In October 2019, Click2Mail, an email service that enables users to send physical mail, experienced a data breach. The breach was discovered on October 4th, 2019, when customer usernames and email addresses were used to send spam. An investigation re...
Denmark recently experienced a massive data breach involving its Central Person Register, known as the CPR, affecting approximately 8.8 million individuals. This figure represents a significant portion of the 11 million records held in the database, w...
GeoTek Inc. has reached a $150,000 settlement to resolve a class action lawsuit stemming from a targeted cyberattack that occurred in September 2023. This security incident involved unauthorized access to the company’s computer systems, which resulted...
GlobalvCard LLC, doing business as Edenred Pay, has recently disclosed a significant data security incident that has compromised the personal information of an undisclosed number of individuals. Headquartered in Bonita Springs, Florida, Edenred Pay op...
In September 2026, a significant infrastructure failure at Sharetec, a major core processor for credit unions, resulted in a widespread outage affecting numerous financial institutions across multiple states. The disruption originated at a data center...
Ambry Genetics Corporation, a clinical genomics and genetic testing firm based in Aliso Viejo, California, recently reached a settlement with the U.S. Department of Health and Human Services Office for Civil Rights following a significant data breach....
Big Brothers Big Sisters of Eastern Missouri is currently the subject of a data breach investigation led by the national consumer protection law firm Federman and Sherwood. This legal inquiry follows a formal notification filed with the Massachusetts ...
In September 2026, the London-based cryptocurrency technology provider Haruko was targeted in a sophisticated cyberattack that resulted in the compromise of fifteen institutional clients. Haruko, which provides critical portfolio, risk-management, and...
In October 2026, the online fashion retailer ASOS became the target of a sophisticated cybersecurity incident that resulted in a significant breach of its cloud infrastructure and mobile application. The attack, which has been identified as a push not...
In September 2026, Ireland’s Data Protection Commission, acting as the lead regulator for the European Union, announced a fine of 403 million euros, approximately 463 million dollars, against Alphabet Inc.’s Google. This penalty resulted from an exten...
Cyber Security Case Studies has worked with a number of groups to develop these risk effect categories which represent a plain-english description of the impacts seen in public cyber events alongside their definition: