Find notable cyber news and cases, enriched with sources, timelines, and signals.

Plex hit by cyberattack

Incident
First reported
Last updated
Happening score
H score 13
2 unique sources, 2 articles

Summary

Hide ▲

Plex said an unauthorized third party accessed a limited subset of customer data from one database, prompting password resets and raising the risk of credential abuse. The company said it quickly contained the incident and that the accessed records included emails, usernames, securely hashed passwords, and authentication data. Plex also said no payment card information was stored on the server, but it urged users to reset passwords, sign out connected devices, and enable two-factor authentication.

Related Happenings

PcComponentes hit by cyberattack

Incident
First: 21.01.2026 22:55 Last: 21.01.2026 22:55 Sources 1

About this happening: **PcComponentes** confirmed a **credential stuffing attack** on its platform, and the event mattered because a **small number of accounts** were compromised and account protection...

Plex customer data leak

Data Leak
First: 09.09.2025 04:03 Last: 09.09.2025 04:03 Sources 1

How related: "While we quickly contained the incident, information that was accessed included emails, usernames, and securely hashed passwords."

About this happening: Plex confirmed a **data leak** after an unauthorized third party accessed a **limited subset** of **customer data** from one database, exposing **emails, usernames, securely hashe...

Wealthsimple hit by cyberattack

Incident
First: 05.09.2025 18:36 Last: 05.09.2025 18:36 Sources 1

About this happening: Wealthsimple disclosed a **data breach** that exposed customer personal data and affected **less than 1% of clients**. The company said it detected the incident on **2025-08-30**...

Latest development: 05.09.2025 20:21

Wealthsimple disclosed a data breach after unauthorized access to personal data belonging to less than 1% of clients, said no funds were stolen and passwords were not compromised, notified impacted customers by email, and offered two years of credit monitoring, dark-web monitoring, identity theft protection, and insurance; the company later said the incident is not related to Salesforce.

Workiva customer data exposure from third-party CRM

Data Leak
First: 03.09.2025 19:40 Last: 03.09.2025 19:40 Sources 1

About this happening: Workiva confirmed **customer data theft** from a **third-party CRM**, exposing a limited set of contact details and support ticket content tied to affected customers. The company...

Timeline

  1. 09.09.2025 11:40 1 articles · 8mo ago

    Plex says customer data was accessed in a database breach

    Initial Disclosure

    Plex said an unauthorized third party accessed a limited subset of customer data from one of its databases, including emails, usernames, securely hashed passwords, and authentication data. Plex said it quickly contained the incident, blocked the attackers’ access to its systems, urged users to reset Plex account passwords and enable sign-out of connected devices after password changes, and warned about possible phishing from Plex impersonators.

    Show sources
  2. 09.09.2025 04:03 2 articles · 8mo ago

    Plex warns customers to reset passwords after database breach

    Initial Disclosure

    Plex says an unauthorized third party accessed a limited subset of customer data from one of its databases, including emails, usernames, securely hashed passwords, and authentication data. Plex says it quickly contained the incident, addressed the method used to breach its server, and is urging customers to reset passwords, sign out connected devices, and enable two-factor authentication; it also says no payment card information was included.

    Show sources