- Akira kill-chain reconstruction (SANS ISC)2026-05-28
- AFC Ajax fan-data breach2026-05-28
- ILIAS LMS May 2026 fixes2026-05-282026-05-25
- RemotePE2026-05-26
- Underminr2026-05-25
- Megalodon2026-05-242026-05-232026-05-18
- Packagist Laravel-Lang supply-chain wave2026-05-24
- Software-exposed BYOVD hardware-gate bypass2026-05-24
- Kimwolf DDoS-for-hire arrest2026-05-23
- Check Point AI Threat Landscape Digest (Mar–Apr 2026)2026-05-23
- Rapid7 Q1 2026 Threat Landscape Report2026-05-232026-05-18
- SPIP 2026 RCE wave2026-05-232026-05-182026-05-13
- Calypso telco espionage campaign2026-05-222026-05-18
- Verizon 2026 DBIR2026-05-212026-05-18
- PinTheft2026-05-21
- Storm-29492026-05-20
- Storm-2949 SSPR-to-Key-Vault kill chain2026-05-20
- actions-cool/issues-helper compromise2026-05-20
- Sparx Enterprise Architect five-CVE chain2026-05-202026-05-18
- Fast162026-05-19
- INTERPOL Operation Ramz2026-05-192026-05-18
- Living Off the Pipeline2026-05-192026-05-162026-05-11
- ARWINI data exfiltration2026-05-19
- Grafana Labs CoinbaseCartel breach2026-05-19
- PCPJack2026-05-192026-05-182026-05-122026-05-11
- BigBlueButton bbb-web CVE trio2026-05-19
- Rhysida Stuttgart claim2026-05-18
- THORChain vault drain2026-05-18
- FunnelKit Magecart injection2026-05-17
- Gremlin Stealer2026-05-16
- AMD-SB-70522026-05-16
- CL-STA-11322026-05-142026-05-132026-05-122026-05-112026-05-09
- FamousSparrow Azerbaijan intrusion2026-05-14
- Q1 2026 ransomware quarterly synthesis2026-05-14
- GemStuffer2026-05-14
- Foxconn Nitrogen ransomware2026-05-13
- MDASH2026-05-13
- TrickMo C2026-05-13
- Centreon April 2026 vulnerability cluster2026-05-13
- South Staffordshire Water ICO fine2026-05-122026-05-11
- CERT-FR agentic-AI risk report (CERTFR-2026-ACT-016)2026-05-122026-05-08
- GTIG AI Threat Tracker (May 2026)2026-05-122026-05-11
- SMS-blaster smishing (Switzerland)2026-05-11
- EDPB Coordinated Enforcement Framework 20262026-05-11
- Braintrust AWS breach2026-05-10
- DENIC .de DNSSEC outage2026-05-102026-05-09
- JDownloader official site compromised2026-05-10
- Beagle2026-05-10
- DAEMON Tools supply-chain compromise2026-05-09
- Inditex (Zara) breach2026-05-09
- Die Linke ransomware breach2026-05-08
- Eurail breach2026-05-08
- Dragos 2025 OT Cybersecurity Year in Review2026-05-08
- Kaspersky Q1 2026 Exploits and Vulnerabilities Report2026-05-08
- UAT-8302
- DigiCert support-portal compromise
- Mediaworks Kft (Hungary)
- Trellix source-code breach
- ENISA CVE Numbering Authority Root expansion
- EU Cybersecurity Package 2026
- Poland NIS2 transposition
- GTIG Europe Data Leak Landscape 2025
- Europol IOCTA 2026
- Mandiant M-Trends 2026
- Gentlemen RaaS
- ACR Stealer fake-Claude distribution
- AI-brand impersonation malware delivery
- Amazon SES BEC abuse
- APT28 tradecraft evolution 2026
- B1ack's Stash May 2026 card release
- CERT-FR CERTFR-2026-ACT-016
- CERTFR-2026-AVI-0564
- CERTFR-2026-AVI-0572
- Chinese-language PhaaS OTP-relay ecosystem
- BadIIS 'demo.pdb' MaaS backdoor campaign
- CL-STA-1062 TinyRCT campaign
- ClickFix macOS expansion
- IPv4-mapped IPv6 eBanking phishing
- EDPB Coordinated Enforcement Framework 2026
- ENISA expands CVE Numbering Authority Root
- EU Cyber Resilience Act
- EU Cybersecurity Package 2026
- Kali365 PhaaS
- FishMonger Windows SprySOCKS campaign
- FortiSandbox triple exploitation
- Gamaredon GammaPhish / GammaWorm
- Grandoreiro 2026 Iberian campaign
- Potemkin / RMMProject ClickFix campaign
- InstallFix
- Malicious JetBrains Marketplace AI plugins
- npm/Go folderOpen-task infostealer campaign
- Kimsuky HelloDoor / PebbleDash C2 evolution
- macOS ClickFix hdiutil campaign
- Stripe-metadata Magecart skimmer
- Fake 'Perplexity AI' Chrome extension
- Mastra easy-day-js backdoor
- MuddyWater Chaos false-flag
- MuddyWater Q1 2026 DLL side-loading campaign
- M365 voicemail-phishing wave (CH)
- npm dependency-confusion wave 2026
- OceanLotus FireAnt supply-chain compromise
- Malicious OpenClaw ClawHub skills
- 'Photo ZIP' hospitality phishing
- PostCSS npm typosquat campaign
- ROADtools weaponisation (Entra ID)
- Rust crypto-clipper VirusTotal abuse
- WeTransfer steganographic JPEG loader
- ScarCruft NarwhalRAT campaign
- ShapedPlugin Pro supply-chain backdoor
- 'Signal Support' recovery-key phishing
- SVG application/ecmascript phishing wave
- Shai-Hulud copycat wave
- Microsoft Teams external-chat phishing
- The Gentlemen self-propagating encryptor
- Turla STOCKSTAY campaign
- Tycoon2FA post-takedown resurgence
- UAC-0226 GIFTEDCROOK WinRAR exploitation
- UNC6508 INFINITERED campaign
- WhatsApp VBScript RMM campaign
- WordPress Steam-profile C2 malware
- 7-Eleven Salesforce breach
- AdaptHealth contractor session hijack
- ADT Inc. cloud environment breach
- Aflac Japan subsidiary portal breach
- AudiA6 laundering-service takedown
- Awesome Motive CDN supply-chain attack
- Crimenetwork relaunch takedown
- Brazil Cell Broadcast hijack
- BWH Hotels reservation breach
- California Water Service breach (Handala)
- California AG v. 23andMe
- Carnival Corporation breach
- Cellebrite UFED use on Pivovarov
- EFK federal cyber-governance audit
- Checkmarx Jenkins plugin backdoor
- ChipSoft ransomware breach
- CISA/Nightwing GovCloud key exposure
- Clinical Diagnostics NMDL ruling
- CNIL IQVIA fine
- Coupang PIPC record fine
- Dashlane TOTP brute-force
- Dream Market admin arrest
- Drupal core pre-patch warning (PSA-2026-05-18)
- Europol shadow-IT disclosure
- France ANTS breach
- HCRG notification delay
- POST Luxembourg outage (Huawei VRP zero-day)
- London Clinic insider caution
- Markerstudy insider POCA confiscation
- RAC insider POCA confiscation
- Instructure (Canvas LMS) breach
- iRhythm data theft
- Jaguar Land Rover 2025 ransomware
- Lithuania Centre of Registers breach
- Maine breach-portal abuse
- Canton Zürich Baudirektion listing
- Instagram AI-support account takeovers
- Meta v. NSO contempt complaint
- Microsoft DCU Fox Tempest disruption
- Madison Square Garden breach
- Munich LHM-Services breach
- NAIC PeopleSoft breach
- Navient fourth-party ransomware exposure
- NFSP ransomware
- Nidec Chaun Choung ransomware
- Nintendo TinyPulse breach
- Stark Industries hosting arrests
- node-ipc backdoor
- Novo Nordisk data theft
- Nx Console extension compromise
- OFAC Nobitex sanctions
- One Medical legacy-storage breach
- OpenAI supply-chain exposure
- Oxford CareerConnect breach
- Polish water-treatment OT intrusion
- polyfill.io reactivation
- PostHog AWS exploit
- ServiceNow unauthenticated REST exposure
- Charter/Spectrum listing
- Silver Fox arrests
- Škoda online-shop breach
- Spanish doxer arrest
- First observed LLM-agent-driven intrusion
- Texas Parks & Wildlife vendor breach
- The Gentlemen leak-site listings (VSFS, DEVO-Tech)
- UK ICO Commissioner resignation
- UK visa-portal lookalike exposure
- Ukrposhta disruption
- Unimed hospital-billing breach
- Vimeo breach (Anodot)
- West Pharmaceutical ransomware
- UN WFP Gaza registration breach
- Xsolis breach
- LG Berlin II Apobank PSD2 ruling
- CISA BOD 26-04
- EDPB Art. 33 breach-notification template
- ENISA SBOM Adoption State of Play 2026
- Europol mandate-expansion pause demand
- Germany CRA implementation bill
- Germany Cybersicherheitsstärkungsgesetz
- Germany KRITIS-Dachgesetz
- npm staged publishing GA
- npm v12 install-scripts default-off
- Bauman 'Department No. 4' investigation
- Elastic AAD Graph detection guidance
- ESET Gamaredon 2025 annual paper
- 'Safeguarding Our Secrets' bulletin
- NCSC-CH G7 Évian pre-event advisory
- Linux prctl process-masquerading analysis
- NCSC-CH assessment: AI in vulnerability management
- NCSC-UK AI-vulnerability checklist
- Sophos State of Identity Security 2026
- Swiss Threat Landscape Report (Swiss Post)
- Windows COM-abuse analysis (Talos)
- BirdCall
- Datadog Shai-Hulud scanner
- PamDOORa
- QLNX
- AI-orchestrated EDR-evasion lab
- ZiChatBot
- Adaptive AI worm PoC
- Apereo CAS OIDC-provider flaw
- claude-code-action bot-actor bypass
- Cloud-logging defence-evasion taxonomy
- AI-agent FFmpeg zero-day batch
- github.dev OAuth-token theft
- GCP API-key deletion delay
- OpenClaw skills supply-chain surface
- LangGraph checkpointer SQLi→RCE chain
- M365 Android debug-flag OAuth theft
- Mautic 7.1.2/6.0.9 flaw set
- Entra Agent ID AddRemoveCreds priv-esc
- DICOM/Orthanc heap attack surface
- Windows Search URI NTLM leak
- xAI Grok Build CLI whole-repository/secrets exfiltration (July 2026)