IR Trends Q1 2026: Phishing reemerges as top initial access vector, as attacks targeting public administration persistCisco Talos·Apr 22, 10:00 UTC · Apr 22, 2026Phishing & fraud55
36 Malicious npm Packages Exploited Redis, PostgreSQL to Deploy Persistent ImplantsThe Hacker News·Apr 6, 06:40 UTC · Apr 6, 2026Vulnerability142
OpenClaw AI Agent Flaws Could Enable Prompt Injection and Data ExfiltrationThe Hacker News·Apr 4, 07:24 UTC · Apr 4, 2026AI safety & security30
UAT-10608: Inside a large-scale automated credential harvesting operation targeting web applicationsCisco Talos·Apr 2, 10:00 UTC · Apr 2, 2026Data breachCVE-2025-55182160
2025 Identity Threat Landscape Report: Inside the Infostealer Economy: Credential Threats in 2025Recorded Future·Mar 16, 00:00 UTC · Mar 16, 2026Malware42
Malicious Chrome Extensions Caught Stealing Business Data, Emails, and Browsing HistoryThe Hacker News·Feb 15, 00:00 UTC · Feb 15, 2026Malware30
VVS Stealer, a new python malware steals Discord credentialsSecurity Affairs·Jan 5, 08:45 UTC · Jan 5, 2026Malware30
Uncovering Qilin attack methods exposed through multiple casesCisco Talos·Oct 27, 02:00 UTC · Oct 27, 2025Ransomware57
Ransomware Actor Deletes Data and Backups PostInfosecurity Magazine·Aug 28, 09:05 UTC · Aug 28, 2025Ransomware60
Database Breaches Remain the Top Cyber Threat for OrganizationsRecorded Future·Aug 21, 00:00 UTC · Aug 21, 2025Ransomware57
Malvertising campaign leads to PS1Bot, a multiCisco Talos·Aug 12, 20:00 UTC · Aug 12, 2025Threat actor45
Researchers flag flaw in Google’s AI coding assistant that allowed for ‘silent’ code exfiltrationCyberScoop·Jul 28, 20:26 UTC · Jul 28, 2025Exploit / PoC in the wild160
Redefining IABs: Impacts of compartmentalization on threat tracking and modelingCisco Talos·May 13, 10:00 UTC · May 13, 2025Ransomware60
Open-source malware doubles, data exfiltration attacks dominateHelp Net Security·Apr 3, 00:00 UTC · Apr 3, 2025Malware30
Tria stealer targets Android users for SMS exfiltration and financial gainKaspersky Securelist·Jan 30, 08:00 UTC · Jan 30, 2025Malware30
UAT-5647 targets Ukrainian and Polish entities with RomCom malware variantsCisco Talos·Oct 17, 10:00 UTC · Oct 17, 2024Malware42
Understanding REvil: REvil Threat Actors May Have Returned (Updated)Palo Alto Unit 42·Jun 5, 20:39 UTC · Jun 5, 2024Threat actor57
What makes ransomware victims less likely to pay up?Help Net Security·Jan 26, 00:00 UTC · Jan 26, 2024Ransomware57
BMC vulnerabilities in Supermicro servers allow remote takeover, data exfiltration attacksHelp Net Security·Sep 28, 10:09 UTC · Sep 28, 2023Vulnerability in the wild60
Panzura Edge minimizes the risk of data leakage and exfiltrationHelp Net Security·Sep 28, 00:00 UTC · Sep 28, 2023Ransomware57
Malicious npm Packages Found Exfiltrating Sensitive Data from DevelopersThe Hacker News·Aug 7, 09:56 UTC · Aug 7, 2023Threat actor157
CERT-UA Uncovers Gamaredon's Rapid Data Exfiltration Tactics Following Initial CompromiseThe Hacker News·Jul 17, 05:17 UTC · Jul 17, 2023Data breach57
Experts Reveal Google Cloud Platform's Blind Spot for Data Exfiltration AttacksThe Hacker News·Mar 6, 14:04 UTC · Mar 6, 2023Threat actor45
Week in review: LastPass breach, GCP data exfiltration, UEFI bootkitHelp Net Security·Mar 5, 00:00 UTC · Mar 5, 2023Ransomware60
Cisco: Security devices are vulnerable to SNIcat data exfiltration techniqueThe Record·Dec 13, 00:00 UTC · Dec 13, 2022Exploit / PoC45
Week in review: Spot deep-faked job candidates, data exfiltration via bookmarks, Patch Tuesday forecastHelp Net Security·Aug 7, 00:00 UTC · Aug 7, 2022VulnerabilityCVE-2022-3165660
Exfiltrating private keys from air-gapped cold walletsHelp Net Security·Jul 26, 11:30 UTC · Jul 26, 2022Malware30
Security Experts Warn of Two Primary Client-Side Risks Associated with Data Exfiltration and LossThe Hacker News·Jul 19, 11:23 UTC · Jul 19, 2022Threat actor57
Log4Shell Still Being Exploited to Hack VMWare Servers to Exfiltrate Sensitive DataThe Hacker News·Jun 24, 07:37 UTC · Jun 24, 2022VulnerabilityCVE-2021-44228CVE-2022-2295447
Quarterly Report: Incident Response trends in Q1 2022Cisco Talos·Apr 26, 13:11 UTC · Apr 26, 2022Ransomware in the wildCVE-2021-44228CVE-2021-45046CVE-2021-22204+1 CVEs60
Third of Employees Admit to Exfiltrating Data When Leaving Their JobInfosecurity Magazine·Feb 2, 12:30 UTC · Feb 2, 2022Data breach57
Code42 Incydr can now differentiate between personal and corporate cloud application uploadsHelp Net Security·Aug 7, 00:00 UTC · Aug 7, 2021Policy & legal30
SpearTip Finds New Diavol Ransomware Does Steal DataSecurity Affairs·Jul 15, 17:34 UTC · Jul 15, 2021Ransomware57
Experts spotted an advanced Android spyware posing as “System Update”Security Affairs·Mar 27, 17:35 UTC · Mar 27, 2021Malware30
Mimecast confirms SolarWinds attackers breached security certificate, 'potentially exfiltrated' credentialsCyberScoop·Jan 26, 20:15 UTC · Jan 26, 2021Data breach in the wild60
Code42 Incydr: A cloud-native product that mitigates insider data exposure and exfiltrationHelp Net Security·Sep 17, 00:00 UTC · Sep 17, 2020Industry30
New Web-Based Credit Card Stealer Uses Telegram Messenger to Exfiltrate DataThe Hacker News·Sep 2, 11:13 UTC · Sep 2, 2020Malware30
Researchers disclosed details of #EFAIL attacks on in PGP and S/MIME tools. Experts believe claims are overblownSecurity Affairs·May 14, 18:07 UTC · May 14, 2018VulnerabilityCVE-2017-17688CVE-2017-1768960
Attackers exfiltrated a casino’s high-roller list through a connected fish tankSecurity Affairs·Apr 16, 06:25 UTC · Apr 16, 2018Data breach45