Menu
Browse
Create a free account to filter
Date Victim Location Sources Updated Summary
Aug 2022 국립현대미술관
South Korea
1 source 2025-10-17 A cyberattack compromised multiple South Korean government YouTube channels, including the National Museum of Modern and Contemporary Art's account, over several days. The attackers renamed the government's primary channel to "SpaceX Invest" and livestreamed unauthorized content, while the Korea Tourism Organization's channel temporarily lost segments of its popular video series. All affected channels were subsequently restored, with investigations ongoing by Google and Seoul cyber police to determine the breach's origin. The targeted accounts were confirmed to be managed internally by respective agencies, prompting emergency meetings to evaluate preventive measures, including potential backup subchannels for critical content.
Oct 2015 000Webhost
Lithuania
1 source 2026-02-01 A free web hosting service suffered a breach exposing approximately 13.5 million customer credentials stored in plaintext, with compromised data including usernames and passwords. The incident revealed multiple security failures, including unencrypted signup pages transmitting credentials visibly in address bars and outdated forum software with known vulnerabilities. The company initially ignored repeated breach notifications from security researchers and media, though it later silently reset user passwords without direct notifications while deleting social media posts referencing security concerns. Following public exposure, the firm acknowledged unauthorized system access via an exploit in outdated software, temporarily disabled certain functionalities, and initiated password resets with enhanced encryption. Its parent firm apologized for the incident, engaged law enforcement, and claimed premium services remained unaffected while advising customers to change credentials.
Apr 2026 0APT
None
1 source 2026-07-17 0APT and KryBit engaged in a mutual data leak after it falsely claimed attacks on several ransomware groups and KryBit responded by exposing its infrastructure and leaking its operational files. The exchange revealed KryBit’s own administrators, affiliates and potential victims, while the initial victim list was shown to be fabricated and its leak site remained defaced by KryBit.
Jul 2019 0v1ru$
Russia
1 source 2025-12-16 A hacking group known as 0v1ru$ compromised SyTech, a contractor for Russia's primary security agency, exposing multiple sensitive projects including social media scraping targeting platforms like Facebook and LinkedIn, efforts to de-anonymize Tor browser users, and preparatory work for a sovereign Russian internet infrastructure. The stolen data, shared with the broader hacking collective Digital Revolution and disseminated to media outlets, revealed operational details such as project codenames and managerial roles but reportedly contained no state secrets. Described as potentially the largest breach in the agency's history, the incident highlighted vulnerabilities in intelligence supply chains through third-party contractors, with attackers defacing SyTech's website and mocking the agency's security posture.
Oct 2020 104 Job Bank
Taiwan
1 source 2025-10-28 Chinese hackers compromised a Taiwanese job bank, stealing personal data of nearly six million individuals—approximately half of Taiwan's workforce—in the country's largest recorded data breach. The stolen information, sold on dark web forums for $500 to $1,000 per dataset, included historical records with persistent personal details. Attackers communicated in simplified Mandarin and claimed responsibility for breaching the employment platform while indicating other sites were also compromised. Authorities attributed the incident to actors based in China following their investigation into the dark web transactions.
Apr 2020 10x Genomics
United States of America
1 source 2025-10-31 A ransomware attack targeted a California-based COVID-19 research firm, 10x Genomics, conducted by the REvil group using Sodinokibi malware. The attackers exfiltrated over 1 TB of data including secure storage systems and threatened to release the information unless contacted, subsequently leaking some files on dark web platforms. The disclosed materials were later removed by hosting services for violating terms of service. The incident was formally reported through regulatory filings, highlighting unauthorized access to sensitive data and operational systems during critical pandemic-related research activities.
Mar 2020 118 118 Money
United Kingdom
1 source 2025-10-31 A financial division of a UK directory enquiry service parent company experienced unauthorized system access, prompting an immediate shutdown of its network and website to investigate the breach. Customers were notified of the incident, though the extent of data compromise remained unclear during the ongoing probe. Operational impacts included suspended new loan and credit card applications while existing credit card functionality continued unaffected. The affected entity, specializing in high-interest personal loans and subscription-fee credit cards targeting borrowers with low credit scores, maintained customer support via limited channels amid heightened call volumes. The website remained offline for multiple days as the parent organization worked to restore services without confirming specific attack methods or data exposure.
Apr 2024 1+1 Media Group
Ukraine
1 source 2025-12-31 A Ukrainian media group experienced a cyberattack disrupting satellite television broadcasts for its channels. The incident impacted 1+1 Media Group's broadcasting operations, though specific technical details about the attack vector or responsible actors weren't disclosed. The disruption affected satellite TV services, a critical distribution method for the media company. No additional information regarding data compromise, financial demands, or recovery timelines was provided in available reports.
Jan 2017 123-Reg
United Kingdom
1 source 2025-12-08 The hosting provider 123-Reg experienced a distributed denial-of-service (DDoS) attack that disrupted customer email access and website functionality, prompting public acknowledgment via Twitter as engineers worked to mitigate the incident. Service was restored within hours after traffic rerouting efforts successfully resolved the attack, though this marked a recurrence following previous similar disruptions. The company apologized for inconveniences caused, having faced multiple high-volume DDoS incidents in prior years alongside an unrelated past infrastructure error that severely impacted business clients.
Aug 2016 123-Reg
United Kingdom
1 source 2025-12-09 A UK-based web hosting provider experienced a significant DDoS attack targeting its primary data center, causing widespread service disruptions including website outages, intermittent access to control panels, and email service failures. The company's mitigation systems curtailed most of the attack impact, though customers reported prolonged connectivity issues across platforms during and after the incident. Social media platforms saw numerous user complaints regarding unresolved service interruptions despite the provider declaring network restoration.
Nov 2020 123RF
Malaysia
1 source 2025-11-21 A popular stock photo service suffered a data breach when hackers compromised a server and exfiltrated approximately 8.3 million user records, later offering the database for sale on a hacker forum. The stolen information included full names, email addresses, MD5-hashed passwords, company details, phone numbers, physical addresses, PayPal-associated emails, and IP addresses, though no financial data was exposed. The affected organization confirmed the incident involved outdated membership records and initiated law enforcement collaboration while implementing enhanced security measures like stricter password policies and suspicious login detection. Analysis revealed the hashed passwords were vulnerable to cracking techniques, potentially exposing reused credentials across other platforms.
Mar 2025 13cabs
Australia
1 source 2026-03-24 The organization became aware of suspicious activityindicating that some app user accounts had been compromised, likely using data obtained from the dark web. It forced password resets for the initially identified accounts and later expanded the resets after discovering that about one percent of all accounts were affected, while engaging external cybersecurity experts to investigate and secure the system. The accessed information included usernames, phone numbers, addresses, and eligibility indicators for a subsidy scheme, but no payment card or bank data was taken, and the organization notified the relevant privacy regulator and law enforcement.
Apr 2016 17 Media
Taiwan
1 source 2025-12-10 A streaming application suffered a significant data breach where a hacker advertised stolen user information, including email addresses, weakly protected passwords, phone numbers, IP addresses, and device details. The compromised dataset, claimed to encompass 30 million accounts, was partially shared as proof in the listing. This incident exposed sensitive personal identifiers and authentication credentials linked to the platform's user base.
Feb 2016 1-800-FLOWERS
United States of America
1 source 2025-12-11 1-800-FLOWERS experienced unauthorized access to its e-commerce platform following customer reports of transaction issues, prompting an investigation that identified a breach window spanning approximately 33 hours. An attacker potentially exposed customer order information including names, addresses, email addresses, and payment card details, though the company did not confirm specific data compromise. No malicious use of affected information had been reported at the time of disclosure, with payment card monitoring advised as a precautionary measure for impacted customers.
Aug 2014 1-800-FLOWERS
Canada
1 source 2026-01-18 The Canadian division of 1-800-FLOWERS experienced a multi-year breach compromising customer payment card information, including names, card numbers, expiration dates, and security codes, through its e-commerce platform. Unauthorized access was confirmed following alerts about suspicious activity, prompting the company to redesign its website and implement enhanced security measures while coordinating with payment card networks. The incident exclusively affected the Canadian operation, with no impact on U.S.-based transactions.
Nov 2022 1st Franklin Financial Corporation
United States of America
1 source 2025-10-15 1st Franklin Financial Corporation experienced a cyberattack resulting in unauthorized access to its IT network, compromising sensitive consumer data including names, Social Security numbers, bank account and routing numbers, and credit report information. The financial services provider secured its systems, initiated an investigation confirming the breach, and reviewed affected files to identify impacted individuals before issuing notification letters. The incident exposed confidential customer information provided during loan applications, raising concerns about the organization's data protection practices.
Aug 2025 1st MidAmerica Credit Union
United States of America
2 sources 2026-07-18 1st MidAmerica Credit Union learned that its vendor Marquis Software Solutions detected suspicious activity on its network and determined that an unauthorized third party had gained access and may have acquired files containing customers' personal information such as names and Social Security numbers. The law firm Edelson Lechtzin LLP is investigating potential data privacy claims on behalf of affected individuals regarding this incident.
Dec 2022 1 Stop Title Loans and Motor Vehicle Services
United States of America
1 source 2025-10-15 A Phoenix-area provider of title loans and authorized third-party motor vehicle services experienced a cybersecurity breach that temporarily disrupted access to certain network systems. The incident impacted the company's operations, though specific details regarding compromised data and the number of affected customers remain undetermined pending investigation. While the organization confirmed all locations resumed full functionality, it emphasized ongoing efforts to assess the breach's scope and committed to notifying individuals if necessary. Arizona's transportation department clarified that its core MVD customer information system was not compromised through this third-party provider but indicated plans to review security protocols with the company to reinforce data safeguards.
May 2023 1st Source Bank
United States of America
1 source 2026-07-14 The Clop ransomware gang exploited a critical vulnerability in the MOVEit Transfer file transfer tool to compromise 1st Source and numerous other organizations. The gang listed the financial services firm on its dark web leak site, claiming to have downloaded a significant amount of its data. The incident was part of a widespread mass-hack affecting entities across multiple sectors, including banking, education, and government services.
Jun 2023 1st Source Bank
United States of America
2 sources 2026-07-14 1st Source Bank experienced a data breach stemming from a zero-day vulnerability in the MOVEit file transfer software used by the organization. An unauthorized third party exploited this weakness to access sensitive client data, including personally identifiable information and Social Security numbers, affecting approximately 450,000 individuals. The bank promptly deployed patches and cybersecurity defenses upon discovery, contained the vulnerability, and offered complimentary credit monitoring and identity restoration services to impacted clients.