
Know a small business winging it on security?
No IT department, no security budget, real exposure. Nubivance builds right-sized security foundations for small companies. Send them this.
Send it along
A data breach has exposed sensitive records of the Los Angeles Police Department, raising urgent concerns about operational security, individual privacy, and institutional trust. The incident's implications extend far beyond a single breach, sparking questions about the vulnerability of law enforcement data.

A recent breach of a SaaS integration provider has led to a Snowflake data breach, with stolen authentication tokens being used to compromise the sensitive data of over a dozen companies. This devastating chain of events highlights the urgent need for robust security measures to protect against increasingly sophisticated cyber threats.

Anthropic is reeling after accidentally releasing the source code for its prized AI model, Claude, leaving the company scrambling to contain the fallout and defend its impending IPO. The leak has raised serious questions about the company's ability to protect its crown-jewel technology.

A single faulty AI dependency can become a backdoor for attackers - as seen in the recent LiteLLM supply-chain compromise that exposed sensitive data, source code, and internal credentials at Mercor. This alarming incident highlights the risks of relying on third-party dependencies and the importance of securing your supply chain.

Hims & Hers Health has alerted customers to a data breach after sensitive support tickets were stolen from a third-party platform operated by Zendesk, raising concerns about consumer safety when sharing personal info online. The breach exposed data from support tickets, highlighting the vulnerability of sensitive transactions on external systems.

Mercor, an AI startup partnered with industry giants OpenAI and Anthropic, has confirmed a data breach - raising concerns about the potential impact on users and the company's ability to regain trust. The incident has left many questions unanswered, including what data was compromised and who might be affected.

A massive cloud hack has struck the European Commission, compromising the data of at least 30 EU entities, including the Commission itself, at the hands of the notorious threat group TeamPCP. This alarming breach raises critical questions about who holds the keys to the EU's cloud and what happens when they fall into the wrong hands.

A major breach of an FBI system has sent shockwaves through the cybersecurity landscape, leaving organizations and individuals wondering if they're prepared for the worst. This alarming incident is just the latest in a string of high-profile hacks, including a data leak affecting 450,000 Lloyds records and a breach at the Dutch treasury.

No IT department, no security budget, real exposure. Nubivance builds right-sized security foundations for small companies. Send them this.
Send it along
Hasbro, the iconic toymaker behind beloved brands like Transformers, Peppa Pig, and Monopoly, has suffered a significant data breach that's disrupted its IT operations and may cause weeks-long delays in getting toys to eager kids and retailers. Despite the setback, Hasbro assures that it can still receive orders and ship products, but warns of potential delays.

In a remarkable comeback, Stryker Corporation has bounced back to full operation just three weeks after a devastating data-wiping cyberattack erased many of its systems, claimed by the Iranian-linked Handala hacktivist group. The global medical-technology giant has successfully restored its operations, showcasing resilience in the face of cyber threats.

In today's digital age, the thing that keeps your personal and professional life safe can suddenly become its biggest vulnerability - and that's a growing concern that's on everyone's mind. As data breaches continue to make headlines, it's clear that data security is no longer just an IT issue, but a pressing matter that affects us all.

Employee data breaches have reached a seven-year high, exposing a harsh reality: even the most basic security measures are being overlooked, putting sensitive employee information at risk. Can organizations protect their most valuable asset - their employees' personal data - from these preventable breaches?

The recent data breach on Europa.eu, claimed by the notorious ShinyHunters gang, exposes a harsh truth: even the most secure systems can be vulnerable, putting sensitive user data at risk. With personal info like names, emails, and phone numbers potentially compromised, the European Commission's swift response and investigation are crucial to mitigating the damage.

A recent cyber breach claim against Crunchyroll, a leading anime streaming service owned by Sony, has raised serious concerns about the security of personal data for its 5 million subscribers worldwide. This alarming incident highlights the vulnerability of even the most popular streaming services, leaving users wondering if their sensitive information is truly safe.

A recent IT glitch at Lloyds exposed the sensitive data of nearly 500,000 customers, highlighting the alarming vulnerabilities of our increasingly interconnected world. This shocking incident serves as a wake-up call, reminding us that even the most secure systems can be breached, and our personal data can be put at risk.

A massive data breach has just exposed 3.7 million Sears Home Services records, leaving millions of people vulnerable to potential identity theft and misuse of their personal information. This alarming incident serves as a harsh reminder to stay vigilant about protecting our digital lives.

Full-platform Rapid7 rollouts - InsightVM, InsightIDR, event sources, agents, tuning - by a Registered Partner who has done it at state-agency scale, including OT/SCADA.
Talk deployment
An unknown attacker reportedly exfiltrated 1.2 million bank-account records from France’s central database, turning administrative efficiency into a nationwide privacy and security crisis. Read on to see what happened, who’s at risk, and how one failed lock can expose millions.

Meet TGR-STA-1030: a stealthy Asia-based espionage crew that’s quietly breached at least 70 government and critical‑infrastructure networks across 37 countries, using bespoke tools, credential harvesting and meticulous reconnaissance to keep long‑term, hard-to-detect access to telecom and communications systems.

The PSNIs Universal £7,500 Payout offers immediate breathing room to staff hit by last year’s data breach, helping cover short-term costs and stress. But it’s only a first step — lasting recovery will need counselling, identity protection and stronger security measures.

The Marquis data breach exposed hundreds of thousands of tax‑credit records — and it asks a blunt question: when trust is the currency, who pays? Security leaders say this wasn’t a freak accident but a familiar mix of human error, misconfiguration and governance gaps that proves convenience still too often outpaces caution.

Nearly 250,000 Americans had their tax‑credit records exposed in the Marquis breach — a wake‑up call that this wasnt just a technical slip but a systemic security failure companies, regulators, and consumers must fix together. Experts break down what went wrong, who’s accountable, and the urgent steps to protect victims and prevent the next catastrophe.

The Marquis data breach forces a simple but urgent question: when a trusted provider is compromised, who pays — the vendor, its customers, or the wider ecosystem? With attackers evolving faster than defenders, security leaders say it’s time to rethink third‑party and supply‑chain risk.

The University of Pennsylvania breach began with an Oct. 31 email hack that quickly escalated into a far costlier intrusion, leaving students and staff scrambling and officials grappling with steep financial and operational fallout. Its a stark reminder that a single compromised inbox can cascade into widespread harm for campuses everywhere.

Coupang breach jolted roughly 34 million customers after attackers used vishing and compromised vendor channels to steal—and then extort—sensitive data; here’s what went wrong and what customers and companies need to do next.