Starbucks data breach impacts 889 employees
2026-03-15T02:52:11Z•5d6a4656a71d5176faa21246035e5026ea870bbafd40eae8bed79f6d5166ed4d
AI‑assisted malwareAVreconApple iOSCISA KEVCVE-2026-3909CVE-2026-3910CorunaGoogle ChromeHive0163INTERPOLSEO poisoningSlopolySocksEscortStorm-2561actively exploitedbotnetcredential theftdata breachlaw enforcementphishingproxy serviceransomwarevpn spoofingzero-day
What happened
Multiple high-impact security events reported: Starbucks disclosed a phishing-driven breach of its Partner Central employee portal impacting 889 employees and exposing staff data. Microsoft-linked analysis attributes a credential‑harvest campaign to Storm-2561 that uses SEO‑poisoned search results and spoofed Ivanti/Cisco/Fortinet VPN sites to steal corporate logins. INTERPOL’s Operation Synergia III dismantled ~45,000 malicious IPs/servers and led to 94 arrests. Law enforcement disrupted the SocksEscort proxy service backed by the AVrecon botnet (≈360,000 infected devices). IBM X-Force found
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 5d6a4656a71d5176faa21246035e5026ea870bbafd40eae8bed79f6d5166ed4d
- Enrichment time
- 2026-03-15T02:52:11Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.