Publications & Analyses
Argus Flow releases, platform announcements, press updates, and cybersecurity analyses.
NHS Warns Staff Jail Time Awaits for Unauthorized Patient Data Access
Following a rise in unauthorized access to patient records, the NHS has launched a new campaign warning staff they face potential jail time and career termination. The "don't let curiosity kill your career" initiative comes after several high-profile data breaches by employees.
Stolen Account Credentials Are the New Key in Ransomware
A new report from Sophos reveals that 79% of ransomware attacks now begin with stolen or compromised user credentials, indicating a shift where attackers focus more on the human element than on security vulnerabilities.
Anubis Attacks Coca-Cola's Fairlife Subsidiary
The Anubis ransomware gang has claimed responsibility for the cyberattack on Coca-Cola's dairy brand, Fairlife. The attack, which halted production, allegedly involved the theft of 1 TB of corporate data, with threats to leak it.
23andMe Agrees to New Security Terms in $18M Settlement
Genetic testing firm 23andMe has reached an $18 million settlement with 42 U.S. attorneys general following the 2023 data breach that affected over 6 million users. The deal imposes strict new data protection mandates on the new entity that acquired the bankrupt company's data.
Qilin Ransomware Exploits Palo Alto Security Flaw
The Qilin ransomware group is exploiting a critical authentication bypass vulnerability (CVE-2026-0257) in Palo Alto Networks' PAN-OS software to breach networks and conduct double extortion attacks.
Clover Health Hit by Social Engineering Attack
Health technology company Clover Health Investments has announced a data breach following a social engineering attack that compromised employee accounts. Personal and health information were reportedly affected in the breach.
Medtronic Notifies 3.8 Million After ShinyHunters Attack
The medical device giant has confirmed that the personal and medical information of nearly 4 million patients was compromised in a cyberattack carried out by the notorious ShinyHunters group in April.
Accenture Confirms Data Breach Hacker Claims 35 GB of Data
Consulting giant Accenture has confirmed a security breach after a hacker claimed to have stolen 35 GB of source code and cloud secrets. While the company states operations are unaffected, the nature of the stolen data raises serious concerns.
AssuranceAmerica Breach Exposes 7 Million Driver's Licenses
U.S. insurer AssuranceAmerica confirmed that a hack of an employee account led to the theft of driver's license data for nearly 7 million customers. Details of the March attack and the company's response are inside.
Estée Lauder Discloses Data Breach From Oracle Flaw
Cosmetics giant Estée Lauder has announced a data breach resulting from the exploitation of a vulnerability in its Oracle E-Business Suite system, used for HR operations. The attack is linked to a method previously used by the Clop ransomware group.
Lidl Data Breach Affects Customers in Three Countries
Lidl has notified its online shop customers in Germany, Belgium, and the Netherlands about a cyberattack on a business partner that exposed their personal data. Financial information is reported to be safe.
JadePuffer The First Fully LLM Driven Ransomware Attack
The cybersecurity world was shaken by the first ransomware attack reportedly conducted by AI agents, dubbed 'JadePuffer'. Attackers exploited a Langflow flaw to steal data from a production database and encrypt other systems.