Although customer password vaults were not affected, LastPass confirmed that customer information was exposed when cybercriminals compromised a third-party market intelligence platform in June 2026. This is not the first time LastPass customers have had their information put at risk; LastPass’s major 2022 breach involved cybercriminals stealing backups of customer vault data.
From $890M in operational losses and 1.1TB of exfiltrated corporate data to 28,000 repositories affected. GitProtect's latest report exposes the critical vulnerabilities weaponized against industry leaders.
Novo Nordisk is a leading global healthcare company headquartered in Denmark with production facilities in two other countries. Founded in 1923, the company provides access to diabetes and obesity care products alongside treatments for rare blood and endocrine diseases in about 170 countries.
In Bitsight’s annual State of the Underground report we discuss cyber threat trends, key players, attack vectors, and why it all matters. The key theme from the 2026 State of the Underground is that cyber risk is changing as we know it. We are starting to see threat actors pivot alongside the changing threat landscape. We also explored how the threat landscape is reacting to the ever-growing changes brought on by AI.
In 2023, a single-file-transfer vulnerability enabled attackers to access hundreds of organizations simultaneously. Not only did they steal data, they immediately posted it to dark web extortion sites before most victims even knew they'd been hit. It was the MOVEit Transfer breach, and it exposed a gap that most corporate security stacks still haven't closed: the difference between stopping an attacker inside your network and finding your data after it's already left your network.
When Tata Electronics confirmed a cybersecurity incident this week, the numbers were staggering. Over 200,000 files. 630GB of data. Apple iPhone specs. Tesla trade secrets. Employee passport scans.
Organizations are struggling to detect, investigate, and contain cloud threats before adversaries achieve their goals. The new CrowdStrike State of Cloud Detection and Response (CDR) Survey highlights the primary challenges they face: Together, these challenges are creating opportunities for threat actors to successfully breach cloud environments.
Most cybersecurity conversations focus on stopping attackers from breaking in. New malware variants, ransomware campaigns, AI-powered attacks, and zero-day vulnerabilities dominate the headlines. Yet many breaches occur for a much simpler reason: organizations unintentionally expose systems, applications, or data to the internet.
A data breach can make headlines for a few days, but the real damage often unfolds long after the news cycle moves on. For financial companies, the most expensive consequences are often the ones that never appear in quarterly reports.