Temporary shut down of online service after two cyber attacks @ Canada Revenue Agency

In August 2020, the Canada Revenue Agency (CRA) experienced a significant cybersecurity event involving a series of credential stuffing attacks. This method uses stolen usernames and passwords from other websites to gain unauthorized access to user ac...

Breach leaked ticket holder log-in details @ Tokyo 2020 Olympics

A significant data breach targeted Fujitsu, a major Japanese technology provider to the Japanese government, compromising data related to the Tokyo 2020 Olympics. The breach exposed login credentials of ticket holders, potentially allowing access to ...

Mobile app went down for hours @ Chime

Chime Financial is facing three proposed class-action lawsuits in the U.S. District Court for the Northern District of California following an April 1st outage of its mobile app. The lawsuits allege that the pro-Iranian hacker group Team 313 breached ...

Customers urged to revoke and replace API keys @ Braintrust

In May 2026, Braintrust, an AI evaluation startup, confirmed an unauthorized access incident within one of its Amazon Web Services (AWS) cloud accounts. This account contained API keys used by customers to access cloud-based AI models. The company has...

Personal and confidential information compromised @ TransGlobal Insurance Agency, Inc.

In May 2026, the Murphy Law Firm announced an investigation into a data breach affecting TransGlobal Insurance Agency, Inc. The breach, discovered on February 24, 2026, stemmed from suspicious activity detected on TransGlobal's computer network. A sub...

Data breach involved unauthorised access to systems @ Integrated Pain Associates

Integrated Pain Associates (IPA), a pain management service provider with locations across Texas, has announced a data breach that occurred around February 24, 2026. The breach involved unauthorized access to the company's systems, and a subsequent in...

Data breach resulted from ransomware attack on computer network @ Hematology Oncology Consultants

In September 2025, Hematology Oncology Consultants, a Michigan-based medical practice specializing in cancer and blood disorder treatments, fell victim to a ransomware attack targeting its computer network. The cyberattack was claimed by the Rhysida r...

Approximately 38,037 people impacted be data breach @ TRISTAR Insurance Group, Inc.

In April 2026, TRISTAR Insurance Group, Inc. reached a $1 million settlement to resolve a class action lawsuit stemming from a data breach in November 2022. The lawsuit alleged that TRISTAR failed to adequately protect sensitive information on its sys...

Private information of approximately 8,284 people breached @ Continental Café Holdings, LLC

Continental Café Holdings, LLC has reached a class action settlement to resolve allegations that the company failed to adequately protect the personal information of its customers, leading to a data breach discovered in October 2024. The lawsuit claim...

Data security incident involved protected health information and personally identifiable information @ Aroostook Mental Health Center

Aroostook Mental Health Center (AMHC) is currently investigating a data security incident that involved unauthorized access to its computer network and the potential theft of protected health information and personally identifiable information. On Mar...

Lead by example in cyber

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as threat actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...