LeMatic Hit by Sinobi Ransomware Attack Data Breach 450GB Stolen

The Sinobi ransomware group claims to have breached LeMatic, a Jackson, Michigan–based leader in automated baking technology (maker of AutoOp® and AutoEye®), and has listed the company on its dark web leak site. Screenshots posted by the actor indicate deep access to LeMatic’s virtualization environment — identifying VMware ESXi hosts esx2.lematic.domain…

Read More
Reseau.Site Data Breach Exposes Personal Info of 73k Customers

Reseau.Site (RS), a French e-commerce platform and business service provider, is alleged to have been compromised after a database containing information on over 73,000 clients was leaked online. The January 2026 exposure includes approximately 30,000 unique email addresses and sensitive customer records, increasing the risk of targeted phishing and identity theft…

Read More
Sinobi Ransomware Breaches FIAMPACK, Ashcraft, JP Research, Active Green + Ross, AHM, Impressico, Gallagher, and Morison

The Sinobi ransomware group claims responsibility for breaching multiple organizations and has listed several victims on its dark web leak site. Reportedly compromised data includes Active Directory dumps with user credentials, proof packs of internal documents and client records, and proprietary files encrypted by the group. #Sinobi #ActiveDirectory…

Read More
0APT Group Breaches Metropolis, Apex, TechnoSoft, GreenValley, Sunrise, Rapid Food, Dr. Smith, Orion

The 0APT group claims to have breached multiple organizations across government, logistics, IT services, education, manufacturing, food distribution, healthcare, and legal sectors. The actor alleges theft of extensive data including PII (SSNs, driver passports, admin emails), financial records, source code and API keys, blueprints and R&D schematics, and sensitive records like…

Read More
Unauthorized RDP Access to Spanish Business Services Organization Allegedly for Sale with Domain Admin Privileges

A threat actor operating as “Saturned33” is auctioning unauthorized RDP and shell access to an unidentified Spain-based business services organization on the Exploit forum. The listing claims Domain Admin and SYSTEM privileges across more than 20 hosts, disabled Windows Defender, access to over 5TB of internal data and two NAS devices,…

Read More
New Zealand E-commerce Store CMS Admin Access Allegedly for Sale with Active Payment Redirect

A threat actor using the handle markopollo is auctioning unauthorized CMS administrator access to an unidentified New Zealand e-commerce store on the Exploit forum. The listing claims admin-level CMS access and a deployed payment redirection intercepting Afterpay, internet banking, and credit card payments, with 4,400 total orders (Oct 1, 2025–Jan 27,…

Read More
Zebra Technologies Allegedly Suffers Major Source Code Data Breach

Zebra Technologies has allegedly been breached, with a threat actor on a popular breach forum claiming responsibility for the theft of extensive internal assets in January 2026. Leaked material reportedly includes source code for core products and acquisitions (Profitect, Antuit), SQL and configuration files, Terraform definitions, API tokens, and client-specific directories…

Read More