Loblaw Data Breach Impacts Customer Information

2026-03-15T19:24:07Z5d87be26a835315fe70f6723c1ec264f5a756252f3953cb6af5d7488a20b26de
AVrecon botnetHPE AOS-CXIran-linked hackersLinux AppArmorLoblawSocksEscortStarbucksStrykerTelus Digitaladmin password resetbug bountycybersecurity startupsdata breachendpoint management abusen8n exploitnation-state activityphishingprivilege escalationproxy service takedownunauthenticated vulnerability

What happened

The feed highlights multiple significant security events: a critical, remotely exploitable HPE AOS‑CX vulnerability that can bypass authentication to reset admin passwords; several data breaches and phishing incidents (Loblaw customer data exposure, Starbucks employee portal phishing, Telus Digital mention) affecting names, emails, phone numbers and employees; Iran‑linked hacking activity targeting US and regional infrastructure and a disruptive attack on Stryker that abused endpoint management tools to wipe devices; and a law‑enforcement takedown of the SocksEscort proxy service powered by AV

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityweek
Record identifier
5d87be26a835315fe70f6723c1ec264f5a756252f3953cb6af5d7488a20b26de
Enrichment time
2026-03-15T19:24:07Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.