Data breach exposes up to 14.2 million email logins at six ISPs
2026-06-28T19:23:28Z•101a9a21e115023946a223ba9d7a3119d4e121b688a2a58ddf87a58e85f9d926
active-exploitationai-securitybackup-recovery-keysbrowser-in-the-middlecisaciscocredential-theftcrypto-theftdata-breachdomain-seizureemail-compromisefraudgithub-malwaremacos-malwareopenai-impersonationphishingphishing-kitprompt-injectionsignalsim-swappingsupply-chain-attackvulnerabilitywindows-10-esu
What happened
A set of emerging security incidents and trends: KDDI disclosed a breach exposing up to 14.2 million email logins across six Japanese ISPs; CISA issued an urgent patch deadline for a Cisco Unified Communications Manager Server vulnerability actively exploited; a supply‑chain compromise at a third‑party vendor led to a $3M loss at Polymarket; Russian-linked actors are phish‑targeting Signal users to steal backup recovery keys; attackers are abusing clean GitHub repos and AI coding agents to smuggle and run malware; new macOS ‘Gaslight’ malware attempts to evade AI analysis; and adversaries are採
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 101a9a21e115023946a223ba9d7a3119d4e121b688a2a58ddf87a58e85f9d926
- Enrichment time
- 2026-06-28T19:23:28Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.