The Breach News

Hackers Breach T-Mobile Employee Email Accounts, Compromise User Data

T-Mobile Data Breach Exposes Sensitive Information of Customers and Employees T-Mobile, the prominent US telecommunications provider, has recently reported a serious data breach that has compromised the personal and account-related information of its customers and employees. This incident raises significant concerns about cybersecurity vulnerabilities in the telecom sector, particularly for…

Read MoreHackers Breach T-Mobile Employee Email Accounts, Compromise User Data

$5 Million Settlement Reached in Geisinger Health and Nuance Insider Breach Case

Governance & Risk Management, Healthcare, Industry Specific Settlement Approved in Class Action Linked to Former Employee’s Data Breach Marianne Kolbasuk McGee (HealthInfoSec) • November 20, 2025 A federal court has granted preliminary approval for a $5 million settlement in a breach lawsuit involving a former Nuance employee and Geisinger Health.…

Read More$5 Million Settlement Reached in Geisinger Health and Nuance Insider Breach Case

OAuth Token Breach Affects Salesforce Ecosystem Once More, Gainsight Among Those Impacted

— In the wake of the recent Gainsight incident, Chief Information Security Officers (CISOs) and security teams are urged to take immediate action to safeguard their organizations against potential vulnerabilities in their Software as a Service (SaaS) environments. Cybersecurity expert, Larsen, emphasized the importance of viewing this incident as a…

Read MoreOAuth Token Breach Affects Salesforce Ecosystem Once More, Gainsight Among Those Impacted

Extensive U.S. Property and Demographic Database Uncovers 200 Million Records

Massive Data Exposure Affects Over 200 Million US Citizens In a significant breach of security, more than 200 million records containing sensitive information about US residents were left unprotected in an unsecured online database. The database, hosted on Google Cloud, required no password or authentication for access, making it vulnerable…

Read MoreExtensive U.S. Property and Demographic Database Uncovers 200 Million Records

ENISA Now Serves as a CVE Program Root

Government, Industry Specific European Cybersecurity Agency Takes on Role in CVE Program Akshaya Asokan (asokan_akshaya) • November 20, 2025     Image: ENISA/Shutterstock/ISMG The European Union Agency for Cybersecurity (ENISA) is set to enhance its role in overseeing vulnerability announcements throughout the EU. This development follows ENISA’s recognition as a…

Read MoreENISA Now Serves as a CVE Program Root

Salesforce Probes Data Breach Impacting Customers via Gainsight Applications

The incident involved applications published by Gainsight that connect to Salesforce. Incident Overview Salesforce is currently investigating a data breach that has potentially compromised customer information through applications developed by Gainsight, a notable provider of customer relationship management tools. In a statement, Salesforce indicated that the breach involved “Gainsight-published applications…

Read MoreSalesforce Probes Data Breach Impacting Customers via Gainsight Applications