Ransomware Group Claims Breach of 4.2 Million Apple iCloud Accounts
A ransomware group posted 4.2 million alleged Apple iCloud records on July 20 2026. Apple confirmed the data came from a third-party developer portal not its core systems. The incident affects users who enabled advanced data protection before June 2026.
CrowdStrike Identifies July 15 Ransomware Attack on 12000 Healthcare Endpoints
CrowdStrike detected a ransomware campaign on July 15 2026 that encrypted data on 12000 healthcare endpoints across 47 hospitals. The attack used a previously unknown loader targeting unpatched Windows systems. No patient data exfiltration has been confirmed as of July 19 2026.
Microsoft Discloses July 10 Azure Key Leak Affecting 18000 Tenants
Microsoft confirmed on July 16 that an internal key management error exposed storage account keys for 18000 Azure tenants. The exposure lasted 11 days before detection. No customer data exfiltration has been confirmed yet.
CrowdStrike Detects July 13 Supply Chain Attack on 420,000 Endpoints
CrowdStrike identified a supply chain compromise on July 13 2026 affecting 420,000 endpoints. The attackers inserted malicious code into a third party driver update. No data exfiltration has been confirmed yet.
Salesforce Confirms July 12 Breach Exposed 1.1 Million CRM Records
Salesforce confirmed a July 12 breach that exposed 1.1 million customer CRM records. The incident involved unauthorized access to a legacy integration API. Affected organizations include mid-market retailers and professional services firms.
Cloudflare Mitigates July 10 DDoS Attack on 1.2 Million Sites
Cloudflare blocked a record 3.8 Tbps DDoS attack on July 10 targeting 1.2 million customer sites. The assault originated from compromised IoT devices across 140 countries. No customer data was accessed during the six-hour event.
Oracle Reports July 11 Breach Affecting 1.4 Million Cloud Tenants
Oracle confirmed a July 11 intrusion that exposed records of 1.4 million cloud tenants. Attackers accessed customer metadata and limited configuration data through a compromised internal dashboard. The company has isolated affected systems and begun mandatory password resets for all impacted accounts.
CrowdStrike Confirms July 8 Breach Exposed 890,000 Enterprise Endpoints
CrowdStrike disclosed a July 8 2026 intrusion that accessed 890,000 customer endpoints. Attackers exfiltrated telemetry data and partial source code for Falcon sensor version 7.4. The company reset all customer API keys within 36 hours.
Microsoft Confirms July 9 Breach Exposed 2.3 Million Azure Customer Records
Microsoft disclosed a July 9 2026 intrusion that exposed 2.3 million Azure customer records. Attackers accessed storage accounts via a compromised service principal. The incident matters because it highlights persistent cloud identity management vulnerabilities at the largest providers.