Taiwan HVAC Engineering Association Data Breach by Hexvior Group

The Taiwan HVAC Engineering Association (THA) has reportedly suffered a significant data breach exposing administrative records and tender-related information. Leaked data appears to include full names, email addresses, usernames and plain-text passwords, IP addresses and session IDs, contact details, personal demographics, and government tender documents. #TaiwanHVACEngineeringAssociation #TaichungCityLixingElementarySchool #BadeExteriorPrison…

Read More
WoundTech Data Breach Exposes 160,000 Sensitive Patient Records

WoundTech, a Florida-based wound care provider, was allegedly compromised in a catastrophic breach that exposed roughly 3.8TB of data and over 160,000 unique patient records, including graphic clinical photographs and unredacted medical narratives. The group Fulcrum Security claims to have exploited unencrypted S3 buckets and Terraform state-file credentials, released an investigation…

Read More
Exploit Pack Breach: Full Repository of Exploits and Shellcodes Leaked

Exploit Pack, an automated penetration testing framework and exploit repository, has reportedly been compromised after an unauthorized actor claimed to exploit a vulnerability on exploitpack.com and exfiltrate restricted data. The leaked file listing allegedly contains a full exploit repository covering 2020–2026, shellcodes, source code for PoCs, and promises future premium releases…

Read More
Alleged Sale of Uganda Public Service Commission Job Application Database Containing 7.5 GB of Applicant Records

A threat actor using the handle Daku has posted a listing claiming to sell a 7.5 GB database extracted from the Uganda Public Service Commission’s online job application portal. The alleged dataset reportedly contains applicant records from vacancies.psc.go.ug, posing a high-severity exposure of recruitment and personal data. #Daku #UgandaPublicServiceCommission…

Read More
Cyberattack on TU Wien Triggers Password Resets and Investigations

The Technical University of Vienna (TU Wien) experienced a security breach in its network that resulted in compromised accounts and possible access to sensitive data. Systems are operating with restrictions while employees and students must reset their passwords; the university has informed the data protection authority and is investigating with an external cybersecurity firm. #TUWien #tuwien.at

Read More

WalutaTu, an Italian online platform providing certified market valuations for used vehicles, was allegedly compromised after a threat actor posted on a cybercrime forum claiming to have uploaded the company’s database. The breach reportedly exposes internal records including full names, VINs, license plates, vehicle specifications, technical details, and internal user IDs…

Read More
Paa.ge Data Breach: 33 Million Rows of Customer and Order Data Put for Sale

Paa.ge, a link-in-bio and e-commerce platform backed by Lama.co infrastructure, has allegedly been breached with a threat actor listing nearly 33 million rows of data for sale. Samples indicate widespread exposure of customer personal information, shipping addresses, order and gift card details across multiple Paa.ge storefronts, including Envie Le Banquet and…

Read More
Alleged Sale of Unauthorized Admin Panel and Shell Access to UK Magento E-commerce Store Processing 400+ Monthly Orders

A threat actor using the handle “JustAnon69” posted an auction on the Exploit forum offering unauthorized admin panel credentials and web shell access to a UK-based Magento e-commerce store. The seller provided SQL outputs showing the site processes over 400 monthly orders (primarily via Stripe), with the auction starting at $2,000…

Read More
Semsar Masr Data Breach Exposes Over 185,000 User Records

Semsar Masr, an Egyptian real estate marketplace operating since 2007, has allegedly been compromised with a database leak exposing over 185,024 member profiles. The leaked data reportedly includes full names, emails, phone numbers, plaintext passwords, physical addresses, social links, account activity logs, and other personal identifiers. #SemsarMasr #MemberProfiles…

Read More
The Digital Sanctuary: Apple’s 10 Essential Privacy Rules for 2026

Apple highlights ten integrated privacy features across the iPhone and ecosystem to mark International Data Privacy Day, urging users to review settings that shield personal data. Key protections include Safari’s enhanced anti-tracking and locked private tabs, the Passwords app, Hide My Email, recording indicators, approximate location sharing, and new capabilities like…

Read More