Close Menu
TechTost
  • AI
  • Apps
  • Crypto
  • Fintech
  • Hardware
  • Media & Entertainment
  • Security
  • Startups
  • Transportation
  • Venture
  • Recommended Essentials
What's Hot

The Xteink X4 Pro could be the tiny e-reader of your dreams

Judge blocks $110 billion Paramount-Warner Bros. merger

Hackers steal ‘significant’ amount of data from tech company that thousands of US hospitals and pharmacies rely on

Facebook X (Twitter) Instagram
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer
Facebook X (Twitter) Instagram
TechTost
Subscribe Now
  • AI

    Anthropic’s landmark $1.5 billion copyright settlement approved

    21 July 2026

    YouTube clarifies policies on AI and disturbing videos

    20 July 2026

    What to watch out for after Jensen Huang’s visit to Japan

    20 July 2026

    ‘Odyssey’ director Christopher Nolan calls artificial intelligence an apparent ‘Trojan horse’

    19 July 2026

    Kymi: Threat or menace? | TechCrunch

    19 July 2026
  • Apps

    Adobe’s new camera app feature will critique your photos using AI

    20 July 2026

    Superhuman’s new auto-draw feature almost makes me like the AI ​​responses

    19 July 2026

    Meta now alerts parents if their teen has discussed suicide or self-harm with AI chatbot

    18 July 2026

    Apple and Google ordered to purge “stud” apps from App Stores

    18 July 2026

    Newsletter platform Beehiiv now lets subscribers chat with each other, adds AI

    17 July 2026
  • Crypto

    Venice AI goes unicorn with $65M Series A as first privacy AI platform takes off

    1 July 2026

    Crypto Exchange OKX wants AI agents to hire and pay each other

    30 June 2026

    Startup Battlefield 200 applications close today

    27 May 2026

    5 days left: Save up to $410 on Disrupt 2026 passes

    25 May 2026

    As crypto cools, a16z crypto raises $2.2 billion in capital

    6 May 2026
  • Fintech

    Don’t want to invest in Elon Musk? Two new ETFs expressly exclude him

    10 July 2026

    India’s payments chief believes artificial intelligence will play a big part in the next era of digital payments development

    28 June 2026

    Early Bird pricing ends tonight for the Founder Summit

    26 June 2026

    4 days left to save up to $190 on Founder Summit 2026

    23 June 2026

    Robinhood’s note on 10% layoffs shows that blaming AI doesn’t cut it

    17 June 2026
  • Hardware

    The Xteink X4 Pro could be the tiny e-reader of your dreams

    21 July 2026

    reMarkable’s new Paper Pure is good. That’s why I wrote this review on it.

    21 July 2026

    Watch Flock Safety CEO Garrett Langley discuss the future of surveillance at TechCrunch Disrupt 2026

    20 July 2026

    Could an Apple lawsuit derail OpenAI’s hardware plans?

    20 July 2026

    Parents want safer phones for kids. These companies are answering the call.

    19 July 2026
  • Media & Entertainment

    Judge blocks $110 billion Paramount-Warner Bros. merger

    21 July 2026

    Spotify extends parent-managed accounts to users on its free tier

    16 July 2026

    Spotify extends its AI with a ChatGPT-style music assistant

    15 July 2026

    12 states sue to block $110 billion Paramount deal from Warner Bros

    14 July 2026

    Netflix could be planning “always on” live TV channels.

    11 July 2026
  • Security

    Hackers steal ‘significant’ amount of data from tech company that thousands of US hospitals and pharmacies rely on

    21 July 2026

    Hackers are exploiting newly patched WordPress bugs, putting millions of websites at risk

    20 July 2026

    How an ex-DeepMind researcher raised a $300 million seed valuation before launching a product

    18 July 2026

    Period tracker Stardust shares users’ health data with analytics firm, Mozilla investigation says

    18 July 2026

    FBI Arrests Man Accused of Using Steam Games to Empty Victims’ Crypto Wallets

    17 July 2026
  • Startups

    Colossal Biosciences is reportedly in talks to raise new capital at a $20 billion-$30 billion valuation

    21 July 2026

    Natural raises $30 million to reinvent payments for AI agents — and take on Stripe

    20 July 2026

    Backed by $60 million in funding, Oak comes out of stealth to fix the identity mess exacerbated by AI agents

    18 July 2026

    Applications close in 48 hours — here’s everything Aussie founders need to know about Stripe x Startup Battlefield

    18 July 2026

    Indian AI coding startup Emergent goes unicorn with $130M Series C

    17 July 2026
  • Transportation

    TechCrunch Mobility: The battle over the robotaxi rules

    19 July 2026

    A 600-mile road trip (and data) proves EV charging isn’t crap anymore

    19 July 2026

    All electric vehicles stopped or killed in the US this year

    18 July 2026

    SpaceX abruptly aborts second launch of Starship V3 after ignition

    18 July 2026

    Zoox issues software recall after a robotaxi was confused by heavy smoke

    17 July 2026
  • Venture

    StrictlyVC returns to New York on September 10 to celebrate a huge year for the city’s startup community

    21 July 2026

    Startup Inference Infinity raises $15 million from researchers Touring Capital, OpenAI and Anthropic

    20 July 2026

    Nuclear startup Valar Atomics is in talks to raise new funding at a $6 billion valuation

    18 July 2026

    No product? No problem. This Disrupt 2026 session shows how to get early stage funding with conviction, storytelling

    17 July 2026

    Founders Fund hires ex-OpenAI exec Ryan Beiermeister (and not because of her ‘mafia’ skills)

    17 July 2026
  • Recommended Essentials
TechTost
You are at:Home»Security»Hacked, leaked and held for ransom: the worst breaches of 2026 so far
Security

Hacked, leaked and held for ransom: the worst breaches of 2026 so far

techtost.comBy techtost.com7 June 202608 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Hacked, Leaked And Held For Ransom: The Worst Breaches Of
Share
Facebook Twitter LinkedIn Pinterest Email

If anything, 2026 has made it clear that cyber security is no longer a background concern—it’s front and center, woven into nearly every major story of the year. Yes, wars are still raging, the climate continues to worsen, and we’re seemingly one dark sneeze away from the next global pandemic.

But underneath it all is a digital current that touches everything: wars being fought on digital fronts as well as physical ones, governments weaponizing citizens’ data against themselves, botnets quietly undermining democratic institutions, nation-state hackers targeting civilian infrastructure from power grids to water systems, and ransom gangs paying massive corporate gangs. Attacks are becoming bolder, more destructive and harder to contain.

As we’re halfway through this already horrific year of digital attacks and hybrid warfare, we’re taking a look at some of the worst hacks and breaches so far and how they might affect us in the future.

Questions remain about DOGE’s massive swipe of Social Security data

A year later, after entrepreneurs with the Elon Musk-led group of government destroyers known as the Department of Government Efficiency (or DOGE) hijacked and dismantled federal agencies from the inside out, we’re still learning about the data breaches that occurred under their watch.

After the DOGE entered the Social Security Administration, it remains unclear what happened to some of the country’s most sensitive data as lawsuits play out in federal court. The whistleblower’s most troubling claim is that DOGE uploaded a live copy of the Social Security database to an unsecured third-party server, leading to a scramble to understand what was stored on it. This database reportedly contained the Social Security numbers and related personal information of most living Americans.

In court filings, the Social Security Administration doesn’t know for sure what was on the server, but said DOGE signed an agreement with an outside political advocacy group under the guise of finding evidence of voter fraud, which President Trump he continues to claim without any evidence. Fears are that the database could be misused to target Americans for false reasons.

Two of the top House Democrats investigating some of DOGE’s activities at the Social Security Administration said that the report of the government’s Social Security database “could very well be the largest data breach in our nation’s history.”

Image Credits:Bryan Dozier/Middle East Images via AFP/Getty Images

Hackers are increasingly targeting water systems and energy networks

A wave of cyber-attacks across Europe targeting civilian sources of energy and water, such as power plants and water dams, has set a worrying trend in recent times. Several invasions attributed to (or at least partially blamed on) Russia have risked harming communities and populations in the real world.

The target was Poland’s energy grid malware that destroys the computer at the end of last year, as well as a Swedish thermal unit and a Norwegian dam that dumped water into the pools. Hackers targeted Poland again earlier this year, this time its water treatment plants, showing that Russia’s hybrid warfare rivalry continues to extend beyond the digital realm.

Now, thanks to the recent war between the US and Israel against Iran, there are warnings that Iranian hackers are targeting critical infrastructure in the United States. This includes private utilities, which remain a soft target for hackers, who often lack basic cyber protections.

Iranian government hackers hit Stryker with a devastating device hack

Speaking of Iran, a cyber attack on an American medical technology company, Stryker, in March saw Iranian hackers break into and remotely wipe tens of thousands of employee devices in one fell swoop, causing widespread disruption to the company’s operations for several days.

The breach was a marked shift in Iranian hacking tactics at a time of ongoing war in the Middle East, with Iran moving from its typical focus on espionage and hack-and-leak operations to enhance the country’s political gains, to actively causing devastating hacks as ostensibly retaliation for the war. The US government attributed the hacker group behind the breach to a branch of Iran’s intelligence agency. Breach ended has a material effect in Stryker’s first-quarter earnings after regaining control of its systems.

Be aware of ShinyHunters annoying hacking campaigns

ShinyHunters continued their hacking campaigns, targeting dozens of companies with simple but highly effective voice phishing techniques. English-speaking hackers are adept at tricking companies into handing over access to their internal systems by pretending to be IT support, or conversely, an employee who has forgotten their password.

Few know better than the toll that a ShinyHunters hack from education technology giant Instructure can take. Hackers breached the company’s leading learning management system Canvas to steal personal data and personal information belonging to over 30 million students and staff. When the company didn’t pay the hackers’ ransom, the hackers broke in – again – and defaced the school’s login screens for Canvas, which students used to access their exam and course materials. This second hack occurred during school finals, disrupting exams for students across the United States. Instructure eventually paid the ransom, despite the FBI’s efforts to prevent the company from paying.

Instructure was far from the only company targeted by the ShinyHunters hackers. The gang is behind some of the biggest breaches by the number of files stolen, including about 40 million files from Internet provider Charter and at least 6 million customer records from Carnival cruise shipamong other casualties in higher education, finance and government.

A modified screenshot of the message ShinyHunters left on Instructure's compromised Canvas platform login pages.
Image Credits:TechCrunch

The supply chain is under attack, targeting open source projects and large tech companies

A series of continuous, simultaneous and sometimes overlapping attacks on open source developers has led to massive intrusions targeting major technology companies and their customers.

Some of the biggest names in security including Aqua Security’s Trivy tool, Bitwardenand Checkmarxalong with others large open source projectswere breached this year, allowing hackers to steal passwords, credentials and other sensitive tokens from the computers of anyone who installed a backdoored copy of the software or had their pre-installed software automatically updated to download the malware.

These attacks used the stolen credentials to spread further and opened the door to downstream compromises of major companies that rely on the targeted software, including artificial intelligence giant OpenAI and web hosting company Vercel. With a new hack almost every week, the open source world remains a vulnerable target in the wider tech ecosystem.

The FBI’s surveillance system was breached, triggering a “major cyber incident“

The US Federal Bureau of Investigation was forced to declared a “major cyber incident” in April, prompting a legally required disclosure with Congress after finding that one of its surveillance systems had been breached. According to reports, the breach probably exposed phone numbers of targets under surveillance by federal agents.

Chinese spies were accused of breaching the unclassified network, which had sensitive information about the targets of the wiretapping and other interception of communications, such as pen registry returns. In informing lawmakers, the breach is likely to have met a hurdle of causing “proven harm” to US national security.

Hasbro’s hack led to weeks of downtime

Toy manufacturing giant Hasbro is the latest example of what happens when a large company is hit by a security incident and is unprepared for it. Weeks after hackers were discovered on its systems in late March, the 103-year-old company remained largely offline, its website down and unable to serve its customers.

The company, which owns big-name brands like Transformers, Peppa Pig and Dungeons & Dragons, has said little about the incident itself, what data was taken (if any) and whether it paid the hackers. But the disruption alone is likely to affect the company’s finances, which it was forced to do delayas the company tried to handle the incident.

Hasbro he said as of mid-May that the hackers were no longer on its systems and that its recovery was underway. However, the financial cost of the breach and the impact on its operations is likely to be realized in the coming months and is expected to be significant.

Millions of passports and driver’s licenses have been exposed in abundance

In the past few months alone, there has been an uptick in major data exposures involving people’s sensitive government-issued identity documents, including scans of passports and driver’s licenses left exposed on the web. From a hotel check-in system and a money transfer app to a prison phone card provider and a UK visa service, these services exposed personal documents of more than two million people that could easily be misused. Many were caused by simple security holes that could easily have been avoided with basic cyber security practices.

These massive data leaks come at a time when apps and gated community sites are increasingly relying on “know your customer” checks to force users to verify their identity before being allowed in, and governments are pushing age-verification laws requiring similar authentication checks from adults to access a huge swath of the internet.

The logic goes that the bigger the leaks, the less effective these authentication systems are, as they can easily be misused with a stolen or leaked passport or driver’s license. The further development of these identity collection systems will inevitably lead to more data breaches and security gaps.

When you purchase through links in our articles, we may earn a small commission. This does not affect our editorial independence.

breaches cyber attack cyber security data breach hacked hacks held leaked ransom worst
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleTechCrunch Mobility: Inside GM’s $900 Million EV Battery Bet
Next Article X caters to creators with the new “React with Video” feature.
bhanuprakash.cg
techtost.com
  • Website

Related Posts

Hackers steal ‘significant’ amount of data from tech company that thousands of US hospitals and pharmacies rely on

21 July 2026

Hackers are exploiting newly patched WordPress bugs, putting millions of websites at risk

20 July 2026

How an ex-DeepMind researcher raised a $300 million seed valuation before launching a product

18 July 2026
Add A Comment

Leave A Reply Cancel Reply

Don't Miss

The Xteink X4 Pro could be the tiny e-reader of your dreams

21 July 2026

Judge blocks $110 billion Paramount-Warner Bros. merger

21 July 2026

Hackers steal ‘significant’ amount of data from tech company that thousands of US hospitals and pharmacies rely on

21 July 2026
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Fintech

Don’t want to invest in Elon Musk? Two new ETFs expressly exclude him

10 July 2026

India’s payments chief believes artificial intelligence will play a big part in the next era of digital payments development

28 June 2026

Early Bird pricing ends tonight for the Founder Summit

26 June 2026
Startups

Colossal Biosciences is reportedly in talks to raise new capital at a $20 billion-$30 billion valuation

Natural raises $30 million to reinvent payments for AI agents — and take on Stripe

Backed by $60 million in funding, Oak comes out of stealth to fix the identity mess exacerbated by AI agents

© 2026 TechTost. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms and Conditions
  • Disclaimer

Type above and press Enter to search. Press Esc to cancel.