Loblaw Data Breach Impacts Customer Information
2026-03-15T19:24:07Z•5d87be26a835315fe70f6723c1ec264f5a756252f3953cb6af5d7488a20b26de
AVrecon botnetHPE AOS-CXIran-linked hackersLinux AppArmorLoblawSocksEscortStarbucksStrykerTelus Digitaladmin password resetbug bountycybersecurity startupsdata breachendpoint management abusen8n exploitnation-state activityphishingprivilege escalationproxy service takedownunauthenticated vulnerability
What happened
The feed highlights multiple significant security events: a critical, remotely exploitable HPE AOS‑CX vulnerability that can bypass authentication to reset admin passwords; several data breaches and phishing incidents (Loblaw customer data exposure, Starbucks employee portal phishing, Telus Digital mention) affecting names, emails, phone numbers and employees; Iran‑linked hacking activity targeting US and regional infrastructure and a disruptive attack on Stryker that abused endpoint management tools to wipe devices; and a law‑enforcement takedown of the SocksEscort proxy service powered by AV
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityweek
- Record identifier
- 5d87be26a835315fe70f6723c1ec264f5a756252f3953cb6af5d7488a20b26de
- Enrichment time
- 2026-03-15T19:24:07Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.