Twilio is a organization tracked across 9 threat clusters and 10 intelligence report mentions on ThreatCluster. First observed November 14, 2025; most recent activity July 8, 2026.
Twilio is a cloud communications platform that provides APIs for SMS, voice, video, and other messaging services used by a wide range of applications, including DoorDash. In cybersecurity, Twilio is significant as a high-value API provider whose abuse, credential compromise, or misconfigurations can lead to data exposure, account takeover, or impersonation across many services that rely on its infrastructure.
Peter Stokes, a 19-year-old dual citizen of the U.S. and Estonia, was extradited from Finland to the U.S. to face charges related to his involvement in the Scattered Spider hacking group. The group has been linked to…
Scattered Spider, a cybercrime entity linked to various high-profile attacks since 2022, has been reclassified as a decentralized collective rather than a unified group. Group-IB's analysis indicates that it consists of…
Aflac Japan disclosed a data breach affecting 4.38 million customers after unauthorized access to its systems between June 15 and June 25, 2026. The breach was detected on June 25, prompting the suspension of certain…
Tyler Robert Buchanan, a 24-year-old from Scotland, pleaded guilty in the U.S. to charges of conspiracy to commit wire fraud and aggravated identity theft, linked to a scheme that stole at least $8 million in…
A study analyzing 10 million websites has uncovered nearly 2,000 exposed API credentials across 10,000 webpages. Researchers from Stanford, led by Nurullah Demir, utilized the tool TruffleHog to identify 1,748 valid…
Peter Stokes, a 19-year-old dual citizen of the U.S. and Estonia, was arrested in Helsinki on April 10, 2026, while attempting to board a flight to Japan. He is suspected of being a member of the Scattered Spider…
DoorDash confirmed a data breach that occurred on October 25, 2025, when an employee fell victim to a social engineering scam. The breach exposed personal information including names, email addresses, phone numbers, and…
DoorDash has reported a data breach affecting user contact information, identified on October 25, 2025. An unauthorized third party accessed and stole certain user data, which may include names, phone numbers, email…
Threat actors have been targeting misconfigured proxy servers to gain unauthorized access to commercial large language model (LLM) services. This campaign, which began in late December 2025, has seen over 91,000 attack…