Cybersecurity

Breaches, CVE post-mortems, zero-day reporting and practical defense. We cover how attacks happen, what went wrong, and the concrete steps that keep accounts, devices and infrastructure safe.

DC Medicaid Data Exposure Hits 399,086 People [2026]

The District of Columbia’s Medicaid agency has told federal regulators that personal data tied to 399,086 people may have sat exposed on a public website for as long…
By Priya Anand · Sep 29, 2026

ShinyHunters’ FBI Claim: 5,000 Names, 2-3TB Data [2026]

A hacking group calling itself ShinyHunters says it broke into FBIJobs.gov, the online portal the FBI uses to recruit agents and staff, and walked away with sensitive personal…
By Tom Vance · Sep 29, 2026

Clop Denies ShinyHunters Deal, Moves Site in 6 Days [2026]

Six days after ShinyHunters defaced Clop’s dark-web leak site and demanded an eight-figure payment, the ransomware group has resurfaced at a new Tor onion address, according to reports…
By Ryan Cole · Sep 29, 2026

ShinyHunters Hacks Clop’s Site, Demands 8 Figures [2026]

Clop’s dark web leak site went quiet in the third week of September, and when a page finally loaded again, Clop wasn’t the one in control. Cybersecurity Insiders…
By Ryan Cole · Sep 30, 2026

Dutch Police Arrest ShinyHunters Suspect, 24 [2026]

Dutch police confirmed on Monday that a 24-year-old man from Amsterdam was arrested earlier this month in an investigation tied to ShinyHunters, one of the most prolific data-extortion…
By Dr. Heinrich Vogel · Sep 29, 2026

Kiteworks’ 9-Hour Shutdown Ends With 1 Patched Flaw [2026]

Kiteworks spent the weekend of September 25-27, 2026, doing something almost no enterprise software vendor does voluntarily: it told its entire customer base to turn off their own…
By Priya Anand · Sep 29, 2026

Passkeys Explained: What Security Teams Should Tell Employees Before Rollout

A new login method can succeed or fail based on how it is introduced. Employees who understand a change tend to adopt it quickly. Those left confused often…
By Camille Fournier · Sep 29, 2026

FBI Jobs Portal Down 6 Days, PeopleSoft Bug Cited [2026]

Six days after the extortion group ShinyHunters claimed it broke into the FBI’s recruiting infrastructure, the bureau’s job-applicant portals are still dark. As of September 28, 2026, both…
By Tom Vance · Sep 29, 2026

Brevo Supply-Chain Hack Hits 100K Sites via ClickFix [2026]

A single Cloudflare API key, left hard-coded and never rotated, turned into one of the broadest software supply-chain incidents disclosed this month. On September 14, 2026, an attacker…
By Tom Vance · Sep 29, 2026

FBI Declares Cyber Incident, ShinyHunters Set 7 Days [2026]

The FBI has told its own workforce, in an internal notification, that it is treating the alleged theft of employee data from its recruiting portal as a formal…
By Priya Anand · Sep 29, 2026

Latest news