Personal details of parents exposed in email about school bus passes @ Nottinghamshire County Council

Nottinghamshire County Council has issued a formal apology following a significant data breach that occurred in July 2026. The incident involved the accidental disclosure of personal information belonging to parents, carers, and students across the re...

Personal information of 55.3 million users compromised @ SUNO

Suno, a prominent AI music platform, is currently facing a significant class action lawsuit following a massive data breach that reportedly compromised the personal information of approximately 55.3 million users. The legal action, filed in the US Dis...

Unauthorised access to limited portion of network @ Safetyfirst Systems, LLC

SafetyFirst Systems, LLC, a Parsippany, New Jersey-based provider of driver and fleet safety services, recently experienced a significant cybersecurity incident that has led to multiple legal investigations. The company discovered suspicious activity ...

Personal and confidential information compromised @ SM Energy

SM Energy Company, a prominent entity in the energy sector, recently identified a significant cybersecurity incident that resulted in the exposure of sensitive personal information. The breach was first detected on or around May 15, 2026, when the com...

Bad actors "poison script" to swap crypto wallet addresses across customer sites @ Adform

In July 2026, the advertising technology firm Adform experienced a significant supply-chain compromise when attackers poisoned a widely distributed JavaScript file. The incident involved the modification of a resource named trackpoint-async.js, which ...

Flaw linked to $70 bitcoin million theft in 41 minutes @ Coinkite

In July 2026, a significant cybersecurity breach resulted in the theft of approximately seventy million dollars in Bitcoin, affecting nearly twelve hundred addresses within a forty-one-minute window. This incident was traced back to a critical firmwar...

Unauthorised access allowed hackers to steal client data @ Werth Wealth Management

Werth Wealth Management, a financial advisory firm based in Kansas, recently experienced a significant cybersecurity event involving the unauthorized infiltration of its computer networks. The breach was initially identified by the cybersecurity divis...

Data breach originated from network disruption @ Rectory School

Rectory School, an independent junior boarding and day school located in Pomfret, Connecticut, recently disclosed a significant data breach stemming from a network disruption first identified in September 2025. The incident, which was officially repor...

Unauthorised access to sensitive personal and healthcare information @ Herbert Smith Freehills Kramer (US) LLP

Herbert Smith Freehills Kramer (US) LLP, a global law firm specializing in disputes, transactions, and corporate litigation, recently experienced a significant cybersecurity incident involving unauthorized access to its US IT environment. The breach, ...

Personal records of roughly 865,000 unique users exposed @ SplitVPN

SplitVPN, a Russian virtual private network provider previously operating under the name NotVPN, recently experienced a massive data breach that compromised the personal information of approximately 865,000 unique users. The incident occurred in July ...

Lead by example in cyber

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as threat actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...