Potentially 2,287 bookings involved in data breach @ Air Canada

In March 2018, Air Canada disclosed that some of its customers' hotel booking information may have been compromised due to a data breach at Orbitz, a travel partner. According to Air Canada, Orbitz reported a breach affecting approximately 800,000 rec...

Unauthorised access to certain internal systems @ Humana Inc.

On September 29, 2025, Humana, Inc. discovered unauthorized access to its internal systems stemming from a vulnerability in a vendor's Oracle software. The law firm Edelson Lechtzin LLP is investigating potential data privacy claims related to this br...

Cyberattack exposed sensitive data @ Tangoe

In November 2022, Tangoe US, a business-to-business company managing telecom, mobile, and cloud expenses for large enterprises, experienced a data breach when an unauthorized third party accessed its computer systems. The breach, which occurred betwee...

Users not provided enough information about how data processed @ Poste Italiane SpA

In April 2026, the Italian data protection regulator levied a €12.5 million ($14.7 million) fine against Italy's national postal service provider, Poste Italiane SpA, and its digital payments subsidiary, Postepay SpA, for data privacy violations. Post...

Data breach "affected every project created before November 2025" @ Lovable

Lovable, a Swedish AI-powered platform that allows users to build applications without coding, is facing scrutiny over a recent security incident. A researcher discovered a vulnerability that allowed anyone with a free account to access sensitive data...

Staffer allegedly exfiltrated 5600 sensitive documents @ NSW Treasury

In April 2026, a significant cyber security incident occurred within the New South Wales (NSW) government, involving the alleged exfiltration of a substantial cache of sensitive documents. Internal security monitoring systems detected a suspected unau...

Alleged leak of 12.6 GB of data and access to network infrastructure and video surveillance @ BePrime

In April 2026, the Mexican cybersecurity firm BePrime, which provides security services to major corporations, suffered a significant cyberattack. The attackers claimed to have exfiltrated 12.6 GB of data and gained access to the company's network inf...

Internal database estimated at about 250GB compromised and purportedly leaked online @ Chartered Institute of Bankers of Nigeria

The Chartered Institute of Bankers of Nigeria (CIBN) is reportedly the victim of a significant cybersecurity incident involving a potential data breach of approximately 250GB. The alleged breach, which surfaced on underground cybercrime forums, involv...

Document agency hit by cyberattack @ Agence nationale des titres sécurisés

In April 2026, the French government's National Agency for Secure Documents (ANTS), also known as France Titres, which manages official identity and registration documents like ID cards, passports, and driver's licenses, suffered a cyberattack. The In...

Sensitive personal and protected health data of thousands of individuals compromised @ Lexington Diagnostic Center

In January 2025, Lexington Diagnostic Center (LDC) disclosed a data breach that compromised the sensitive personal and protected health information of thousands of individuals. The breach stemmed from a security incident that LDC became aware of aroun...

Lead by example in cyber

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as threat actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...