Skip to content

breach_cve_trends

European Commission Mobile Device Management Breach

Date of Incident: 2026-01-30 Overview: The European Commission experienced a security breach in their Mobile Device Management (MDM) system on January 30, 2026, which was reported on February 9, 2026. The breach affected staff members’ personal information, including names and phone numbers, but did not compromise the mobile devices themselves. Attackers leveraged MITRE ATT&CK techniques… Read More »European Commission Mobile Device Management Breach

The AI Shift in Offensive Security: From Manual to Autonomous Agents

AI is fundamentally reshaping how offensive security operates. What was once a manual, checklist-driven exercise conducted once or twice a year is rapidly evolving into continuous, autonomous testing powered by intelligent agents. In this exclusive FireCompass webinar, industry leaders explored what this shift means for attackers, defenders, and security leaders navigating an increasingly hostile threat… Read More »The AI Shift in Offensive Security: From Manual to Autonomous Agents

Flickr Data Breach

Date of Incident: 2026-02-05 Overview: The Flickr Data Breach, reported on February 6, 2026, involved the exposure of user data including real names, email addresses, IP addresses, usernames, account types, general location, and platform activity. However, passwords and payment card details remained secure. The breach likely resulted from an exploitation of a vulnerability or compromised… Read More »Flickr Data Breach

Spain’s Ministry of Science Cyberattack

Date of Incident: 2023 Overview: In 2023, Spain’s Ministry of Science suffered a significant cyberattack, leading to the partial shutdown of its IT systems and suspension of key administrative services impacting researchers, universities, and students. The breach involved the use of custom PowerShell scripts for lateral movement and ransomware deployment, exploiting valid accounts for initial… Read More »Spain’s Ministry of Science Cyberattack

Substack Data Breach

Date of Incident: October 2025 Overview: In October 2025, Substack experienced a data breach where unauthorized access led to the theft of 697,313 user records, involving email addresses, phone numbers, and internal metadata. Credentials and financial information remained secure, but the exposed personal data heightened the risk of phishing attacks. The breach exploited exposed APIs… Read More »Substack Data Breach