Incident tracker

Recent cyber attacks and data breaches

DisclosedCompanyWhat happenedTypeRecordsSource
2026-08-21Hawaii Dental Group, Inc DBA Hawaii Family Dental

Healthcare

Hawaii Dental Group, Inc DBA Hawaii Family Dental: a health data breach

Hawaii Dental Group, Inc DBA Hawaii Family Dental, a healthcare provider in HI, reported a breach of health information affecting 45,853 people to the US Department of Health and Human Services on August 21, 2026. HHS records the breach type as hacking/it incident, involving email.

Data breach
45,853HHS Office for Civil Rights
2026-08-20Nebraska Orthopaedic Center, P.C.Nebraska Orthopaedic Center, P.C.: a data breach

Nebraska Orthopaedic Center, P.C. notified the California Attorney General of a data breach on August 20, 2026, with the breach dated December 2, 2025. The notice covers more than 500 California residents; California does not publish the exact number.

Data breach
Not disclosedCalifornia Attorney General
2026-08-20Apollo Management Holdings, L.P.Apollo Management Holdings, L.P.: a data breach

Apollo Management Holdings, L.P. notified the California Attorney General of a data breach on August 20, 2026, with the breach dated July 6, 2026. The notice covers more than 500 California residents; California does not publish the exact number.

Data breach
Not disclosedCalifornia Attorney General
2026-08-20Northern Inyo Healthcare District d/b/a Northern Inyo HospitalNorthern Inyo Healthcare District d/b/a Northern Inyo Hospital: a data breach

Northern Inyo Healthcare District d/b/a Northern Inyo Hospital notified the California Attorney General of a data breach on August 20, 2026, with the breach dated December 2, 2025. The notice covers more than 500 California residents; California does not publish the exact number.

Data breach
Not disclosedCalifornia Attorney General
2026-08-20Southern Illinois UniversitySouthern Illinois University: a data breach

Southern Illinois University notified the California Attorney General of a data breach on August 20, 2026, with the breach dated September 29, 2025. The notice covers more than 500 California residents; California does not publish the exact number.

Data breach
Not disclosedCalifornia Attorney General
2026-08-20Rockwood Retirement Communities (Spokane United Methodist Homes)Rockwood Retirement Communities (Spokane United Methodist Homes): a data breach

Rockwood Retirement Communities (Spokane United Methodist Homes) notified the Washington State Attorney General on August 20, 2026 of a data breach that occurred on February 15, 2026, affecting 7,136 Washington residents. Information involved: Name, Social Security Number, Driver's License or Washington ID Card Number, Financial & Banking Information, Full Date of Birth, Passport Number, Health Insurance Policy or ID Number, Medical Information, Email Address and Password/Security Question Answers, Protected Health Information owned or licensed by a HIPAA covered entity.

Data breach
Not disclosedWashington State Attorney General
2026-08-20Life Bridges, Inc.

Healthcare

Life Bridges, Inc.: a health data breach

Life Bridges, Inc., a healthcare provider in TN, reported a breach of health information affecting 5,194 people to the US Department of Health and Human Services on August 20, 2026. HHS records the breach type as hacking/it incident, involving network server.

Data breach
5,194HHS Office for Civil Rights
2026-08-19Oz Hair and BeautyOz Hair and Beauty: a data breach

In August 2026, Australian beauty retailer Oz Hair and Beauty was the target of an xpl0itrs extortion attack . The group subsequently published data allegedly obtained from the company, which included 2M unique email addresses along with names, phone numbers, geographic locations (suburb and postcode) and purchases.

Data breach
1,988,331Have I Been Pwned
2026-08-19FanloreFanlore: a data breach

In August 2026, the Organization for Transformative Works (OTW) identified unauthorised access to the Fanlore wiki it operates . The breach resulted in the exposure of 145k unique email addresses along with usernames and passwords stored as either MD5 or PBKDF2 hashes. OTW self-submitted the exposed data to HIBP.

Data breach
144,520Have I Been Pwned
2026-08-19Silver Summit Medical CorporationSilver Summit Medical Corporation: a data breach

Silver Summit Medical Corporation notified the California Attorney General of a data breach on August 19, 2026, with the breach dated November 27, 2025. The notice covers more than 500 California residents; California does not publish the exact number.

Data breach
Not disclosedCalifornia Attorney General

About this tracker

435
Incidents
287
Ransomware gang claims
722
Last 30 days
389
Companies tracked
2,742,501,669
Records disclosed