Seiko USA website defaced as hacker claims customer data theft

2026-04-20T19:23:29Z03b61bb4c97c80cc529b2c2cccf29feebc61d00dcfa8c01ec908019738731e2c
Microsoft Teams abuseQEMU evasionScattered SpiderVercel breachWindows Server emergency updatebackup/BCDRcryptocurrency exchange hackcustomer data theftdata breachhelpdesk impersonationlaw enforcementout-of-band patchingphishingprobuf.jsransomwareremote code executionvulnerabilitywebsite defacement

What happened

Multiple security incidents and high-risk developments were reported across the week. Notable items include the Seiko USA website defacement with claims of stolen Shopify customer data, a confirmed Vercel breach with threat actors selling stolen data, and an exchange hack at Grinex. Microsoft warned of growing abuse of Teams for helpdesk impersonation and other functional regressions; it also released emergency OOB fixes for Windows Server. A critical remote-code-execution flaw in protobuf.js (proof-of-concept published) and novel ransomware tactics (Payouts King using QEMU VMs to evade EDR) e

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
03b61bb4c97c80cc529b2c2cccf29feebc61d00dcfa8c01ec908019738731e2c
Enrichment time
2026-04-20T19:23:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.