Attackers compromised the update mechanisms of three WordPress plugins and distributed malware to over one million users through a supply-chain vulnerability.
Unauthorized administrator activities in isolated environments require defense-in-depth beyond the authentication layer, as compromises of the auth system can remain undetected for decades.
A publicly accessible ServiceNow API endpoint required no authentication under certain conditions, allowing unauthorized access to sensitive enterprise data.
Anthropic is investigating allegations of a data breach following Claude’s outage on June 5, 2026, but has so far only confirmed infrastructure problems and no additional data incidents.
Cyberattack on external billing service provider leads to data breach of health and personal data of nearly 2,800 patients at Mainz University Hospital.