Every entry below was pulled directly from a regulator’s feed in the last few days — CELLAR, EBA, ESMA, ENISA, BSI, BaFin, ANSSI and 14 other sources — classified against 21 EU compliance frameworks and summarised. Updates daily.
BREACHransomwarelive5 Jun 2026
Ransomware: worldleaks claims United Auto Supply (US) — Manufacturing
On 5 June 2026, a ransomware group known as Worldleaks published a claim that it had breached the systems of United Auto Supply, a US-based manufacturing company. The disclosure was made on the ransomware tracking site…
BREACHransomwarelive5 Jun 2026
Ransomware: worldleaks claims CH Karnchang Public (TH) — Construction
On June 5, 2026, a ransomware group known as Worldleaks published a claim that it had breached CH Karnchang Public Company Limited, a Thai construction firm. The incident was reported on the ransomware monitoring…
BREACHransomwarelive5 Jun 2026
Ransomware: securotrop claims Kriete Truck Centers (US) — Transportation/Logistics
A new ransomware incident has been publicly reported, involving the securotrop group targeting Kriete Truck Centers, a US-based transportation and logistics company. The breach was published on the ransomware.live data…
BREACHransomwarelive5 Jun 2026
Ransomware: akira claims Kennon Worldwide — Business Services
A new ransomware incident has been publicly reported involving the threat group Akira, which claims to have compromised Kennon Worldwide, a business services firm. The claim was published on a ransomware leak site on…
BREACHransomwarelive5 Jun 2026
Ransomware: akira claims Oaks Park (AU) — Consumer Services
On June 5, 2026, a ransomware group known as Akira claimed responsibility for a cyberattack against Oaks Park, an Australian consumer services organization. The incident was published on the ransomware group’s leak…
BREACHransomwarelive5 Jun 2026
Ransomware: akira claims T/CCI Manufacturing — Manufacturing
A new ransomware incident has been publicly reported on the ransomware.live leak site, claiming that the Akira ransomware group has breached T/CCI Manufacturing, a manufacturing sector company. The entry, published on…
BREACHransomwarelive29 Apr 2026
Ransomware: ransomhouse claims Karl Chevrolet (US) — Consumer Services
On 29 April 2026, a ransomware group known as RansomHouse publicly claimed responsibility for a cyberattack against Karl Chevrolet, a US-based automotive dealership in the consumer services sector. The claim was…
BREACHhibp29 May 2026
Breach: BCD Travel (396,313 accounts) — Email addresses, Employers, Job titles
On 29 May 2026, a data breach affecting BCD Travel was published on Have I Been Pwned, exposing 396,313 accounts. The compromised data includes email addresses, employer names, and job titles. This incident falls under…
BREACHransomwarelive6 Jun 2026
Ransomware: krybit claims huashan.com.cn (CN) — Not Found
A new ransomware incident has been publicly reported by the threat monitoring platform ransomware.live, indicating that the group "krybit" has claimed responsibility for an attack on huashan.com.cn, a Chinese domain.…
BREACHransomwarelive5 Jun 2026
Ransomware: anubis claims Jeffrey Burr — Not Found
On June 5, 2026, a ransomware group known as Anubis published a claim on the ransomware.live data leak site, alleging a breach involving an entity named Jeffrey Burr. The claim is listed under the BREACH framework, but…
BREACHransomwarelive5 Jun 2026
Ransomware: nova claims Aspire hospital — Healthcare
BREACHransomwarelive5 Jun 2026
Ransomware: krybit claims schultz.com.br (BR) — Business Services
BREACHransomwarelive5 Jun 2026
Ransomware: anubis claims D&M Contractors — Construction
CRAransomwarelive5 Jun 2026
Ransomware: incransom claims obrieneng.com (US) — Construction
BREACHransomwarelive5 Jun 2026
Ransomware: coinbasecartel claims Demand.ioNEW — Technology
BREACHransomwarelive5 Jun 2026
Ransomware: coinbasecartel claims Cambridge Mobile TelematicNEW — Technology
BREACHransomwarelive5 Jun 2026
Ransomware: worldleaks claims Access Dental (US) — Healthcare
BREACHransomwarelive5 Jun 2026
Ransomware: qilin claims Central Florida Cosmetic & Family Dentistry (US) — Healthcare
BREACHransomwarelive5 Jun 2026
Ransomware: dragonforce claims REHA-ACTIV (DE) — Healthcare
BREACHransomwarelive5 Jun 2026
Ransomware: qilin claims Pro-MEC Engineering Services — Business Services
BREACHransomwarelive5 Jun 2026
Ransomware: qilin claims Jay's Catering (US) — Hospitality and Tourism
BREACHransomwarelive5 Jun 2026
Ransomware: qilin claims Ontario Home Builders' Association (CA) — Construction
BREACHransomwarelive5 Jun 2026
Ransomware: qilin claims Swim-Mor Pools (US) — Consumer Services
BREACHransomwarelive5 Jun 2026
Ransomware: qilin claims INTERSPA Betriebsverwaltungsgesellschaft (DE) — Business Services
CVEnvd4 Jun 2026
CVE-2026-48040 (CVSS 9.1) — The netty incubator codec.bhttp is a java language binary http parser. The library implements Oblivious HTTP (RFC 9458) using BoringSSL's HPKE C library via JNI. When deriving native memory addresses
CVEnvd4 Jun 2026
CVE-2026-50292 (CVSS 7.4) — In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution
CRAnvd4 Jun 2026
CVE-2026-10931 (CVSS 9.6) — Use after free in FileSystem in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
CRAnvd4 Jun 2026
CVE-2026-10966 (CVSS 9.6) — Inappropriate implementation in Codecs in Google Chrome prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity:
CVEnvd4 Jun 2026
CVE-2026-10971 (CVSS 9.6) — Insufficient validation of untrusted input in Printing in Google Chrome on Windows prior to 149.0.7827.53 allowed a remote attacker who had compromised the renderer process to potentially perform a sa
CRAnvd4 Jun 2026
CVE-2026-10972 (CVSS 9.6) — Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827.53 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)