Data breach exposes up to 14.2 million email logins at six ISPs

2026-06-29T01:23:48Z54ee9ee8ee53f6d8fecc1ef5745dfc30fb3ea65a65cf0be0216b826dfead66ce
ISPsactive-exploitai-agentsbackup-recovery-keysbluekitbrowser-in-the-middlecisaciscodata-breachemail-compromisegaslightgithubmacosmalwarenation-statephishingphishing-kitpolymarketrussiasignalsupply-chainsupply-chain-attackthird-party-breachurgent-patchvulnerability

What happened

Multiple high-impact incidents reported: KDDI disclosed a data breach exposing up to 14.2 million email logins across six ISPs. The FBI and CISA warn of phishing campaigns tied to Russian actors stealing Signal Backup Recovery Keys (risking historical message access). CISA issued an urgent patch deadline for an actively exploited Cisco Unified Communications Manager Server vulnerability. Other notable events include a malicious script injected via a third‑party vendor that cost Polymarket customers ~$3M, clean-looking GitHub repos that can trick AI coding agents into executing hidden malware,盗

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
54ee9ee8ee53f6d8fecc1ef5745dfc30fb3ea65a65cf0be0216b826dfead66ce
Enrichment time
2026-06-29T01:23:48Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.