LexisNexis Legal & Professional data leak after AWS intrusion
Data Leak
Summary
Hide ▲
Show ▼
FulcrumSec leaked 2GB of files tied to LexisNexis Legal & Professional, exposing customer and business information that could be used for follow-on abuse. The company confirmed unauthorized access to limited servers and said the material was mostly legacy data from prior to 2020. The exposed records included customer names, user IDs, business contact information, support tickets, and about 400,000 cloud user profiles.
Related Happenings
CISA contractor GitHub repository exposed internal credentials
Data Leak
First: 18.05.2026 23:48
Last: 18.05.2026 23:48
Sources 1
About this happening:
A **CISA contractor** left a public **GitHub repository** exposing **AWS GovCloud credentials** and internal access material, creating a serious **data leak** involving sensitive...
CISA contractor GitHub repository exposed internal credentials
Data LeakAbout this happening: A **CISA contractor** left a public **GitHub repository** exposing **AWS GovCloud credentials** and internal access material, creating a serious **data leak** involving sensitive...
Latest development: 22.05.2026 19:34
On May 19, Sen. Maggie Hassan and Rep. Bennie Thompson, with Rep. Delia Ramirez co-signing Thompson’s letter, sent separate letters to CISA demanding answers about the Private-CISA GitHub leak and warning that the credential exposure raised serious concerns about CISA’s internal policies, contract support, and security culture.
CareCloud hit by network compromise
Incident
First: 31.03.2026 00:44
Last: 31.03.2026 00:44
Sources 1
About this happening:
**CareCloud** disclosed a **network intrusion** that disrupted **1 of 6 electronic health record environments** and raised the possibility that **patient data** was accessed. The...
CareCloud hit by network compromise
IncidentAbout this happening: **CareCloud** disclosed a **network intrusion** that disrupted **1 of 6 electronic health record environments** and raised the possibility that **patient data** was accessed. The...
AkzoNobel partial Anubis data leak
Data Leak
First: 04.03.2026 01:00
Last: 04.03.2026 01:00
Sources 1
About this happening:
**AkzoNobel** faces a **partial data leak** after **Anubis ransomware** claimed it stole **170GB of data** and **almost 170,000 files**. The leak site posted **sample screenshots*...
AkzoNobel partial Anubis data leak
Data LeakAbout this happening: **AkzoNobel** faces a **partial data leak** after **Anubis ransomware** claimed it stole **170GB of data** and **almost 170,000 files**. The leak site posted **sample screenshots*...
AkzoNobel hit by ransomware attack
Incident
First: 04.03.2026 01:00
Last: 04.03.2026 01:00
Sources 1
About this happening:
The **multinational Dutch paints company AkzoNobel** confirmed a **security incident** at **one of its U.S. sites**, saying the intrusion was **contained** and the impact **limite...
AkzoNobel hit by ransomware attack
IncidentAbout this happening: The **multinational Dutch paints company AkzoNobel** confirmed a **security incident** at **one of its U.S. sites**, saying the intrusion was **contained** and the impact **limite...
LexisNexis Legal & Professional hit by network compromise
Incident
First: 03.03.2026 17:40
Last: 03.03.2026 17:40
Sources 1
How related:
“Our investigation has confirmed that an unauthorized party accessed a limited number of servers,” the company told BleepingComputer.
About this happening:
**LexisNexis Legal & Professional** confirmed a **server breach** after an **unauthorized party accessed a limited number of servers**, creating risk that internal customer and bu...
LexisNexis Legal & Professional hit by network compromise
IncidentHow related: “Our investigation has confirmed that an unauthorized party accessed a limited number of servers,” the company told BleepingComputer.
About this happening: **LexisNexis Legal & Professional** confirmed a **server breach** after an **unauthorized party accessed a limited number of servers**, creating risk that internal customer and bu...
Timeline
-
03.03.2026 17:40 1 articles · 2mo ago
FulcrumSec exploits an unpatched React frontend app to reach LexisNexis Legal & Professional AWS infrastructure
Exploitation ObservedFulcrumSec gained access to LexisNexis Legal & Professional's AWS infrastructure by exploiting the React2Shell vulnerability in an unpatched React frontend app on February 24, 2026.
Show sources
- LexisNexis confirms data breach as hackers leak stolen files — www.bleepingcomputer.com — 03.03.2026 17:40
-
03.03.2026 17:40 2 articles · 2mo ago
LexisNexis Legal & Professional confirms unauthorized access and FulcrumSec leaks 2GB of files
Initial DisclosureOn March 3, 2026, LexisNexis Legal & Professional confirmed unauthorized access to limited servers and said the affected data was mostly legacy, deprecated information from prior to 2020, while FulcrumSec publicly leaked 2GB of files and claimed exfiltration of 2.04 GB of structured data, about 400,000 cloud user profiles, 21,042 customer accounts, and records tied to .gov users; the company said there was no evidence that products or services were impacted.
Show sources
- LexisNexis confirms data breach as hackers leak stolen files — www.bleepingcomputer.com — 03.03.2026 17:40
- LexisNexis confirms data breach as hackers leak stolen files — www.bleepingcomputer.com — 03.03.2026 17:40