LexisNexis confirms data breach at Legal & Professional arm, some customer records affected

2026-03-04T19:24:02Z354669124f4a7c507f6bc21c6ce9e29554fc8eafcb345215455fbe784de35a01
API key theftAnthropicChromeCisco SD‑WANClaude CodeFive EyesFrench health ministryFulcrumsecGeminiGemini API billing abuseGoogleLexisNexisManoManoOAuth phishingPerplexity CometReact2ShellShinyHuntersSteaelite RATchatbot transcriptsdata breachdata brokersdouble extortion ransomware','UNC2814','North Korea','supply‑chlocal file accessprivilege escalationremote code execution

What happened

The feed aggregates multiple high-impact security stories: LexisNexis Legal & Professional confirmed a data breach after the Fulcrumsec crew claimed a ~2 GB exfiltration exploiting a React2Shell issue; several large breaches and leaks were reported (French health ministry supplier — ~15.8M records; ManoMano subcontractor — alleged ~37M accounts; Cloud Imperium and Wynn Resorts employee data disclosures; ShinyHunters activity). Multiple serious vulnerabilities and exploit chains were highlighted: a high-severity Google Chrome Gemini panel bug that allowed malicious extensions privilege escalat‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
354669124f4a7c507f6bc21c6ce9e29554fc8eafcb345215455fbe784de35a01
Enrichment time
2026-03-04T19:24:02Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.