
Itron investigated unauthorized access while utility services continued
Itron disclosed unauthorized access to corporate systems while saying customer-hosted systems and core operations continued without material disruption.
Verified cybersecurity, fraud and digital-banking signals with decision context, affected audiences and practical actions.

Itron disclosed unauthorized access to corporate systems while saying customer-hosted systems and core operations continued without material disruption.

ADT confirmed limited customer-data exposure from unauthorized cloud access while saying payment data and customer security systems were not compromised.

Trigona affiliates are using a custom exfiltration tool designed to move valuable files quickly while avoiding detections tied to common utilities.

A malicious Bitwarden CLI npm release briefly put developer credentials and downstream software environments at risk. The vendor’s core vault service was not reported compromised.

Commercial surveillance tools exploited telecom networks to track people. CyberScoop documented the development in April 2026. SecBriefs checked the central claim against a primary record or genuinely independent…

Rituals says attackers accessed customer membership data, but passwords and payment information were not part of the confirmed breach.

UK cyber agency urges services to replace passwords with passkeys. UK NCSC documented the development in April 2026. SecBriefs checked the central claim against a primary record or…

Medical records linked to 500,000 Britons appeared for sale online. The Record documented the development in April 2026. SecBriefs checked the central claim against a primary record or…

CISA ordered federal agencies to remediate the exploited BlueHammer Microsoft Defender flaw after Microsoft released an April patch.

Deleted Signal messages remained recoverable from iPhone notification records. Schneier on Security documented the development in April 2026. SecBriefs checked the central claim against a primary record or…

Hijacked home and small-office devices are increasingly being used as covert infrastructure that makes hostile traffic look local and ordinary.

Kyber ransomware is experimenting with post-quantum encryption while targeting both Windows servers and VMware ESXi environments in the same campaign.

A targeted wiper campaign against Venezuela’s energy sector highlights how cyber incidents can shift from access to irreversible destruction.

France Titres confirmed a breach while the exact scale of attacker-claimed citizen data remained under investigation. Citizens should expect follow-on impersonation risk.

Scattered Spider member admitted hacking and multimillion-dollar crypto theft. KrebsOnSecurity documented the development in April 2026. SecBriefs checked the central claim against a primary record or genuinely independent…

Fake IT helpdesk calls in Teams can lead to workplace compromise. CSO Online documented the development in April 2026. SecBriefs checked the central claim against a primary record…

Ukraine says a long-running espionage campaign targeted prosecutors and investigators through Roundcube webmail vulnerabilities linked to APT28 activity.

Global police operation targeted tens of thousands of DDoS-for-hire users. Europol documented the development in April 2026. SecBriefs checked the central claim against a primary record or genuinely…

Three Windows flaws moved from public proof-of-concept code into reported active exploitation, raising urgency around privilege escalation and Defender tampering.

Autovista is restoring systems after a ransomware incident disrupted operations in Europe and Australia, while the investigation and confirmed impact remain limited.

A Salesforce-hosted webpage exposed limited company data even though McGraw-Hill said its core systems and customer databases were not breached.

Basic-Fit says about one million members were affected after an intruder downloaded contact, identity and bank-account information before access was blocked.

A fake wallet app passed through a trusted software marketplace and turned recovery-phrase theft into multimillion-dollar losses. for victims.

JanaWare uses Turkish-language targeting, location checks and phishing delivery to focus ransomware activity on users and smaller businesses in Turkey.