Explore cloud, identity, Microsoft 365, AWS, Azure, and software-as-a-service security developments. Coverage emphasizes exposure, access control, detection, and recovery implications.
Latest intelligence
August 27, 2026
$1.75M American Vision Partners Settlement Ends Data Breach Lawsuit Over 2023 Incident
Threat Intelligence Brief Curated summary with source attribution Source: classaction.org Threat Risk: MediumVictim: Healthcare practice management groupIncident: A November 2023 data breach involving the…
August 27, 2026
Next.js Patches Critical AVIF and Windows Flaws Enabling Unauthenticated RCE
Threat Intelligence Brief Curated summary with source attribution Source: thehackernews.com Threat Risk: HighVictim: Organizations using self-hosted Next.js applicationsIncident: Discovery and patching of two critical…
August 27, 2026
CISA Adds Six Exploited Flaws to KEV, Including NetScaler, Linux, and SQL Server Bugs
Threat Intelligence Brief Curated summary with source attribution Source: thehackernews.com Threat Risk: HighVictim: Global organizations in education, media, technology, and gamingIncident: Active exploitation of…
August 26, 2026
Ascent Global Logistics Data Breach Lawsuit Investigation
Threat Intelligence Brief Curated summary with source attribution Source: claimdepot.com Threat Risk: MediumVictim: Ascent Global LogisticsIncident: Unauthorized access and data exfiltration via a compromised…
August 26, 2026
Large Atlanta law firm hit with data breach and associated lawsuit
Threat Intelligence Brief Curated summary with source attribution Source: ajc.com Threat Risk: HighVictim: Troutman Pepper LockeIncident: A data breach caused by a social engineering…
August 26, 2026
Hack of water sector supplier draws FBI scrutiny as Iran-linked cyber concerns grow – Water Education Foundation
Threat Intelligence Brief Curated summary with source attribution Source: watereducation.org Threat Risk: HighVictim: Micro-Comm (Water utility technology supplier)Incident: A ransomware attack and data breach…
August 26, 2026
NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions
Threat Intelligence Brief Curated summary with source attribution Source: thehackernews.com Threat Risk: HighVictim: Organizations using Microsoft 365, Okta, or Entra IDIncident: Deployment of the…
August 26, 2026
Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code
Threat Intelligence Brief Curated summary with source attribution Source: thehackernews.com Threat Risk: HighVictim: Organizations using Kaltura video management servicesIncident: Disclosure of two critical unpatched…
August 25, 2026
Mirage2FA Surge Hits 4,500 US and EU Companies, Abusing Microsoft 365 Login Flows
Threat Intelligence Brief Curated summary with source attribution Source: thehackernews.com Threat Risk: HighVictim: Microsoft 365 users in Technology, Manufacturing, and Education sectorsIncident: Widespread session-hijacking…
August 25, 2026
Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access
Threat Intelligence Brief Curated summary with source attribution Source: thehackernews.com Threat Risk: HighVictim: WordPress site administrators using miniOrange SAML pluginIncident: Active exploitation of CVE-2026-61979…
August 24, 2026
Central Maine Healthcare to settle data breach lawsuit for $1.3M
Threat Intelligence Brief Curated summary with source attribution Source: bangordailynews.com Threat Risk: MediumVictim: Central Maine HealthcareIncident: Unauthorized third-party access to personal information of over…
August 21, 2026
ASOS Data Breach Lawsuit Investigation
Threat Intelligence Brief Curated summary with source attribution Source: claimdepot.com Threat Risk: MediumVictim: ASOS US Sales LLCIncident: A data breach resulting in the exposure…
August 20, 2026
Four local institutions did not violate privacy laws in Canvas hack, privacy watchdog rules
Threat Intelligence Brief Curated summary with source attribution Source: thestandard.com.hk Threat Risk: MediumVictim: Higher education institutions in Hong KongIncident: Data breach resulting from vulnerabilities…
August 20, 2026
Advanced Power Services Data Breach Lawsuit Investigation
Threat Intelligence Brief Curated summary with source attribution Source: claimdepot.com Threat Risk: HighVictim: Advanced Power Services (NA) LLCIncident: A ransomware attack involving unauthorized network…
August 20, 2026
NASA AIT-GUI Flaws Could Let Unauthenticated Attackers Issue Spacecraft Commands
Threat Intelligence Brief Curated summary with source attribution Source: thehackernews.com Threat Risk: HighVictim: Space agency ground system operatorsIncident: Discovery of a critical vulnerability chain…
August 19, 2026
Hacker claims massive employee data haul from major companies’ Azure accounts
Threat Intelligence Brief Curated summary with source attribution Source: computing.co.uk Threat Risk: HighVictim: Global enterprises utilizing Microsoft Azure/EntraIncident: Mass extraction of employee directory data…
August 19, 2026
Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation
Threat Intelligence Brief Curated summary with source attribution Source: thehackernews.com Threat Risk: HighVictim: Global enterprises and government agenciesIncident: Active exploitation of four critical vulnerabilities…
August 18, 2026
River City Data Incident Exposes SSNs; Lawsuit Possible
Threat Intelligence Brief Curated summary with source attribution Source: classaction.org Threat Risk: HighVictim: River City Data and its healthcare/legal clientsIncident: Unauthorized access and exfiltration…
August 18, 2026
Hacker claims millions of records stolen from corporate Azure tenants – Help Net Security
Threat Intelligence Brief Curated summary with source attribution Source: helpnetsecurity.com Threat Risk: HighVictim: Fortune 500 CompaniesIncident: Mass exfiltration of employee directories from multiple corporate…
August 17, 2026
Hacker claims 3.6 million Azure account records stolen from major companies
Threat Intelligence Brief Curated summary with source attribution Source: bleepingcomputer.com Threat Risk: MediumVictim: Fortune 500 companies including McDonald’s, Vodafone, and Tata Consultancy ServicesIncident: Alleged…
August 17, 2026
NFI North Data Breach Exposes SSNs, Medical Info; Lawsuit Possible
Threat Intelligence Brief Curated summary with source attribution Source: classaction.org Threat Risk: MediumVictim: North American Family Institute (NFI North)Incident: Unauthorized network access leading to…
August 17, 2026
Global Firms Hit By Major Azure Data Breach
Threat Intelligence Brief Curated summary with source attribution Source: cybersecurityintelligence.com Threat Risk: HighVictim: Global enterprises including McDonald’s, Vodafone, and TCSIncident: Unauthorized export of employee…
August 17, 2026
Azure Cloud Credential Theft leads to Data Breach of McDonald’s and Vodafone – Cybersecurity Insiders
Threat Intelligence Brief Curated summary with source attribution Source: cybersecurity-insiders.com Threat Risk: HighVictim: Multi-industry global corporationsIncident: Theft of Azure cloud credentials leading to the…
August 17, 2026
Beacon CRM Data Breach Exposes Personal Data of Over 1,000 UK Charities in AWS Credential Compromise – Rescana
Threat Intelligence Brief Curated summary with source attribution Source: rescana.com Threat Risk: MediumVictim: Beacon CRM and over 1,000 UK charitiesIncident: Data breach via compromised…