Threat Actors Claim Expanded BMW Breach With IDOR Exploit, Employee and Customer PII, and Data From Mazda, Toyota, Audi, Ford, and 32 Additional Automakers

Threat actor xpl0itts claims their earlier BMW IDOR and document breach has expanded significantly through collaborations with DarkRomance, teamPCP, and another group, with exfiltration still ongoing. They report tens of thousands of employee and customer PII records, VINs, Kubernetes and configuration data, an IDOR exploit for sale, and data from Mazda,…

Read More
Threat Actors Claim Expanded BMW Breach With IDOR Exploit, Employee and Customer PII, and Data From Mazda, Toyota, Audi, Ford, and 32 Additional Automakers

Heritage Financial Corporation disclosed on March 20, 2026 that it detected a cyberattack on February 2, 2026 targeting an internal file-sharing server which may have resulted in the exfiltration of potentially personal data. The company says it activated its incident response plan, isolated the affected system, notified authorities, and that business operations and customer accounts were not impacted while the incident is under evaluation and no material financial impact has been identified to date. #HERITAGEFINANCIALCORP #internal-file-sharing-server

Read More
Rogers Communications & Fido Data Breach Exposes Records

Rogers Communications and its subsidiary Fido have allegedly suffered a data breach, with an unknown seller claiming to offer a database containing 10.9 million lines of customer information. The dataset—reportedly including account numbers and aliases, account types and subscriber statuses, full billing addresses, home phone numbers, and language preferences—is being offered…

Read More
Threat Actors Claim Expanded BMW Breach With IDOR Exploit, Employee and Customer PII, and Data From Mazda, Toyota, Audi, Ford, and 32 Additional Automakers

The San Felipe-Del Rio school district in Texas reported a widespread disruption of internal, in-network systems—including internet and telephone—after suspicious activity was detected on March 18. Telephone service was restored quickly and schools remained open while full restoration of internal systems continues under monitoring; there is no public confirmation of ransomware, data theft, or an identified attacker. #SanFelipeDelRioSchoolDistrict #SFDRCISD

Read More
Safepay Hacks Navigator, Matt&Steve’s, Briway, Tiefenbacher, Brooker

The Safepay ransomware group claims to have breached multiple organizations worldwide across diverse industries. The group’s latest alleged victim list includes The Navigator Company, Matt & Steve’s, Briway Carriers, the Tiefenbacher Group, and Brooker Construction Group, but the specific types of allegedly exfiltrated data have not been disclosed. #Safepay #TheNavigatorCompany #MattAndSteves…

Read More
ShinyHunters Attack Hits Infinite Campus and Ameriprise

The ShinyHunters group claims to have breached two major organizations—Infinite Campus and Ameriprise Financial—and issued a final warning demanding contact by March 25, 2026 before releasing the compromised data. Allegedly compromised data includes Salesforce records, personally identifiable information, internal corporate data, and over 200GB of compressed SharePoint files from Ameriprise. #ShinyHunters…

Read More
The ā€œAccidentalā€ Breach: How a Misconfigured Endpoint Led to a Major SharePoint Data Leak

A Trend Micro case study shows a major data exfiltration incident caused by simple misconfigurations and poor credential hygiene, beginning with an exposed Spring Boot Actuator endpoint that revealed a SharePoint service account and host URL. Attackers combined plaintext client secrets from a spreadsheet with the ROPC flow to obtain an…

Read More
Threat Actors Claim Expanded BMW Breach With IDOR Exploit, Employee and Customer PII, and Data From Mazda, Toyota, Audi, Ford, and 32 Additional Automakers

Westport Fuel Systems reported on March 17, 2026 that unauthorized access to parts of its network affected internal IT applications and business information. Although production systems and day-to-day operations were not disrupted, the company delayed filing its 2025 annual financial results past the March 31, 2026 deadline to perform additional reviews, and TipRanks issued a neutral stock rating noting weak financial performance despite operational resilience. #WestportFuelSystems #TipRanks

Read More

Westport Fuel Systems reported unauthorized access to portions of its network on 17 March 2026, affecting internal IT applications and business information. The company delayed filing its 2025 annual financial results beyond the 31 March 2026 regulatory deadline to perform additional checks, and TipRanks’ AI gave a neutral rating citing weak financial performance despite operational resilience. #WestportFuelSystems #TipRanks

Read More
Threat Actors Claim Expanded BMW Breach With IDOR Exploit, Employee and Customer PII, and Data From Mazda, Toyota, Audi, Ford, and 32 Additional Automakers

Mutuelle Familiale (Family Mutual) suffered a cybersecurity incident on March 17, 2026 that caused a temporary disruption of its services and potentially affects more than 113,000 policyholders. Investigations are ongoing to determine the origin of the intrusion, and the insurer urges members to remain vigilant against any suspicious solicitations. #MutuelleFamiliale #mutuelle-familiale.fr

Read More