Student Loan Breach Exposes 2.5M Records

2026-03-04T22:51:29Z306c119572a9d29e056993b95e6c0a382f0ef31b76baf9179853467fcd3a3551
0ktapusAPT-TA423CISAChromeMFA spoofingPAN-OSPalo AltoWebKitactive exploitationconticredential theftdata breachiOSlockbitmacOSphishingransomwarescanboxstudent loansurveillance camerasunpatched vulnerabilitywatering holezero-day

What happened

Feed highlights multiple active threats and large incidents from Aug 2022: a 2.5M‑record student loan data breach; watering‑hole campaigns delivering ScanBox likely linked to APT TA423; a wide phishing campaign by ‘0ktapus’ spoofing MFA that impacted 130 firms; a surge in ransomware activity led by LockBit and Conti offshoots; widespread exposed Chinese surveillance cameras due to a long‑unpatched critical vulnerability; CISA warning of active exploitation against Palo Alto PAN‑OS; and multiple zero‑day vulnerabilities in iOS/macOS (kernel and WebKit) and Chrome being actively exploited. The合集

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
threatpost
Record identifier
306c119572a9d29e056993b95e6c0a382f0ef31b76baf9179853467fcd3a3551
Enrichment time
2026-03-04T22:51:29Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.