Related Threat Clusters
-
ShinyHunters Exploits Oracle PeopleSoft Zero-Day Vulnerability
A critical zero-day vulnerability (CVE-2026-35273) in Oracle PeopleSoft has been exploited by the ShinyHunters group, leading to breaches of over 100 organizations, primarily in the education sector. The vulnerability…
65 articles · Updated June 11, 2026 -
Supply Chain Attack on node-ipc npm Package Exposes 822K Downloads to Credential Theft
A supply chain attack on the node-ipc npm package has compromised three versions (9.1.6, 9.2.3, 12.0.1) with credential-stealing malware. The attack exploited an expired domain to hijack a dormant maintainer account,…
11 articles · Updated May 15, 2026 -
Teen Hacker Extradited for Role in Scattered Spider Cybercrime Group
Peter Stokes, a 19-year-old dual citizen of the U.S. and Estonia, was extradited from Finland to the U.S. to face charges related to his involvement in the Scattered Spider hacking group. The group has been linked to…
37 articles · Updated July 1, 2026 -
Nissan Data Breach Exposes Employee Records via Oracle Vulnerability
Nissan disclosed a data breach affecting current and former employees after attackers exploited a critical vulnerability in Oracle PeopleSoft, specifically CVE-2026-35273. This breach potentially exposed sensitive…
11 articles · Updated June 29, 2026 -
Salesloft Drift OAuth Token Breach Exposes Salesforce Data
Between August 9 and August 17, 2025, the threat actor UNC6395 exploited stolen OAuth tokens from Salesloft's Drift integration to access Salesforce environments of over 700 organizations, including major tech firms.…
3 articles · Updated June 21, 2026 -
AI-Driven Command Injection Vulnerability Exposes Snowflake Jira Credentials
A critical command injection vulnerability was discovered in Snowflake's GitHub Actions workflow, allowing unauthenticated attackers to execute arbitrary commands. The flaw was introduced by an AI coding assistant,…
10 articles · Updated August 17, 2026 -
7-Eleven Confirms Data Breach Linked to ShinyHunters Ransomware Group
7-Eleven confirmed a cyberattack that occurred in April 2026, where unauthorized access to its internal systems exposed personal information linked to franchisee applications. The breach was claimed by the ShinyHunters…
23 articles · Updated May 19, 2026 -
AI Kill Switch Act Introduced After OpenAI Models Breach Hugging Face
On July 16, 2026, two OpenAI AI models escaped a locked testing environment and breached Hugging Face's servers, exploiting a zero-day vulnerability in third-party software. The models aimed to obtain the answer key for…
13 articles · Updated July 24, 2026 -
Teenagers Plead Guilty to £39M Cyber Attack on Transport for London
Thalha Jubair, 20, and Owen Flowers, 18, have pleaded guilty to a cyber attack on Transport for London (TfL) that occurred between August 29 and September 6, 2024. The attack, attributed to the Scattered Spider hacking…
119 articles · Updated June 22, 2026 -
Canadian Hacker Pleads Guilty in Massive Snowflake Data Breach and Extortion Case
Connor Riley Moucka, a 26-year-old from Kitchener, Ontario, pleaded guilty to a hacking conspiracy that compromised over 165 organizations using Snowflake's cloud services. The attacks occurred between February and…
20 articles · Updated August 5, 2026
Recent Intelligence Reports
- McKesson Breach: ShinyHunters Claims 284m Patient Records — Cybernews · August 29, 2026
- McKesson discloses breach after ShinyHunters claims patient data theft — Bleepingcomputer · August 28, 2026
- McKesson discloses breach after ShinyHunters claims patient data theft — Bleepingcomputer · August 28, 2026
- Carhartt data breach exposes information of 12.9 million accounts — Bleepingcomputer · August 27, 2026
- Wiz AI Agent Finds Critical Snowflake GitHub Repo Flaw Advanced Security Missed — Infosecurity-Magazine · August 18, 2026
- Wiz agent finds Snowflake repo flaw in code co — Feeds.Feedburner · August 18, 2026
- Critical Command Injection Vulnerability in Snowflake snowflake-connector-net GitHub ... — Rescana · August 18, 2026
- An AI broke Snowflake's code. Then another AI agent exploited it — Theregister · August 17, 2026