
Rapid7 deployed right the first time.
Full-platform Rapid7 rollouts - InsightVM, InsightIDR, event sources, agents, tuning - by a Registered Partner who has done it at state-agency scale, including OT/SCADA.
Talk deployment
Nutex Health is investigating a data breach that may have compromised private and confidential information stored on its servers, which were accessed and exfiltrated by an unauthorized third party. The incident has prompted a thorough probe and disclosure to the U.S. Securities and Exchange Commission.

A recent data breach at Apollo Global Management exposed sensitive personal info, including Social Security numbers, when an unauthorized user gained cloud access for just four days, from July 6 to July 10, 2026. The breach was triggered by a social engineering attack, highlighting the importance of robust security measures.

A data breach at South Korea's Modu-ui Changup startup platform exposed sensitive info from around 5,000 applicants, including email addresses, comments, and startup ideas. The leak happened when an encryption key was collected by external crawlers, compromising personal data stored on the government-backed site.

A recent scan by Truffle Security uncovered a staggering 9,300+ active AWS keys that were leaked online, including hundreds with full administrative rights, putting sensitive data at risk. These compromised keys were found across various public platforms, with a shocking 88% still authentic and vulnerable to exploitation.

Apollo Global Management recently fell victim to a data breach, with hackers gaining unauthorized access to its cloud platforms between July 6 and July 10, and sensitive personal data being compromised, discovered on August 12. The company swiftly responded to the incident, notifying law enforcement and bolstering its security protocols.

The alarming surge in mega-breaches is setting 2026 on a record-breaking pace, with July alone witnessing six shocking incidents that exposed sensitive information and left consumers vulnerable. A recent breach of a Department of Homeland Security information-sharing platform is a stark reminder that even supposedly secure systems can be compromised.

Thousands of exposed AWS keys are still active, putting entire corporate accounts at risk of being hijacked by attackers - and a staggering 88% of re-verified keys were found to still grant access as recently as August 2026. This alarming vulnerability highlights the urgent need for tighter security measures to protect sensitive cloud data.

A recent cybersecurity incident at Toronto's Hospital for Sick Children (SickKids) may have exposed sensitive personal data of current and former employees, job applicants, and staff from affiliated organizations. The breach, linked to a flaw in third-party software, is under investigation with the help of external cybersecurity experts.

Full-platform Rapid7 rollouts - InsightVM, InsightIDR, event sources, agents, tuning - by a Registered Partner who has done it at state-agency scale, including OT/SCADA.
Talk deployment
A staggering 9 million images, including facial photos of adults, teens, and kids, were left vulnerable in a publicly exposed database, revealing a massive security lapse by a facial recognition platform. The unprotected database contained 450 gigabytes of sensitive data, sparking serious concerns about identity verification and data security.

A data breach at the French General Directorate of Public Finances exposed a massive 600,000 records, including sensitive taxpayer and business information such as tax IDs, addresses, and phone numbers. For around 250 individuals, the breach went even deeper, compromising the actual contents of messages exchanged with the authority.

A massive data breach at Sakura Internet has put 1.36 million member accounts at risk, after hackers gained access to the company's sales management system, compromising sensitive contract and membership information. The breach was discovered on August 9, when investigating a separate incident involving unauthorized logins on 583 accounts.

A massive data breach at CareCloud has put 3.7 million patient records at risk, with the company's platform compromised for nearly eight hours. The alarming incident has raised serious concerns about healthcare data security.

A shocking data breach has hit major players like McDonald's and Gap Inc., with a hacker claiming to have made off with a staggering 3.6 million Azure account records, including 1.7 million sensitive employee records from McDonald's alone. The breach exposes names, emails, addresses, and more, serving as a stark reminder that traditional security perimeters just aren't enough.

We've got some important news to share with you: Quest recently discovered a security issue with one of its third-party service providers that may have exposed some of your personal data. The company quickly sprang into action to contain the breach and is now reaching out to affected guests.

A single virtual private server has been secretly siphoning off sensitive records from Salesforce and ServiceNow customer portals since March 2025, according to recent research by Reco. This ongoing data scraping campaign, dubbed City Forum, has been quietly pulling data from multiple targets across various sectors.

The University of Texas at San Antonio swiftly contained a potential cyber threat after detecting suspicious activity on the edge of its network, and took swift action to protect its systems and data. Thankfully, the incident appears to have been effectively managed, with no evidence of data compromise reported so far.

Evidence in spreadsheets, controls drifting between audits, frameworks multiplying on flat headcount. Nubivance runs continuous compliance on Rapid7 Cyber GRC - SOC 2, HIPAA, ISO 27001, PCI, CMMC.
End the scramble
Good news: your SafePal wallet credentials and financial info are safe - the recent data breach exposed non-sensitive customer records, including names, email addresses, and purchase details, of around 39,798 customers.

A threat actor known as TheHatman is selling employee data from top companies like McDonald's and Tata Consultancy Services, allegedly stolen from Microsoft Azure tenants using compromised credentials. The stolen records total 3.6 million, with McDonald's alone accounting for 1.7 million employee records.

A recent cyberattack on CEVA Logistics, a major shipping company, has compromised customer data at the Pokémon Center, forcing the cancellation of some orders due to an unforeseen fulfilment issue. The breach, which occurred between July 29 and August 1, has disrupted operations for multiple retailers in Europe.

GitHub is currently experiencing a widespread outage, with performance problems affecting several of its key services, including Copilot, its AI coding tool, causing disruptions for developers globally. The company confirmed the issue on August 17, 2026, at 9:40 AM EDT and is actively investigating the cause.

A threat actor known as TheHatman is peddling a staggering 1.7 million employee records from McDonald's, along with millions more from other top firms, allegedly stolen from Microsoft Azure environments. The breach, which Hudson Rock deems highly authentic, has left giants like Vodafone, Tata Consultancy Services, and IHG Hotels & Resorts vulnerable.

Don't worry, SafePal has confirmed that sensitive info like your seed phrase, private keys, and bank account details were not compromised in the breach that exposed the order info of 39,798 customers. The exposed data includes names, email and shipping addresses, phone numbers, and purchase details of customers who placed orders between March 2025 and April 2026.

A threat actor known as ZeroBytes has claimed access to sensitive French tax authority systems, boasting on a hacking forum that they could sell stolen databases containing data on hundreds of thousands of individuals. The alarming post sparked a swift response from French authorities, who disclosed a massive breach affecting over 678,000 people.

Good news: SafePal's recent data breach didn't compromise wallet access or funds, but 39,798 customers had their personal info exposed, including names, emails, and shipping addresses. The breach appears to be limited, with sensitive credentials like wallet seed phrases and private keys remaining secure.