Paylogix November data leak exposing sensitive records
Data Leak
Summary
Hide ▲
Show ▼
The Paylogix data leak exposed Social Security numbers, passport numbers, taxpayer IDs, and insurance and medical records for at least 67,789 people, creating identity-theft and privacy risk. Attackers stole files from the company's network over several days in November. The Akira ransomware group took credit for the attack. The affected people were reported across South Carolina, New Hampshire, and Vermont.
Related Happenings
Luxury jewelry retailer hit by ransomware attack
Incident
H score45
First: 07.07.2026 16:27
Last: 07.07.2026 16:27
Sources 1
About this happening:
A luxury jewelry retailer suffered a help-desk social engineering intrusion in May 2025 that led to account takeover and the theft of at least 77 gigabytes of data...
Luxury jewelry retailer hit by ransomware attack
IncidentAbout this happening: A luxury jewelry retailer suffered a help-desk social engineering intrusion in May 2025 that led to account takeover and the theft of at least 77 gigabytes of data...
7-Eleven hit by network compromise
Incident
H score53
First: 19.05.2026 17:16
Last: 19.05.2026 17:16
Sources 1
About this happening:
7-Eleven is a victim-focused breach incident in which an unauthorized third party accessed systems used to store franchisee documents on April 8, 2026, trigger...
7-Eleven hit by network compromise
IncidentAbout this happening: 7-Eleven is a victim-focused breach incident in which an unauthorized third party accessed systems used to store franchisee documents on April 8, 2026, trigger...
Over a dozen companies data exposed after SaaS integration provider Snowflake breach
Data Leak
H score69
First: 07.04.2026 22:39
Last: 07.04.2026 22:39
Sources 1
About this happening:
Connor Riley Moucka pleaded guilty in the Snowflake extortion Happening after the U.S. Justice Department said he and co-conspirators used stolen login credentials...
Over a dozen companies data exposed after SaaS integration provider Snowflake breach
Data LeakAbout this happening: Connor Riley Moucka pleaded guilty in the Snowflake extortion Happening after the U.S. Justice Department said he and co-conspirators used stolen login credentials...
Latest development: 06.08.2026 20:00
Connor Riley Moucka of Kitchener, Ontario pleaded guilty after the U.S. Justice Department said he and co-conspirators used stolen login credentials from February to October 2024 to steal cloud-hosted data from at least 165 Snowflake customer accounts and more than 100 million AT&T customers' call and text history records. The scheme generated over $2.5 million in ransom payments.
Akira group rapid double-extortion ransomware activity
Malware Activity
H score45
First: 02.04.2026 16:00
Last: 02.04.2026 16:00
Sources 1
How related:
The Akira ransomware group took credit for the attack.
About this happening:
Akira ransomware activity now includes a Paylogix breach disclosure that exposed Social Security numbers, financial and health insurance information, medical dat...
Akira group rapid double-extortion ransomware activity
Malware ActivityHow related: The Akira ransomware group took credit for the attack.
About this happening: Akira ransomware activity now includes a Paylogix breach disclosure that exposed Social Security numbers, financial and health insurance information, medical dat...
Latest development: 28.08.2026 18:35
Paylogix says attackers stole files from its network over several days in November, exposing Social Security numbers, financial and health insurance information, medical data, passport numbers and taxpayer IDs for at least 67,789 people across South Carolina, New Hampshire and Vermont. The Akira ransomware group took credit for the breach.
TeamPCP supply-chain credential-exploitation campaign
Campaign
H score34
First: 31.03.2026 15:15
Last: 31.03.2026 15:15
Sources 1
About this happening:
TeamPCP is a supply-chain credential-exploitation campaign that has targeted open-source software and developer platforms to steal credentials, authentication secrets,...
TeamPCP supply-chain credential-exploitation campaign
CampaignAbout this happening: TeamPCP is a supply-chain credential-exploitation campaign that has targeted open-source software and developer platforms to steal credentials, authentication secrets,...
Latest development: 27.08.2026 16:31
Australian authorities arrested and charged two Western Australian men in Cottesloe and Mandurah on August 26, 2026 over alleged TeamPCP involvement, seizing electronic devices for forensic analysis and bringing 14 charges tied to possessing and supplying data for computer offenses and modifying data to facilitate serious crimes.
Timeline
-
28.08.2026 18:35 2 articles · 2h ago
Paylogix says attackers stole files from its network
Initial DisclosurePaylogix said attackers stole files from its network over several days in November, exposing Social Security numbers, financial and health insurance information, medical data, passport numbers and taxpayer IDs. The disclosure said at least 67,789 people were affected across South Carolina, New Hampshire and Vermont.
Show sources
- In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions — www.securityweek.com — 28.08.2026 18:35
- In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions — www.securityweek.com — 28.08.2026 18:35