Data breach due to third-party software vulnerability that led to unauthorised access @ Lee University

In March 2024, Lee University, a Christian university in Cleveland, Tennessee, experienced a data breach due to a third-party software vulnerability. The breach was discovered a year later, in March 2025, and affected current and former students, dono...

Sensitive personal data of individuals compromised @ Pacific Residential Mortgage, LLC

Pacific Residential Mortgage (PacRes Mortgage) experienced a ransomware attack on February 10, 2025. An investigation revealed that an unauthorized third party gained access to sensitive personal information, including names, addresses, dates of birt...

Hackers gained access to the accounts through “credential stuffing”, where stolen usernames and passwords @ Australian Retirement Trust

Several major Australian superannuation funds, including AustralianSuper, Australian Retirement Trust, Rest, Hostplus, and Insignia Financial, experienced cyberattacks using credential stuffing. This method uses stolen credentials from other breaches...

Scammers stole hundreds of thousands of dollars of members’ retirement savings @ HostPlus

Over the past weekend, several large Australian superannuation funds experienced a series of credential stuffing cyberattacks. While the majority of attacks were thwarted, some resulted in unauthorized access to thousands of member accounts, with at ...

Sensitive personal and protected health data of individuals compromised @ Central Texas Pediatric Orthopedics

Central Texas Pediatric Orthopedics (CTPO) experienced a data breach on or around March 3, 2025. The breach was discovered during a routine security check, prompting CTPO to initiate an investigation with the help of cybersecurity specialists. The inv...

Hacker breached GitLab repositories @ Europcar Mobility Group

In late March 2025, Europcar Mobility Group, a global car rental company, experienced a significant data breach. A threat actor infiltrated the company's systems, gaining access to their GitLab repositories. The hacker, using Europcar's name as an ali...

Sensitive personal and protected health information compromised @ Monro, Inc.

Monro, Inc., a company entrusted with sensitive personal and protected health information, experienced a data breach in late 2024. The breach originated from an employee's compromised electronic mailbox, which an unauthorized third party accessed. Thi...

Approximately 6,381 Texans' affected by data breach @ Nevro Corp.

Nevro Corp., a medical device company based in Redwood City, California, experienced a data breach that exposed the personal information of approximately 6,381 individuals in Texas. The breach, discovered in April 2025, involved unauthorized access to...

Personal and confidential information compromised @ Chord Specialty Dental Partners

In September 2024, Chord Specialty Dental Partners, a dental service organization supporting over 60 practices across six US states, discovered suspicious activity in an employee's email account. An investigation revealed unauthorized access to multip...

Hospital and home cameras hacked and access gained to intimate videos and credit card information @ University of Maryland Medical System

A Maryland pharmacist is facing allegations of installing spyware on 400 computers at the University of Maryland Medical System over an eight-year period. The lawsuit, filed by six women, claims the pharmacist used this access to spy on women at the h...

Lead by example in cyber

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as threat actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...