Data Breach News | Latest Cybersecurity Reports – Veri Sızıntısı

Publications & Analyses

Argus Flow releases, platform announcements, press updates, and cybersecurity analyses.

Payouts King ransomware group adopts QEMU virtual machines & reverse SSH backdoors to bypass endpoint security, running hidden VMs to encrypt data.
Argus Flow 20 Apr 2026

Payouts King Ransomware Uses QEMU VMs to Bypass Security

The Payouts King ransomware group has adopted a novel technique, leveraging QEMU virtual machines to evade endpoint security measures. This method involves creating hidden virtual environments on compromised systems, enabling the ransomware to execute undetected and encrypt data.

Cloud development platform Vercel confirms a security breach. Hackers claim to be selling stolen user data. Users advised to change passwords.
Argus Flow 20 Apr 2026

Vercel Confirms Data Breach as Hackers Attempt to Sell Stolen Information

Cloud development platform Vercel has confirmed a security incident after threat actors claimed to have breached its systems. Hackers are reportedly attempting to sell stolen user data online, potentially affecting account credentials and related information.

A judge has allowed a state auditor's investigation into a Blue Cross Blue Shield data breach. Sensitive health and personal data are potentially affected.
Argus Flow 20 Apr 2026

Blue Cross Blue Shield Data Breach Investigation Allowed to Proceed

A judge has ruled that a state auditor's investigation into a data breach impacting Blue Cross Blue Shield members can move forward. The breach potentially exposed sensitive health and personal information, though the exact number of affected individuals and the full scope of the compromise remain under investigation.

Tax documents for school employees across Los Angeles County potentially stolen. Sensitive PII at risk, increasing identity theft concerns.
Argus Flow 20 Apr 2026

Los Angeles County School Employee Tax Documents Potentially Stolen

A data breach incident in Los Angeles County may have exposed tax documents belonging to numerous school employees. The information potentially compromised includes sensitive personal and financial data. Investigations are ongoing to determine the full scope and impact of the breach.

Vercel confirmed a data breach on April 20, 2026, exposing limited customer credentials, tied to a prior Context AI compromise. Users advised to change passwords and enable MFA.
Argus Flow 20 Apr 2026

Vercel Confirms Data Breach Linked to Context AI Incident

Vercel has announced a security incident, revealing that limited customer credentials were exposed. The breach is attributed to a wider compromise involving Context AI. Customers are advised to take immediate precautionary measures.

Nextend servers compromised, distributing backdoored Smart Slider 3 Pro update. Websites using the plugin are at risk of unauthorized access and data theft. Learn more.
Argus Flow 16 Apr 2026

Smart Slider 3 Pro Update Backdoored via Compromised Nextend Servers

Nextend's servers were compromised, leading to the distribution of a backdoored update for the Smart Slider 3 Pro plugin. This supply chain attack put websites using the plugin at risk of compromise, potentially allowing attackers to gain unauthorized access and steal sensitive data.

CPUID's CPU-Z & HWMonitor downloads compromised, distributing STX RAT. Learn about the cyberattack, risks to users, and crucial security measures to protect your system.
Argus Flow 12 Apr 2026

CPUID Breach Distributes STX RAT Through Trojanized CPU-Z and HWMonitor Downloads

CPUID's official download infrastructure was compromised, leading to the distribution of the STX Remote Access Trojan (RAT) through malicious versions of CPU-Z and HWMonitor. Users who downloaded these compromised files are at significant risk of unauthorized system access, data theft, and further malicious activities.

A critical vulnerability in the EngageLab SDK exposed data of 50 million Android users, including sensitive details from 30 million crypto wallets. Learn more about the breach and protective measures.
Argus Flow 09 Apr 2026

EngageLab SDK Vulnerability Exposed 50 Million Android Users

A security flaw within the EngageLab SDK has led to the exposure of data belonging to 50 million Android users. This breach notably includes sensitive information related to 30 million cryptocurrency wallets.

Google API keys embedded in Android apps found to expose Gemini AI endpoints. This vulnerability could lead to unauthorized access and potential data exposure.
Argus Flow 09 Apr 2026

Google API Keys in Android Apps Expose Gemini Endpoints

A new security report highlights that Google API keys embedded within certain Android applications could allow unauthorized access to Gemini AI endpoints. This vulnerability potentially exposes sensitive interactions with Google's AI services, raising concerns about data privacy and service integrity.

Eurail data breach impacts 300,000 users. Names, emails, and travel details are at risk. Update passwords and monitor accounts for suspicious activity.
Argus Flow 09 Apr 2026

Eurail Data Breach Affects 300,000 Individuals

Eurail has announced a data breach impacting approximately 300,000 individuals. The incident may have led to the compromise of personal data, including customer names, email addresses, and potentially travel-related information.

Bitcoin Depot lost $3.6 million in a cyberattack. Details on customer data breach are pending. Highlights crypto security risks.
Argus Flow 09 Apr 2026

Bitcoin Depot Hack Results in $3.6 Million Theft

Cryptocurrency platform Bitcoin Depot reported a security breach where $3.6 million was stolen. Details regarding the direct impact on customer records or specific types of data compromised have not been explicitly disclosed. This incident highlights ongoing cybersecurity challenges in the crypto industry.

Analysis indicates Iran-linked hacker groups will likely continue cyberattacks despite ceasefires. Organizations must fortify defenses against espionage and disruption threats.
Argus Flow 09 Apr 2026

Iran-Linked Hackers Expected to Continue Cyberattacks Amidst Ceasefire

Despite political ceasefires, analysis suggests Iran-linked hacker groups are unlikely to halt their cyberattack campaigns for long. These groups typically target critical infrastructure, government entities, and private sector organizations for espionage and disruption. Organizations must remain vigilant against ongoing threats.