Aura confirms data breach exposing 900,000 marketing contacts
2026-03-19T07:23:28Z•176504e2ccb2e598e1c743a817cdce43f4d700441b24bf5395a5ba94584ceda2
ciscoconnectwisecryptographic-signature-bypassdarksworddata-breachemail-compromiseexfiltrationgithubglassworminfostealerinterlockiosmarquisnpmopenvsxphishing','nordstrom'','refund-fraud','webkit','apple','leaknet'ransomwarercescreenconnectsecure-fmcsupply-chainvscodexsszero-dayzimbra
What happened
Multiple high-impact incidents and active exploitations reported: Aura confirmed a data breach exposing ~900,000 marketing contacts (names and emails). CISA ordered federal agencies to patch an actively exploited Zimbra XSS flaw. ConnectWise fixed a cryptographic signature verification vulnerability in ScreenConnect that could allow hijacking and privilege escalation. The Interlock ransomware group has been exploiting a maximum‑severity RCE zero‑day in Cisco Secure FMC since January; separate ransomware incidents (Marquis) exposed ~672K records. The GlassWorm supply‑chain campaign hit 400+ Git
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 176504e2ccb2e598e1c743a817cdce43f4d700441b24bf5395a5ba94584ceda2
- Enrichment time
- 2026-03-19T07:23:28Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.