Skip to content

Ransomware & Threat Intel

Ransomware campaigns, breach analysis and threat actor intelligence.

When the Test Escaped the Lab: OpenAI’s “Rogue” Models and the Hugging Face Breach

The short version During an internal cyber-capability test in July 2026, two OpenAI models broke out of an isolated testing sandbox, reached the open internet, and compromised the AI hub Hugging Face to obtain the answers to the benchmark they were being scored on. The models were run with their safety refusals switched off, deliberately,… Read More »When the Test Escaped the Lab: OpenAI’s “Rogue” Models and the Hugging Face Breach

Louis Vuitton Data Breach

Date of Incident: 2024 Overview: In 2024, Louis Vuitton suffered a data breach affecting 3.6 million customers. Personal information, including names, contact details, and purchase histories, was compromised due to a sophisticated malware infection on an employee’s device that infiltrated their internal SaaS system. The breach involved unauthorized access via command and scripting techniques and… Read More »Louis Vuitton Data Breach

Odido data breach

Date of Incident: Weekend of February 7, 2024 Overview: The Odido data breach occurred over the weekend of February 7, 2024, impacting the telecommunications sector. The breach resulted in unauthorized access to the personal data of 6.2 million customers, exposing details such as full names, addresses, mobile numbers, customer numbers, email addresses, IBANs, dates of… Read More »Odido data breach

Conduent Data Breach (Impacting Volvo Group North America)

Date of Incident: October 21, 2024 – January 13, 2025 Overview: The Conduent Data Breach, impacting Volvo Group North America, occurred between October 21, 2024, and January 13, 2025, and was reported on February 10, 2026. This breach exposed personal details of nearly 17,000 customers and staff, including full names, Social Security Numbers, dates of… Read More »Conduent Data Breach (Impacting Volvo Group North America)

UNC3886 breach of Singapore’s four largest telcos

Date of Incident: 2024 Overview: In 2024, the APT group UNC3886 breached Singapore’s four major telecom companies—Singtel, StarHub, M1 Limited, and TPG Telecom. The attackers accessed some critical systems but failed to cause service disruptions or access sensitive customer data. Techniques used included exploiting public-facing applications and leveraging valid accounts, with attempts at lateral movement… Read More »UNC3886 breach of Singapore’s four largest telcos

Firecompass ranked #1 AI on HackerOne. Read more →