Explore cybersecurity news, Threat Intelligence signals from X, and recent breach or unauthorized-access incidents by region. When AI is connected, titles and summaries are translated into the selected site language.
Source-linked incidents involving real organizations are extracted from public reporting. Confirmed, Investigating, and Reported states are kept separate; an attacker claim on X alone is never treated as confirmed exposure.
20 INCIDENTS
RECENT INCIDENT
Imagine the Possibilities
REPORTED
OFFICIAL SOURCEUSHHS OCR Breach Portal公表Disclosed 09/21 09:00
種別
Type
Hacking/IT Incident
Hacking/IT Incident
被害内容
Impact
米国HHS OCRに、保護されていない医療情報の侵害事案として報告されています。 州: IA。
Reported to HHS OCR as a breach of unsecured protected health information. State: IA. Entity type: Health Plan.
AI assists with translation, summarization, and incident extraction, but never replaces the source. Threatarium does not invent victim names, affected counts, exposed data, or attacker attribution. Unknown fields remain unknown and every entry links to source evidence.
Applied Healthcare Nursing Division, Inc. d/b/a Doctor's Choice Home Care
REPORTED
OFFICIAL SOURCEUSHHS OCR Breach Portal公表Disclosed 09/19 09:00
種別
Type
Hacking/IT Incident
Hacking/IT Incident
被害内容
Impact
米国HHS OCRに、保護されていない医療情報の侵害事案として報告されています。 州: TX。
Reported to HHS OCR as a breach of unsecured protected health information. State: TX. Entity type: Healthcare Provider.
漏洩・影響データ
Exposed / affected data
侵害情報の所在: Electronic Medical Record, Network Server
Location of breached information: Electronic Medical Record, Network Server
FBI disrupts Chinese hacking tools used to breach critical infrastructure
FBI disrupts Chinese hacking tools used to breach critical infrastructure
SOURCE DIGEST対象国・地域 GlobalREGION Global
The FBI has seized seven domains used by Chinese state-sponsored hackers known as Flax Typhoon to operate two hacking tools, MicroScan and FishHub, used in attacks that breached critical infrastructure and other organizations worldwide. [...]
The FBI has seized seven domains used by Chinese state-sponsored hackers known as Flax Typhoon to operate two hacking tools, MicroScan and FishHub, used in attacks that breached critical infrastructure and other organizations worldwide. [...]
Ransomware attack disrupts Japan's IDCF Cloud used by govt clients
Ransomware attack disrupts Japan's IDCF Cloud used by govt clients
SOURCE DIGEST対象国・地域 GlobalREGION Global
IDC Frontier, a major Japanese cloud and digital infrastructure company, disclosed that its IDCF Cloud service was targeted in a ransomware attack that caused an outage at a data center cluster serving the eastern part of the country. [...]
IDC Frontier, a major Japanese cloud and digital infrastructure company, disclosed that its IDCF Cloud service was targeted in a ransomware attack that caused an outage at a data center cluster serving the eastern part of the country. [...]
Low-cost Android phones ship with residential proxy malware
Low-cost Android phones ship with residential proxy malware
SOURCE DIGEST対象国・地域 GlobalREGION Global
A malware campaign dubbed 'Midnight Mimosa' has been discovered on low-cost Android smartphones that ship with malicious software embedded in their firmware, allowing attackers to silently install apps, perform ad fraud, and turn devices into residential proxies. [...]
A malware campaign dubbed 'Midnight Mimosa' has been discovered on low-cost Android smartphones that ship with malicious software embedded in their firmware, allowing attackers to silently install apps, perform ad fraud, and turn devices into residential proxies. [...]
FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails
FBI Says China-Linked Hackers Ran Portal Giving Third Parties Access to Stolen Emails
SOURCE DIGEST対象国・地域 GlobalREGION Global
Hackers tied to a Chinese cybersecurity company stole email from government organizations, law enforcement agencies, healthcare systems, and religious institutions in Southeast Asia, the FBI and agencies in 6 other countries said on October 8. The company, Integrity Technology Group, has been sanctioned by the U.S. and the UK. The hackers scanned websites for flaws using a too…
Hackers tied to a Chinese cybersecurity company stole email from government organizations, law enforcement agencies, healthcare systems, and religious institutions in Southeast Asia, the FBI and agencies in 6 other countries said on October 8. The company, Integrity Technology Group, has been sanctioned by the U.S. and the UK. The hackers scanned websites for flaws using a too…
ThreatsDay: Ransomware Affiliate Betrayal, WhatsApp RAT, Exposed Hacker Tools and 12 More Stories
ThreatsDay: Ransomware Affiliate Betrayal, WhatsApp RAT, Exposed Hacker Tools and 12 More Stories
SOURCE DIGEST対象国・地域 GlobalREGION Global
The crooks have trust problems of their own. One ransomware affiliate decided to keep the profits for himself. Elsewhere, an attacker left a server exposed, complete with tools and traces of an intrusion. Apparently, keeping things secure is a problem on both sides of the fence. The rest of the week isn't much more reassuring. Malicious code turned up in developer packages and…
The crooks have trust problems of their own. One ransomware affiliate decided to keep the profits for himself. Elsewhere, an attacker left a server exposed, complete with tools and traces of an intrusion. Apparently, keeping things secure is a problem on both sides of the fence. The rest of the week isn't much more reassuring. Malicious code turned up in developer packages and…
FakeGit malware campaign returns with 17,610 malicious GitHub repos
FakeGit malware campaign returns with 17,610 malicious GitHub repos
SOURCE DIGEST対象国・地域 GlobalREGION Global
More than 17,000 fake repositories on GitHub are distributing the SmartLoader malware after the FakeGit campaign reactivated earlier this month to push the StealC infostealer. [...]
More than 17,000 fake repositories on GitHub are distributing the SmartLoader malware after the FakeGit campaign reactivated earlier this month to push the StealC infostealer. [...]
Japan Sees Sharp Rise in Web Data Leaks Amid Mobile API Abuse and Metabase Attacks
Japan Sees Sharp Rise in Web Data Leaks Amid Mobile API Abuse and Metabase Attacks
SOURCE DIGEST対象国・地域 GlobalREGION Global
Attackers behind a string of personal data leaks at Japanese organizations have abused APIs for mobile apps and targeted known software flaws, the JPCERT Coordination Center (JPCERT/CC) said. The Tokyo-based center, which takes incident reports, based its October 8, 2026 alert on those reports and other information. The alert names no attacker and no affected organization. JPC…
Attackers behind a string of personal data leaks at Japanese organizations have abused APIs for mobile apps and targeted known software flaws, the JPCERT Coordination Center (JPCERT/CC) said. The Tokyo-based center, which takes incident reports, based its October 8, 2026 alert on those reports and other information. The alert names no attacker and no affected organization. JPC…
UAC-0099 Targets Ukrainian Government Personnel With ASHVEIN RAT Hiding Commands in HTML
UAC-0099 Targets Ukrainian Government Personnel With ASHVEIN RAT Hiding Commands in HTML
SOURCE DIGEST対象国・地域 GlobalREGION Global
The Russia-aligned threat actor known as UAC-0099 has been attributed to a previously undocumented .NET infostealer and remote access trojan (RAT) codenamed ASHVEIN. According to TrendAI, the malware has been put to use in attacks targeting Ukrainian government personnel. The cybersecurity company is tracking the cluster under the name Earth Sirrush (previously SHADOW-EARTH-06…
The Russia-aligned threat actor known as UAC-0099 has been attributed to a previously undocumented .NET infostealer and remote access trojan (RAT) codenamed ASHVEIN. According to TrendAI, the malware has been put to use in attacks targeting Ukrainian government personnel. The cybersecurity company is tracking the cluster under the name Earth Sirrush (previously SHADOW-EARTH-06…
Cisco warns of critical flaws allowing Nexus switch takeover
Cisco warns of critical flaws allowing Nexus switch takeover
SOURCE DIGEST対象国・地域 GlobalREGION Global
Cisco released security advisories for five critical vulnerabilities in its NX-OS data center network operating system that could be exploited to run arbitrary code with root privileges on Nexus switches. [...]
Cisco released security advisories for five critical vulnerabilities in its NX-OS data center network operating system that could be exploited to run arbitrary code with root privileges on Nexus switches. [...]
ARTEX AI Pentesting Tool Used in Data Theft Attacks on South Korean Financial Firms
ARTEX AI Pentesting Tool Used in Data Theft Attacks on South Korean Financial Firms
SOURCE DIGEST対象国・地域 GlobalREGION Global
Cybersecurity researchers have disclosed details of a targeted campaign aimed at South Korean financial organizations that used an artificial intelligence (AI) pen testing tool named ARTEX to carry out the attacks. The activity, per CrowdStrike Intelligence, was active from late September to early October 2026, and resulted in data exfiltration. "In this activity, the threat a…
Cybersecurity researchers have disclosed details of a targeted campaign aimed at South Korean financial organizations that used an artificial intelligence (AI) pen testing tool named ARTEX to carry out the attacks. The activity, per CrowdStrike Intelligence, was active from late September to early October 2026, and resulted in data exfiltration. "In this activity, the threat a…