Cyberattack conducted by autonomous AI agent @ Hugging Face

In July 2026, Hugging Face disclosed a production infrastructure breach driven by an autonomous AI agent system. The attack targeted the company's dataset processing pipeline, specifically exploiting a remote-code dataset loader and a template-injecti...

Hackers accessed IT support system and downloaded documents @ Ernst & Young, LLP and EY

Ernst and Young disclosed a significant data breach in July 2026 involving its tax practice and a third-party IT service management platform. An unauthorized third party gained access to this support ticket system used by technical personnel, allowing...

Cyberattack stole data tied to 3,300 accounts @ Ecopetrol

Ecopetrol, the state-controlled energy titan of Colombia and one of the largest producers in Latin America, disclosed a significant cybersecurity incident on July 17, 2026. The breach involved unauthorized access to cloud-based file storage environmen...

Personal information including health information taken from some clinics in network @ Partnered Health Group

Partnered Health, a major Australian healthcare network, was targeted by a malicious actor on June 23, 2026. The breach affected at least 21 clinics across New South Wales, Victoria, Queensland, Western Australia, and the Australian Capital Territory....

Personal and confidential information compromised @ Lucent Health Solutions

In February 2025, Murphy Law Firm announced an investigation into potential legal claims related to a data breach impacting Lucent Health Solutions, LLC. The breach, detected on October 2, 2023, involved unauthorized access to Lucent Health's computer...

Ransomware gang claimed to have stolen sensitive engineering data from through a breach of technology company @ Bosch

The D1R ransomware gang has recently targeted the German multinational engineering firm Bosch, claiming to have exfiltrated sensitive proprietary data. This incident is categorized as a third-party supply chain breach, as the attackers assert that the...

Data breach affected more than 540,000 individuals @ Centers Laboratory

Centers Laboratory, a healthcare diagnostics provider based in Cedar Knolls, New Jersey, experienced a significant data breach that compromised the sensitive information of approximately 542,377 individuals. The incident involved unauthorized access t...

60,000 individuals' sensitive personal information compromised @ Blue Fish Pediatrics

Blue Fish Pediatrics, a prominent healthcare provider headquartered in Houston, Texas, has officially disclosed a major data security incident that resulted in the compromise of sensitive personal and medical information belonging to more than 60,000 ...

Data breach exposed consumers' sensitive information @ First National Holdings LLC

First National Holdings, LLC, which also operates under the name First National Assets, recently disclosed a significant data security incident involving the unauthorized access and potential theft of sensitive personal information. As a private finan...

Unauthorised access to sensitive personal and financial data @ Premier Select Sires, Inc.

Premier Select Sires, Inc., a prominent farmer-owned cooperative headquartered in Tunkhannock, Pennsylvania, recently disclosed a significant data breach involving unauthorized access to its internal systems. The organization, which provides essential...

Lead by example in cyber

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as threat actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...