Claude AI conversation share links were indexed by Google and other search engines, exposing some user-shared chats that contained sensitive information such as wallet private keys and personal data. The issue stemmed from a crawler-indexing misconfiguration, and Anthropic has since requested removal of the exposed links. #ClaudeAI #Anthropic #Google #Bing #Yandex…
Category: Cyber Attack
Primo Caredent Group was the victim of an extortion-based cyberattack, and the incident may also involve the Trebaseleghe center. The company has warned patients not to pay or respond to suspicious messages while it reviews whether patient data was affected. #PrimoCaredentGroup #Trebaseleghe
OnTrac says hackers breached its corporate network and may have accessed customer personal data after files were accessed between March 20 and 22. The company is offering affected customers free credit monitoring and identity protection while investigators work to determine the full scope of the incident. #OnTrac #CyberScout
A threat actor using the name anisanas2 claims to have breached Distamed Morocco and stolen patient records, client data, billing documents, and internal files. The alleged leak also includes a company archive dating back to 2013 and details tied to Moroccan military and public hospitals. #Distamed #anisanas2 #Morocco #CIN…
The CADPE portal tied to the Michoacán State Government in Mexico was allegedly breached, exposing a free direct download of 58GB containing 37,037 documents. The published files reportedly include supplier identity records organized in folders indexed by RFC. #CADPE #MichoacánStateGovernment #Mexico #homercracker #cenfecracked…
SMSA Express is reportedly facing a data exposure claim involving 124.7 million shipment records, including sender and recipient details, commodity descriptions, and declared values. If true, the leaked data could enable highly convincing parcel delivery fraud and reveal private purchasing behavior and relationships between senders and recipients. #SMSAExpress #ShipmentRecords #ParcelFraud…
Podomoro University Allegedly Breached, 75 Databases and Full Website Source Code Offered for $7,000
A seller using the name LordVoldemort claims to be offering a full compromise of Podomoro University in Indonesia, including 75 databases and the university’s website source code, for $7,000 in cryptocurrency. The alleged data spans academic, financial, HR, and IT systems, but the claim remains unverified. #PodomoroUniversity #LordVoldemort…
A forum post claims BENY New Energy suffered a breach that exposed user records and screenshots of a live database session. The more serious concern is possible visibility into EV charging management, firmware management, and device monitoring platforms tied to BENY’s grid-connected products. #BENYNewEnergy #OCPP…
IJsstadion Thialf in Heerenveen was targeted in a ransomware attack attributed to The Gentlemen, who claimed to have stolen internal documents, employee data, and financial contracts. The venue said the impact was minimal and that investigations confirmed its operations and data were not affected or put at risk. #TheGentlemen #IJsstadionThialf
Zoner, a Finnish web services provider, suffered a security breach that disrupted websites and email accounts for about 1,800 of its 58,000 customers. The company took affected servers offline, is restoring backups, and has found no signs of mass data copying or customer data loss. #Zoner #Finland
Brinks Home reported a cyberattack that led to unauthorized access to its systems and an implied extortion attempt, with attackers threatening to leak stolen information. The company activated its response plans, conducted a forensic investigation that did not confirm any compromise, and advised customers to remain vigilant. #BrinksHome
Kootenai County, Idaho disclosed a March data breach four months later, revealing that hackers accessed Social Security numbers, fingerprints, and private medical and financial information. The county says it shut down the intrusion quickly, refused to pay the ransom, and is offering affected residents one year of credit monitoring. #KootenaiCounty #BruceMattare
A forum user named riche allegedly posted a scraped B9/Bnine.com dataset containing about 36,000 records with sensitive personal and financial details, including partial SSNs and dates of birth. The claim is unverified, but the reported data could enable identity theft and targeted fraud against B9 customers. #B9 #Bnine.com #riche…
A threat actor using the alias konata_izumi_shell claims to have leaked Bolivia’s Ministry of Health and Sports SSSRO database, exposing 41,406 SQL records tied to rural health interns. The alleged dump includes highly sensitive personal, academic, and location data, but the claim remains unverified. #Bolivia #MinistryofHealthandSports #SSSRO #konata_izumi_shell…
A forum user known as 888 allegedly published a PokemonGym.nl database containing about 19,600 player accounts, with usernames, email addresses, IP data, and Argon2id password hashes. The post also claims to include full private messages from the Dutch online Pokémon RPG, but the breach remains unverified. #PokemonGymnl #888 #Argon2id…