Navia discloses data breach impacting 2.7 million people
2026-03-20T01:23:26Z•add1995524ce4c977fa946433aa0fdd0545a60c7ecd7b77305970c62e253ec80
account-takeoverapt28bluenoroffcisacisco-fmcdata-breachhandalainterlocklazarusmagentomicrosoft-intunemobile-malware','connectwise','screenconnect','cryptographic-vulnation-stateperseus-androidpolyshellransomwaresharepointstrykersupply-chainubiquiti-unifiunauthenticated-rcexsszcszero-dayzimbra
What happened
BleepingComputer reported a string of high-impact security incidents and vulnerabilities: Navia disclosed a data breach affecting ~2.7M people and Aura exposed ~900K marketing contacts; Bitrefill attributes a recent compromise to North Korea’s Lazarus/Bluenoroff, and the FBI seized Handala leak sites after a destructive Stryker attack that wiped ~80,000 devices. Multiple actively exploited/critical flaws were disclosed or exploited in the wild: an unauthenticated RCE dubbed “PolyShell” impacting Magento/Open Source and Adobe Commerce 2.x (account takeover risk), a critical SharePoint flaw now被
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- add1995524ce4c977fa946433aa0fdd0545a60c7ecd7b77305970c62e253ec80
- Enrichment time
- 2026-03-20T01:23:26Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.