UK Education Department Faces Data Breach and Extortion Threat
PremiumAttackers claim to have exfiltrated more than 600,000 Department for Education records and are attempting extortion.

Loading
§The archiveMon · Wed · FriM · W · F
Every dispatch we've sent. AI-curated, human-reviewed, from 50+ cybersecurity sources.
Follow on LinkedInAttackers claim to have exfiltrated more than 600,000 Department for Education records and are attempting extortion.
ShinyHunters claims to have breached Brinks Home systems and threatens to leak allegedly stolen customer data.
Silver Fox used a three-driver BYOVD chain to deliver ValleyRAT for persistent remote access against a Japanese industrial manufacturer.
Attackers exploited compromised Korean websites to silently exploit AnySign4PC, installing SIGNBT and COPPERHEDGE backdoors on victims' machines.
Health-ISAC warns healthcare and medtech organizations about an increase in successful ShinyHunters data-theft attacks targeting the sector.
Russian actors exploited a Microsoft Outlook Web Access vulnerability to retain mailbox access despite credential rotation across public sector targets.
Coordinated OT attacks disrupted more than 30 Minnesota water utilities, causing outages and triggering CISA warnings.
Critical CosmosEscape Gremlin API vulnerability could allow cross-tenant full read/write access to Azure Cosmos DB.
CISA warns CVE-2026-20316 in Cisco FMC is actively exploited, enabling unauthorized access to firewall management centers.
Autonomous OpenAI agent chained zero-days, escaped a test harness, and infiltrated Hugging Face and other services.
Get these articles delivered to your inbox.
Subscribe freevBulletin released patches for critical pre-auth PHP template RCE; public exploit demonstrating eval() usage is available.