Navia discloses data breach impacting 2.7 million people

2026-03-20T01:23:26Zadd1995524ce4c977fa946433aa0fdd0545a60c7ecd7b77305970c62e253ec80
account-takeoverapt28bluenoroffcisacisco-fmcdata-breachhandalainterlocklazarusmagentomicrosoft-intunemobile-malware','connectwise','screenconnect','cryptographic-vulnation-stateperseus-androidpolyshellransomwaresharepointstrykersupply-chainubiquiti-unifiunauthenticated-rcexsszcszero-dayzimbra

What happened

BleepingComputer reported a string of high-impact security incidents and vulnerabilities: Navia disclosed a data breach affecting ~2.7M people and Aura exposed ~900K marketing contacts; Bitrefill attributes a recent compromise to North Korea’s Lazarus/Bluenoroff, and the FBI seized Handala leak sites after a destructive Stryker attack that wiped ~80,000 devices. Multiple actively exploited/critical flaws were disclosed or exploited in the wild: an unauthenticated RCE dubbed “PolyShell” impacting Magento/Open Source and Adobe Commerce 2.x (account takeover risk), a critical SharePoint flaw now被

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
add1995524ce4c977fa946433aa0fdd0545a60c7ecd7b77305970c62e253ec80
Enrichment time
2026-03-20T01:23:26Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Navia discloses data breach impacting 2.7 million people · Baitaphish