Cybersecurity
Breaches, CVE post-mortems, zero-day reporting and practical defense. We cover how attacks happen, what went wrong, and the concrete steps that keep accounts, devices and infrastructure safe.
DC Medicaid Data Exposure Hits 399,086 People [2026]
The District of Columbia’s Medicaid agency has told federal regulators that personal data tied to 399,086 people may have sat exposed on a public website for as long…
ShinyHunters’ FBI Claim: 5,000 Names, 2-3TB Data [2026]
A hacking group calling itself ShinyHunters says it broke into FBIJobs.gov, the online portal the FBI uses to recruit agents and staff, and walked away with sensitive personal…
Clop Denies ShinyHunters Deal, Moves Site in 6 Days [2026]
Six days after ShinyHunters defaced Clop’s dark-web leak site and demanded an eight-figure payment, the ransomware group has resurfaced at a new Tor onion address, according to reports…
ShinyHunters Hacks Clop’s Site, Demands 8 Figures [2026]
Clop’s dark web leak site went quiet in the third week of September, and when a page finally loaded again, Clop wasn’t the one in control. Cybersecurity Insiders…
Dutch Police Arrest ShinyHunters Suspect, 24 [2026]
Dutch police confirmed on Monday that a 24-year-old man from Amsterdam was arrested earlier this month in an investigation tied to ShinyHunters, one of the most prolific data-extortion…
Kiteworks’ 9-Hour Shutdown Ends With 1 Patched Flaw [2026]
Kiteworks spent the weekend of September 25-27, 2026, doing something almost no enterprise software vendor does voluntarily: it told its entire customer base to turn off their own…
Passkeys Explained: What Security Teams Should Tell Employees Before Rollout
A new login method can succeed or fail based on how it is introduced. Employees who understand a change tend to adopt it quickly. Those left confused often…
FBI Jobs Portal Down 6 Days, PeopleSoft Bug Cited [2026]
Six days after the extortion group ShinyHunters claimed it broke into the FBI’s recruiting infrastructure, the bureau’s job-applicant portals are still dark. As of September 28, 2026, both…
Brevo Supply-Chain Hack Hits 100K Sites via ClickFix [2026]
A single Cloudflare API key, left hard-coded and never rotated, turned into one of the broadest software supply-chain incidents disclosed this month. On September 14, 2026, an attacker…
FBI Declares Cyber Incident, ShinyHunters Set 7 Days [2026]
The FBI has told its own workforce, in an internal notification, that it is treating the alleged theft of employee data from its recruiting portal as a formal…



