7-Eleven data breach exposes personal information of 185,000 people
2026-05-26T07:23:30Z•7af77e69966c202e7c8af13ddcf5c9cf85080a57dae60af28f3a641515526a18
Apex One zero-dayCVE-2026-26980Chromium RCE leakClickFixDrupal SQL injectionGhost CMSKali365KimWolf botnetLaravel LangOAuth device codeSQL injectionShinyHuntersUbiquiti UniFi OScredential-stealing malwaredata breachlaw enforcement takedownphishing-as-a-servicesession token theftsupply chain compromise
What happened
A cluster of high-impact incidents and actively exploited vulnerabilities: the ShinyHunters gang exfiltrated personal data from 7‑Eleven affecting over ~183k–185k people; the FBI warns of Kali365 phishing‑as‑a‑service that abuses OAuth device‑code flows to steal Microsoft 365 session tokens and bypass MFA; Ghost CMS is under active exploitation for a critical SQL injection (CVE-2026-26980) used to deliver ClickFix attacks; Laravel Lang Composer packages were hijacked to distribute credential‑stealing malware; Ubiquiti released patches for three maximum‑severity UniFi OS flaws; Trend Micro dis
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 7af77e69966c202e7c8af13ddcf5c9cf85080a57dae60af28f3a641515526a18
- Enrichment time
- 2026-05-26T07:23:30Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.