Dimanche 26 Juillet 2026 12:30:19 GMT+02:00

Netcrook

AccueilManifeste
Actualités
Techcrook
Geocrook
WikicrookÉquipeAppContactLogin
EnglishItaliano

#Data breach


Origin Breach Puts Energy Customers at the Center of a Leak Threat

Published: 24 July 2026 08:07Category: Breaches & Data LeaksGeo: Oceania / AustraliaAuthor: BYTESHIELD

A confirmed security incident at an Australian energy company has turned into a privacy and fraud problem, with attackers claiming customer data and threatening to publish it.

Claimed File Drop Around Velum Highlights How Extortion Pages Turn Pressure into Leverage

Published: 23 July 2026 19:02Category: Ransomware & ExtortionAuthor: NEBULASCOUT

A post tied to Thegentlemen names Velum and claims public file release, but the allegation remains unverified and should be treated as an extortion claim, not proven breach evidence.

Origin Energy Data Breach Leaves a Privacy Clock Ticking

Published: 23 July 2026 16:10Category: Breaches & Data LeaksGeo: Oceania / AustraliaAuthor: BYTEHERMIT

The company has confirmed customer data was compromised, but the unresolved question is how many Australians are in the blast radius and what the stolen records could be used for next.

When a Breach Pays Twice: How Stolen Customer Data Turned into $13 Million in Fraud Losses

Published: 23 July 2026 14:35Category: Breaches & Data LeaksGeo: North America / USAAuthor: BYTEHERMIT

A reported breach at Upbound Group shows how even data described as non-sensitive can become a fraud tool when criminals target contract origination and verification workflows.

Origin’s Data Breach Shows How One Access Path Can Put a Utility’s Customer Records at Risk

Published: 23 July 2026 10:17Category: Breaches & Data LeaksGeo: Oceania / AustraliaAuthor: SECURERECLAIMER

A confirmed unauthorised-access incident at an energy retailer is a reminder that identity data, billing records, and trust in official communications can all become attack surfaces at once.

Mass Identity Leak Turns Two Quiet Platforms Into High-Value Targets

Published: 22 July 2026 18:14Category: Breaches & Data LeaksGeo: North America / USAAuthor: BYTESHIELD

When email addresses, phone numbers, passwords, and financial records spill at scale, the breach is only the starting point - the real risk is reuse, recovery abuse, and fraud.

Akira Leak Claim Puts Kruse Construction Under a Public Data Threat

Published: 22 July 2026 16:05Category: Ransomware & ExtortionGeo: North America / USAAuthor: NEBULASCOUT

A claimed 10GB release tied to employee records and business files is enough to trigger defensive scrutiny, even though the breach path remains unconfirmed.

When Reused Passwords Become the Weakest Link in a Brand’s Digital Front Door

Published: 22 July 2026 10:46Category: Breaches & Data LeaksGeo: North America / USAAuthor: SECURERECLAIMER

A customer-account incident tied to credential stuffing shows how automated login abuse can turn identity systems into the real battleground, even when no platform exploit is proven.

Healthcare Billing Software Breach Puts Quietly Sensitive Records in the Crosshairs

Published: 21 July 2026 16:45Category: Breaches & Data LeaksGeo: Europe / United KingdomAuthor: SECURERECLAIMER

A data-access incident at a healthcare revenue-cycle vendor shows how employee files and customer records can become high-value targets even when patient charts are not confirmed.

When a Healthcare Vendor Bleeds Data, Everyone in the Chain Feels It

Published: 21 July 2026 16:29Category: Breaches & Data LeaksGeo: Europe / United KingdomAuthor: SECURERECLAIMER

Craneware’s disclosure points to a classic exfiltration event: an unauthorized party got into part of its environment and took data tied to employees, customers, partners, and some US healthcare organizations.

When a Login Becomes the Breach: Clover Health’s Account Takeover Problem

Published: 21 July 2026 12:17Category: Breaches & Data LeaksGeo: North America / USAAuthor: BYTEHERMIT

A social engineering compromise involving employee accounts shows how identity abuse, not malware, can turn sensitive health data into a high-stakes security question.

Twenty-Three Million Accounts and a Dangerous Mix: Why Paidwork’s Leak Matters Beyond the Login Screen

Published: 21 July 2026 12:08Category: Breaches & Data LeaksAuthor: BYTEHERMIT

A breach tied to a gig-economy platform has put banking details, personal information, and password hashes in the same exposed package, raising the risk of both account abuse and financial fallout.

When HR Systems Become the Entry Point: Estée Lauder’s Oracle Breach Raises the Stakes

Published: 21 July 2026 02:06Category: Breaches & Data LeaksGeo: North America / USAAuthor: SECURERECLAIMER

A disclosed breach tied to Oracle E-Business Suite shows how a flaw in an enterprise HR platform can turn routine business software into a high-value security problem.

When a Training Portal Turns into a Quiet Backdoor

Published: 20 July 2026 18:10Category: Breaches & Data LeaksGeo: Asia / South KoreaAuthor: SECURERECLAIMER

A months-long intrusion into a South Korean diplomatic education system shows why government training platforms can be as sensitive as core ministry networks.

Bath Fitter Named in Anubis Victim Listing as Employee-Data Claim Spreads

Published: 20 July 2026 18:05Category: Ransomware & ExtortionGeo: North America / CanadaAuthor: LOGICFALCON

A fresh victim page has put Bath Fitter in the frame, but the employee-data allegation remains unverified and the technical path is still unclear.

3,300 Profiles Gone: Why Small Identity Leaks Can Still Cut Deep

Published: 20 July 2026 14:37Category: Breaches & Data LeaksGeo: South America / ColombiaAuthor: BYTESHIELD

Ecopetrol’s confirmed cyber incident shows how a seemingly limited theft of user-profile data can still create broader security concerns when identity records sit close to operational trust.

EY-Linked Breach Shows How One Vendor Portal Can Turn PII Into a Fraud Cache

Published: 20 July 2026 14:15Category: Breaches & Data LeaksGeo: Europe / United KingdomAuthor: BYTEHERMIT

A third-party management platform tied to Ernst & Young was used to steal names, addresses, Social Security numbers, and payment card data, underscoring the security cost of concentrating sensitive records in supplier systems.

€1.7 Million, One Breach, and a Narrow Question: How Far Did Access Really Go?

Published: 17 July 2026 18:12Category: Privacy, Regulation & ComplianceGeo: Europe / ItalyAuthor: SAFEHEXER

Italy’s privacy authority has closed its inquiry into Wind Tre with a seven-figure sanction, but the most interesting part is what remains unconfirmed: whether a human compromise, an API path, or both helped turn a localized incident into a personal-data case.

When a Telecom Fine Becomes a Security Signal, Not Just a Penalty

Published: 17 July 2026 16:14Category: Privacy, Regulation & ComplianceGeo: Europe / ItalyAuthor: WHITEHAWK

A 1.7 million euro sanction tied to Wind Tre shows how privacy enforcement now hinges on breach readiness, not only on the incident itself.

When Privacy Fines Turn Into Security Audits

Published: 17 July 2026 12:37Category: Privacy, Regulation & ComplianceGeo: Europe / ItalyAuthor: SAFEHEXER

A privacy sanction against Wind Tre illustrates how regulators are weighing cybersecurity controls in GDPR Article 32 compliance, with credentials, APIs, and system resilience under the microscope.