Canadian utility fesses up to data breach, but key details remain off-grid

2026-06-22T19:24:06Z52d6cc25aa9d5d9d5cc7ad13aba45ae4a30696b583a9330b3c44f4fd68da7774
bootromcisco-sdwancredential-theftdata-breachespionageexploited-vulnerabilityfirmware-exploitfortinetmalwarenetwork-securitypeoplesoftzero-day

What happened

A wave of high-impact incidents and active exploits was reported across June 2026. Large-scale credential-theft campaigns and malware attacks hit thousands of Fortinet appliances (75k firewalls) and exploited multiple Fortinet sandbox vulnerabilities; Cisco SD‑WAN Catalyst/Manager flaws (make-me-root) are being actively exploited as 0‑days; ShinyHunters claims an Oracle PeopleSoft 0‑day was used to breach 100+ organisations (including Council of Europe); PRC‑linked operatives infiltrated medical and military research networks stealing sensitive data; a checkm8‑style BootROM exploit for A12/A13

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
theregister_security
Record identifier
52d6cc25aa9d5d9d5cc7ad13aba45ae4a30696b583a9330b3c44f4fd68da7774
Enrichment time
2026-06-22T19:24:06Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.