Data breach exposed 8.8 million people @ Central Population Register

Denmark recently experienced a massive data breach involving its Central Person Register, known as the CPR, affecting approximately 8.8 million individuals. This figure represents a significant portion of the 11 million records held in the database, w...

Cyberattack exposed sensitive employee data @ GeoTek Inc.

GeoTek Inc. has reached a $150,000 settlement to resolve a class action lawsuit stemming from a targeted cyberattack that occurred in September 2023. This security incident involved unauthorized access to the company’s computer systems, which resulted...

Names, mailing addresses and Social Security numbers exposed @ EdenRed Pay

GlobalvCard LLC, doing business as Edenred Pay, has recently disclosed a significant data security incident that has compromised the personal information of an undisclosed number of individuals. Headquartered in Bonita Springs, Florida, Edenred Pay op...

Outage knocked credit unions offline across multiple states @ Sharetec

In September 2026, a significant infrastructure failure at Sharetec, a major core processor for credit unions, resulted in a widespread outage affecting numerous financial institutions across multiple states. The disruption originated at a data center...

Breach of electronic protected health information (ePHI) of 225,370 individuals @ Ambry Genetics Corporation

Ambry Genetics Corporation, a clinical genomics and genetic testing firm based in Aliso Viejo, California, recently reached a settlement with the U.S. Department of Health and Human Services Office for Civil Rights following a significant data breach....

Social Security numbers and driver’s license numbers compromised @ Big Brothers Big Sisters of Eastern Missouri

Big Brothers Big Sisters of Eastern Missouri is currently the subject of a data breach investigation led by the national consumer protection law firm Federman and Sherwood. This legal inquiry follows a formal notification filed with the Massachusetts ...

Cyberattack affected 15 clients, some funds lost @ Haruko

In September 2026, the London-based cryptocurrency technology provider Haruko was targeted in a sophisticated cyberattack that resulted in the compromise of fifteen institutional clients. Haruko, which provides critical portfolio, risk-management, and...

Customers' personal information assumed after message from hackers @ Asos

In October 2026, the online fashion retailer ASOS became the target of a sophisticated cybersecurity incident that resulted in a significant breach of its cloud infrastructure and mobile application. The attack, which has been identified as a push not...

Privacy rules breached over users’ location data handling @ Google

In September 2026, Ireland’s Data Protection Commission, acting as the lead regulator for the European Union, announced a fine of 403 million euros, approximately 463 million dollars, against Alphabet Inc.’s Google. This penalty resulted from an exten...

Warning for customers to shut down systems @ Kiteworks

In September 2026, Kiteworks, a secure data sharing provider formerly known as Accellion, issued an urgent and unusual advisory to its global customer base. The company recommended that organizations temporarily shut down their servers to mitigate the...

Lead by example in cyber

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as threat actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...