Data breach exposed Social Security Numbers @ Pan American Group and Pan-American Life Insurance Group

Pan American Group LLC, a prominent restaurant operator and subsidiary of the Flynn Restaurant Group, recently disclosed a significant data breach that compromised the sensitive information of its workforce. The company, which manages Panera Bread loc...

Unauthorised access exposed ‌internal records of over 1,400 patients @ Novocure

Novocure, a prominent oncology specialist known for its innovative Tumor Treating Fields technology, recently reported a significant cybersecurity event involving unauthorized access to its information systems. The company, which maintains its global ...

Temporary shut down of servers following data breach @ Swiss Bitcoin Pay

Swiss Bitcoin Pay, a non-custodial bitcoin payment processor based in Neuchâtel, Switzerland, recently announced a significant security breach that forced the company to temporarily shut down its servers. The incident, which occurred in September 2026...

Automated script deployed without authorisation by employee to access and download customer records @ Communauto

Communauto, a carsharing service based in Montreal, recently reported a significant security incident involving an insider threat that occurred during the overnight hours of September 3 to 4, 2026. The company detected unusual activity linked to an in...

Unauthorised third party obtained personal information relating to customers @ CenterPoint Energy

In September 2026, CenterPoint Energy, a Houston-based public utility company serving approximately seven million electric and natural gas customers across Texas, Indiana, Minnesota, and Ohio, became the target of a significant data breach. The incide...

Unauthorised attempt to access information technology infrastructure and data extracted @ Duopharma Biotech Bhd

Duopharma Biotech Bhd recently reported a cybersecurity event characterized by an unauthorized attempt to breach its information technology infrastructure. This security incident led to the extraction of a set of data files, which the company noted al...

HAcker claimed access to internal company systems @ Medical Department Store

Medical Department Store, a prominent provider of durable medical equipment and home medical supplies based in Southwest Florida, has been identified as a potential victim of a cyberattack by the ransomware group known as DragonForce. The incident cam...

Cyber incident at third-party service provider @ Bidvest Bank

In September 2026, two prominent South African financial institutions, Bidvest Bank and the online trading platform EasyEquities, issued notifications to their customers regarding potential data breaches involving third-party service providers. Both o...

Certain customer records accessed @ Cell C

Cell C has issued a formal notification to its fibre Internet service provider customers regarding a potential data breach that was reported on September 9, 2026. The incident was identified by a third-party service provider that manages specific comp...

Compromise of personal information via third-party provider @ EasyEquities

In September 2026, several major financial institutions, including EasyEquities, Satrix, and Bidvest Bank, notified their customers of a significant cybersecurity incident involving a third-party service provider. The breach occurred at RelyComply, a ...

Lead by example in cyber

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as threat actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...