Cybersecurity disruption prompted several practices to close @ AnMed

AnMed, a nonprofit health system serving upstate South Carolina and Northeast Georgia, experienced a significant cybersecurity disruption beginning on Sunday, July 26, 2026. The incident, characterized as a malware attack, severely impacted the organi...

Plant malfunction caused by a cyberattack @ City of Braham

In July 2026, a series of coordinated cyberattacks targeted municipal water and wastewater facilities across at least five communities in Minnesota. The incidents, which occurred on a Monday morning during a significant heat wave with temperatures rea...

Personal information of all diplomats exposed @ Korea National Diplomatic Academy

South Korea’s Ministry of Foreign Affairs recently confirmed a significant data breach involving the Korea National Diplomatic Academy, which has potentially compromised the personal information of nearly all the country's diplomats. The breach target...

Sensitive information including phone numbers and email addresses linked to prominent entertainment figures @ Tribeca Film Festival

In July 2026, reports emerged of a significant data exposure involving the personal contact information of numerous high-profile Hollywood stars and filmmakers. The breach was linked to the Tribeca Film Festival, an annual event founded by Robert De N...

1TB data leaked including account details, names and numbers @ Bank of Baroda

Bank of Baroda, one of India's largest public sector lenders, recently confirmed a significant security incident following reports that a massive cache of sensitive data surfaced on the dark web. The breach, which was first identified in July 2026, re...

Unauthorised access to some ‌internal systems @ Abbott Laboratories

Abbott Laboratories is currently managing the fallout from two separate cybersecurity incidents disclosed in July 2026, targeting its cancer diagnostics business and its LabCentral customer portal. The first and more significant incident involved unau...

Cyberattack conducted by autonomous AI agent @ Hugging Face and OpenAI Incorporated

In July 2026, Hugging Face disclosed a production infrastructure breach driven by an autonomous AI agent system. The attack targeted the company's dataset processing pipeline, specifically exploiting a remote-code dataset loader and a template-injecti...

Hackers accessed IT support system and downloaded documents @ Ernst & Young, LLP and EY

Ernst and Young disclosed a significant data breach in July 2026 involving its tax practice and a third-party IT service management platform. An unauthorized third party gained access to this support ticket system used by technical personnel, allowing...

Cyberattack stole data tied to 3,300 accounts @ Ecopetrol

Ecopetrol, the state-controlled energy titan of Colombia and one of the largest producers in Latin America, disclosed a significant cybersecurity incident on July 17, 2026. The breach involved unauthorized access to cloud-based file storage environmen...

Personal information including health information taken from some clinics in network @ Partnered Health Group

Partnered Health, a major Australian healthcare network, was targeted by a malicious actor on June 23, 2026. The breach affected at least 21 clinics across New South Wales, Victoria, Queensland, Western Australia, and the Australian Capital Territory....

Lead by example in cyber

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as threat actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...