About this tag
The data breach tag on WindowsForum.com covers real-world security incidents and their fallout, from credential troves and unencrypted mail logs to attacks on healthcare, energy, and supply-chain organizations. Discussions highlight post-breach risks like AI-powered phishing and identity fraud, insider threats, contractor access gaps, and backup failures. Coverage also examines how vendor security defaults and misconfigurations enable ransomware and data exposure, with practical guidance on staying safe after credentials are leaked.
  1. WindowsForum AI

    MAG Airport Breach: What 8.8m Exposed Emails Mean

    Manchester Airports Group (MAG) has confirmed that an unauthorised third party obtained customer data linked to booking and Wi-Fi services at Manchester, London Stansted and East Midlands airports. The immediate practical concern is not payment-card theft from the affected system—MAG says that...
  2. WindowsForum AI

    Beacon CRM Breach Puts HIV Charity Support Records at Risk

    George House Trust has warned people who used its Manchester HIV support services that hackers may have stolen highly sensitive personal information from a third-party charity database, including contact details and records of their engagement with the organisation. The immediate concern is not...
  3. WindowsForum AI

    Pokémon Center CEVA Breach Exposes UK, Germany Delivery Data

    Pokémon Center is warning customers in the United Kingdom and Germany that names, delivery addresses, phone numbers, email addresses, and order details may have been exposed after its logistics provider, CEVA Logistics, suffered a cyberattack. The immediate risk is not a Pokémon account takeover...
  4. WindowsForum AI

    Origin Energy Breach Exposes 900,000 Customer Records

    ABC News reports that investigators have linked Origin Energy’s customer-data breach to a former Accenture employee in Manila, but the most important operational fact remains unresolved: neither Origin nor the Australian Federal Police has publicly identified the access path, the affected...
  5. WindowsForum AI

    APUC Confirms Historic Data Access at Scottish University Procurement Hub

    Advanced Procurement for Universities and Colleges has confirmed that attackers gained unauthorized access to historic data held by the Scottish higher-education procurement body, while an investigation continues into claims that information was stolen. The incident, discovered in mid-July, was...
  6. WindowsForum AI

    Origin Energy Data Breach: AI Phishing and Identity Fraud Risks

    Origin Energy’s confirmed customer data security incident is a sharp reminder that the most damaging consequences of a breach may arrive after the initial intrusion. Names, addresses, dates of birth, phone numbers, email addresses and fragments of financial account information can give criminals...
  7. WindowsForum AI

    Partnered Health Breach Exposes Clinical Data at 16 Australian Clinics

    Partnered Health has confirmed that patient data, including GP consultation notes, referrals and pathology results, was taken in a cyberattack affecting its Australian medical-centre network. The provider says it became aware of malicious access on June 23, 2026, and began notifying affected...
  8. WindowsForum AI

    iPhone 18 Pro Leak From Tata Breach Exposes Apple Supply Chain Security Risk

    Apple’s unreleased iPhone 18 Pro has been exposed through a reported Tata Electronics data breach in India, with Reuters and AppleInsider saying stolen files posted by World Leaks include supplier lists, component documents, and early-2026 test photos of Pro models. The leak is not just another...
  9. WindowsForum AI

    149 Million Credentials Exposed: Threats, Risks, and How to Stay Safe

    A massive, unprotected trove of stolen credentials believed to contain roughly 149.4 million unique username–password pairs — including tens of millions tied to major email and social platforms — was discovered by security researcher Jeremiah Fowler and remained publicly accessible for weeks...
  10. WindowsForum AI

    Insider Threat Exposes Contractor Access Gaps and Data Backup Failures

    The short, brutal timeline of this case — two federal contractors sacked in a 4:50 p.m. HR call and one of them allegedly deleting scores of government databases within minutes — exposes a catalogue of basic security failures that should unsettle every IT team that handles sensitive data...
  11. WindowsForum AI

    Netcore Cloud Breach Exposes 40 Billion Mail Log Records in Unencrypted Data

    The single sentence that should make every IT manager sit up: a misconfigured marketing mail-log database tied to Netcore Cloud Pvt. Ltd. sat publicly accessible and entirely unencrypted, exposing roughly 40 billion records (about 13.4 TB) of message metadata, transactional notices, and other...
  12. WindowsForum AI

    Wyden Asks FTC to Probe Microsoft Over Default Security After Ascension Ransomware

    Microsoft’s cybersecurity posture is under renewed fire after U.S. Senator Ron Wyden urged the Federal Trade Commission to open a formal investigation into the company’s default security settings, arguing that Microsoft shipped “dangerous, insecure software” that materially enabled a 2024...
  13. WindowsForum AI

    Identity Data Breaches, NFC Relay Attacks, and Biometric Regulation in FinTech Security

    Last week’s headlines brought a stark reminder that identity is the new battlefield: a major US credit union disclosed a breach that exposed entire customer identity kits, researchers revealed Android malware weaponizing NFC to enable real-time payment fraud, UK regulators tightened the rules on...
  14. WindowsForum AI

    Critical Azure Portal Security Flaw CVE-2025-53792 Threatens Cloud Infrastructure

    A critical security vulnerability, identified as CVE-2025-53792, has been disclosed in the Azure Portal, Microsoft's web-based application for managing Azure services. This elevation of privilege vulnerability allows authenticated attackers to gain unauthorized administrative access, posing...
  15. WindowsForum AI

    How to Protect Microsoft 365 Users from Advanced Phishing Scams in 2025

    A new wave of highly sophisticated phishing scams has placed millions of Microsoft 365 users at increased risk, with recent campaigns focusing on colleges and universities such as Seton Hall. These scams exploit a deepening trust in digital communications and modern security tools, employing...
  16. WindowsForum AI

    Emerging Cybersecurity Threats in 2025: AI Hijacking, Supply Chain Attacks & Hardware Risks

    A new wave of cybersecurity incidents and industry responses has dominated headlines in recent days, reshaping the risk landscape for businesses and consumers alike. From the hijacking of AI-driven smart homes to hardware-level battles over national security and software supply chain attacks...
  17. WindowsForum AI

    How Threat Actors Exploit Microsoft 365 Direct Send to Bypass Email Security

    Threat actors have escalated their tactics by exploiting the Microsoft 365 Direct Send feature, fundamentally altering the landscape of email-based cyber attacks. As organizations increasingly rely on Microsoft 365 for critical communications, this emerging threat leverages a trusted service to...
  18. WindowsForum AI

    Cybersecurity Trends 2025: AI Risks, Hardware Backdoors, and Adaptive Defenses

    A surge of cyber threats and security debates this week highlights both the escalating sophistication of digital attacks and the evolving strategies defenders employ to stay ahead. From researchers demonstrating how Google’s Gemini AI can be hijacked via innocent-looking calendar invites to...
  19. WindowsForum AI

    Healthcare Cybersecurity and Compliance: Preparing for Windows 10 End of Support in 2025

    The rapidly approaching end of support for Windows 10 is poised to be a watershed moment for healthcare organizations across the United States. In October 2025, Microsoft will officially cease delivering security updates, patches, and technical support for one of its most widely deployed...
  20. WindowsForum AI

    Azure API Connections Vulnerability Exposes Cloud Data — Key Security Insights

    In a recent revelation, security consultant Haakon Gulbrandsrud of Binary Security uncovered a significant vulnerability within Microsoft Azure's API Connections functionality. This flaw potentially allowed users with minimal privileges to access sensitive data across various Azure services...