ZeroHour

Search: “email”

3 stories in the last 24h

Revolut Data Leak May Trace Back to Compromised Italian Government Accounts

Attackers using a compromised Italian government PEC account impersonated law enforcement to obtain data on ~680 Revolut customers.

Revolut confirmed its systems were not breached; fraudulent data requests came from a compromised PEC mailbox tied to the Prefecture of Reggio Calabria on the pec.interno.it domain. Per the Financial Times, roughly 680 customers had identity documents, addresses, banking information, verification selfies and cryptocurrency transaction histories exposed. Researcher Korra of Duel described a 'spray and pray' operation using hundreds of crypto transaction IDs and fraudulent European Investigation Orders. Threat actor IAmNotAVillain claims six months of access and 147 GB exfiltrated from Italian law-enforcement systems, though this remains unverified.

Security Affairs · 23h agoData breach in the wild

Gyazo Breach Exposes 23.62 Million User Records and 490 Million Image Metadata Recordsnew

Image-sharing service Gyazo disclosed a breach exposing about 23.62 million user records, including emails and password hashes, plus 490 million image metadata records.

Helpfeel, the Kyoto-based operator of image-sharing service Gyazo, disclosed that a security breach exposed approximately 23.62 million user records, including email addresses and password hashes. The breach also exposed about 490 million image metadata records, mostly for images from January 2019 or earlier. The company published its notice on Wednesday, September 17, 2026.

DataBreaches.net · 1h agoData breach

First Agentic AI Data Breach Reported to Spanish Regulator

Spain's AEPD reported the first data breach executed by an AI agent, which autonomously chained login, vulnerability discovery, and personal data modification.

Spain's Data Protection Agency (AEPD) published details of the first breach notification in which an AI agent executed the attack, achieving a successful login, searching for vulnerabilities, and modifying personal data and accessing invoices. The agency called the agent's autonomous chaining of attack phases a qualitative change and urged updated risk analysis, faster incident response, and stronger credential protection. Investigation is ongoing; commentators cite possible causes including a guardrail jailbreak, an escaped test model, or an unauthorized LLM-based penetration test.

SecurityWeek · 20h agoData breach in the wild 2 sources1· 1 read