<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
    xmlns:content="http://purl.org/rss/1.0/modules/content/"
    xmlns:atom="http://www.w3.org/2005/Atom"
    xmlns:media="http://search.yahoo.com/mrss/">
    <channel><title>Consumer Insights</title><description>News, views and insights from the Bitdefender experts</description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/</link><image><url>https://download.bitdefender.com/resources/images/favicon/favicon-32x32.png</url><title>Consumer Insights</title><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/</link></image><generator>Bitdefender Blog</generator><lastBuildDate>Fri, 17 Jul 2026 17:46:16 GMT</lastBuildDate><atom:link href="https://www.bitdefender.com/nuxt/api/en-gb/rss/hotforsecurity/data-breach/" rel="self" type="application/rss+xml"/><ttl>1800</ttl><item><title>Coca-Cola halts Fairlife production across US after ransomware attack</title><description><![CDATA[Coca-Cola has paused production of Fairlife dairy products in the US after ransomware disrupted systems supporting manufacturing operations.]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/coca-cola-fairlife-ransomware-attack</link><guid isPermaLink="false">6a5a109e8beeea9658027dca</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Fri, 17 Jul 2026 11:24:41 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/anita-jankovic-c7PT4PZMcNA-unsplash.jpg" medium="image"/><content:encoded><![CDATA[Coca-Cola has paused production of Fairlife dairy products in the US after ransomware disrupted systems supporting manufacturing operations.]]></content:encoded></item><item><title>Qantas data breach started with a fake IT support call</title><description><![CDATA[A vishing attack on an overseas contact center exposed 5.67 million Qantas customer records in 2025, Australia’s privacy regulator says.]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/qantas-data-breach-vishing-scam</link><guid isPermaLink="false">6a58ad7f8beeea9658027d47</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><category><![CDATA[Scam]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Thu, 16 Jul 2026 10:10:28 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/towfiqu-barbhuiya-FnA5pAzqhMM-unsplash.jpg" medium="image"/><content:encoded><![CDATA[A vishing attack on an overseas contact center exposed 5.67 million Qantas customer records in 2025, Australia’s privacy regulator says.]]></content:encoded></item><item><title>Lidl warns customers after data breach</title><description><![CDATA[German retailer Lidl is notifying customers of a data breach after cybercriminals gained unauthorized access to customer information via one of its third-party service providers.


Key takeaways

 * Lidl has disclosed a data breach affecting customers of its online shop in Germany, Belgium, and the Netherlands after one of its IT service providers was compromised.
 * Stolen data includes customer identifiers and other account details. The retailer says customer accounts and its online shop syste]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/lidl-data-breach-2026</link><guid isPermaLink="false">6a579cf68beeea9658027cd3</guid><category><![CDATA[Data Breach]]></category><category><![CDATA[Industry News]]></category><category><![CDATA[Digital Privacy]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Wed, 15 Jul 2026 14:55:55 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/Lidl-warns-customers-after-data-breach.png" medium="image"/><content:encoded><![CDATA[German retailer Lidl is notifying customers of a data breach after cybercriminals gained unauthorized access to customer information via one of its third-party service providers.


Key takeaways

 * Lidl has disclosed a data breach affecting customers of its online shop in Germany, Belgium, and the Netherlands after one of its IT service providers was compromised.
 * Stolen data includes customer identifiers and other account details. The retailer says customer accounts and its online shop syste]]></content:encoded></item><item><title>How to find out if your identity has been exposed by infostealers</title><description><![CDATA[You don't have to fall for a phishing email or have one of your favorite websites suffer a data breach to become an identity theft victim. Sometimes, it just takes a piece of malware known as an infostealer to quietly steal your data in the background.


Key takeaways

 * Infostealers silently collect passwords, browser cookies, session tokens, and other sensitive information from infected devices.
 * Cybercriminals increasingly target session tokens because they can provide access to accounts w]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/how-to-check-if-an-infostealer-stole-your-data</link><guid isPermaLink="false">6a4d4c968beeea96580276fb</guid><category><![CDATA[Digital Privacy]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Wed, 08 Jul 2026 08:21:56 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/07/How-to-find-out-if-your-identity-has-been-exposed-by-infostealers.png" medium="image"/><content:encoded><![CDATA[You don't have to fall for a phishing email or have one of your favorite websites suffer a data breach to become an identity theft victim. Sometimes, it just takes a piece of malware known as an infostealer to quietly steal your data in the background.


Key takeaways

 * Infostealers silently collect passwords, browser cookies, session tokens, and other sensitive information from infected devices.
 * Cybercriminals increasingly target session tokens because they can provide access to accounts w]]></content:encoded></item><item><title>Texas breach exposes PII of 3 million hunting and fishing license customers</title><description><![CDATA[More than 3.1 million people may have had sensitive personal information exposed following a data security incident involving a third-party vendor used by the Texas Parks and Wildlife Department (TPWD).


Key takeaways

 * The Texas Parks and Wildlife Department (TPWD) disclosed a data security incident affecting some 3.1 million customers.
 * The breach occurred through a third-party vendor that manages the agency's licensing system.
 * Exposed data may include driver's license numbers, passpor]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/texas-data-breach-exposes-3-1-million-license-records</link><guid isPermaLink="false">6a3a26e98beeea9658026c82</guid><category><![CDATA[Data Breach]]></category><category><![CDATA[Digital Privacy]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Tue, 23 Jun 2026 06:34:48 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/06/texas-data-breach.jpg" medium="image"/><content:encoded><![CDATA[More than 3.1 million people may have had sensitive personal information exposed following a data security incident involving a third-party vendor used by the Texas Parks and Wildlife Department (TPWD).


Key takeaways

 * The Texas Parks and Wildlife Department (TPWD) disclosed a data security incident affecting some 3.1 million customers.
 * The breach occurred through a third-party vendor that manages the agency's licensing system.
 * Exposed data may include driver's license numbers, passpor]]></content:encoded></item><item><title>Maine forced to take down data breach portal after fake notices filed with authorities</title><description><![CDATA[The US state of Maine has taken its public data breach notification portal offline after someone submitted fraudulent breach disclosures impersonating two well-known technology companies.

As Bleeping Computer reported last week, fraudulent data breach disclosures were submitted to Maine's official breach portal and publicly posted before their legitimacy could be verified, prompting the named companies to deny the claims.

The first fake notification targeted the popular messaging platform Disc]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/maine-take-down-data-breach-portal</link><guid isPermaLink="false">6a2ff8958beeea9658026872</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Graham CLULEY</dc:creator><pubDate>Mon, 15 Jun 2026 13:06:15 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/06/fake-data-breach-notice.jpeg" medium="image"/><content:encoded><![CDATA[The US state of Maine has taken its public data breach notification portal offline after someone submitted fraudulent breach disclosures impersonating two well-known technology companies.

As Bleeping Computer reported last week, fraudulent data breach disclosures were submitted to Maine's official breach portal and publicly posted before their legitimacy could be verified, prompting the named companies to deny the claims.

The first fake notification targeted the popular messaging platform Disc]]></content:encoded></item><item><title>Carnival breach exposes data of nearly 6 million people</title><description><![CDATA[Nearly 6 million Carnival customers may face phishing and identity theft risks after attackers stole personal data through a socially engineered employee account.


Carnival confirms stolen customer data

Carnival Corporation has started notifying 5,995,277 people after a cybersecurity incident exposed personal information tied to the cruise operator and its brands. The company says it detected the activity on April 14 after attackers used social engineering to compromise an employee account and]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/carnival-breach-6-million</link><guid isPermaLink="false">6a198bae8beeea9658026014</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Fri, 29 May 2026 12:51:48 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/alonso-reyes-LWFdBz4d6nE-unsplash.jpg" medium="image"/><content:encoded><![CDATA[Nearly 6 million Carnival customers may face phishing and identity theft risks after attackers stole personal data through a socially engineered employee account.


Carnival confirms stolen customer data

Carnival Corporation has started notifying 5,995,277 people after a cybersecurity incident exposed personal information tied to the cruise operator and its brands. The company says it detected the activity on April 14 after attackers used social engineering to compromise an employee account and]]></content:encoded></item><item><title>7-Eleven data breach exposes data of 185,000 people</title><description><![CDATA[ShinyHunters claims it stole 7-Eleven records later found to contain names, contact details and dates of birth.]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/7-eleven-data-breach</link><guid isPermaLink="false">6a1578038beeea9658025e34</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Tue, 26 May 2026 10:39:51 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/josh-chiodo-F0hD5KVznLQ-unsplash.jpg" medium="image"/><content:encoded><![CDATA[ShinyHunters claims it stole 7-Eleven records later found to contain names, contact details and dates of birth.]]></content:encoded></item><item><title>UK Water Supplier Fined Nearly £1 Million After Hackers Roamed Networks for Almost 2 Years</title><description><![CDATA[A UK water supplier has been fined £945,000 after regulators found cybercriminals had access to its systems, exposing sensitive customer data, for nearly two years before they were discovered.

The UK Information Commissioner’s Office (ICO) announced this week that it had levied the penalty against South Staffordshire Plc and South Staffordshire Water Plc following a 2022 ransomware attack that compromised the personal data of hundreds of thousands of customers.


Key takeaways


 * UK regulator]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/uk-water-1-million-hackers-ransomware</link><guid isPermaLink="false">6a03358f2fa53a9f2eef72c8</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Filip TRUȚĂ</dc:creator><pubDate>Tue, 12 May 2026 14:22:34 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/tap-water.png" medium="image"/><content:encoded><![CDATA[A UK water supplier has been fined £945,000 after regulators found cybercriminals had access to its systems, exposing sensitive customer data, for nearly two years before they were discovered.

The UK Information Commissioner’s Office (ICO) announced this week that it had levied the penalty against South Staffordshire Plc and South Staffordshire Water Plc following a 2022 ransomware attack that compromised the personal data of hundreds of thousands of customers.


Key takeaways


 * UK regulator]]></content:encoded></item><item><title>DAEMON Tools Lite breach prompts urgent update after malware-laced installer</title><description><![CDATA[DAEMON Tools Lite malware breach: Disc Soft releases clean 12.6 build after trojanized installers exposed users to backdoor risk.]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/daemon-tools-breach-malware</link><guid isPermaLink="false">69fc6c632fa53a9f2eef6ed1</guid><category><![CDATA[Industry News]]></category><category><![CDATA[Data Breach]]></category><dc:creator>Vlad CONSTANTINESCU</dc:creator><pubDate>Thu, 07 May 2026 10:50:56 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/DAEMON-Tools-Lite-installer-compromised-in-supply-chain-attack.jpg" medium="image"/><content:encoded><![CDATA[DAEMON Tools Lite malware breach: Disc Soft releases clean 12.6 build after trojanized installers exposed users to backdoor risk.]]></content:encoded></item><item><title>Instructure confirms breach; millions of Canvas users potentially impacted</title><description><![CDATA[Instructure, the company behind the Canvas learning management system, has confirmed a data breach after a well-known cybercrime group claimed responsibility for stealing data linked to hundreds of millions of users.


Key takeaways

 * Canvas owner Instructure confirmed a security incident after the ShinyHunters group claimed responsibility
 * Up to 275 million users may be affected, with exposed data including names, emails, IDs, and messages
 * Users should watch for scams and suspicious mess]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/canvas-data-breach-2026</link><guid isPermaLink="false">69fa10e92fa53a9f2eef6d23</guid><category><![CDATA[Data Breach]]></category><category><![CDATA[Digital Privacy]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Tue, 05 May 2026 15:56:05 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/Instructure-confirms-breach--millions-of-Canvas-users-potentially-impacted.png" medium="image"/><content:encoded><![CDATA[Instructure, the company behind the Canvas learning management system, has confirmed a data breach after a well-known cybercrime group claimed responsibility for stealing data linked to hundreds of millions of users.


Key takeaways

 * Canvas owner Instructure confirmed a security incident after the ShinyHunters group claimed responsibility
 * Up to 275 million users may be affected, with exposed data including names, emails, IDs, and messages
 * Users should watch for scams and suspicious mess]]></content:encoded></item><item><title>Stalkerware data leak exposes private screenshots linked to celebrities and influencers</title><description><![CDATA[A recent discovery by cybersecurity researcher Jeremiah Fowler shows how quickly a single compromised device can fuel a much larger exposure.

An unsecured database containing tens of thousands of screenshots, reportedly collected through stalkerware, was found openly accessible online. While the data traces back to a single infected device, the screenshots reveal interactions with celebrities, influencers, and media figures, highlighting how a breach can ripple outward.


Key takeaways

 * An e]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/stalkerware-data-leak-screenshots-celebrities-exposed</link><guid isPermaLink="false">69f870982fa53a9f2eef6b84</guid><category><![CDATA[Data Breach]]></category><category><![CDATA[Digital Privacy]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Mon, 04 May 2026 10:28:18 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/05/Stalkerware-data-leak-exposes-private-screenshots-linked-to-celebrities-and-influencers.png" medium="image"/><content:encoded><![CDATA[A recent discovery by cybersecurity researcher Jeremiah Fowler shows how quickly a single compromised device can fuel a much larger exposure.

An unsecured database containing tens of thousands of screenshots, reportedly collected through stalkerware, was found openly accessible online. While the data traces back to a single infected device, the screenshots reveal interactions with celebrities, influencers, and media figures, highlighting how a breach can ripple outward.


Key takeaways

 * An e]]></content:encoded></item><item><title>Hackers claim to have breached Udemy, stealing 1.4 million user records</title><description><![CDATA[Notorious hacking group ShinyHunters recently announced they had breached Udemy’s systems and exfiltrated a large dataset of user information.


Key takeaways:

 * Hackers claim to have stolen 1.4 million Udemy user records
 * The company has not confirmed the breach
 * Stolen information may include personal and internal data
 * Attackers are using a “pay or leak” extortion tactic
 * Users should update passwords, enable 2FA, and watch out for scams


What happened?

On April 24, 2026, the cybe]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/hackers-claim-to-have-breached-udemy</link><guid isPermaLink="false">69ef689f2fa53a9f2eef67e1</guid><category><![CDATA[Data Breach]]></category><category><![CDATA[Digital Privacy]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Mon, 27 Apr 2026 13:52:11 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/04/Hackers-claim-to-have-breached-Udemy--stealing-1.4-million-user-records--2-.jpg" medium="image"/><content:encoded><![CDATA[Notorious hacking group ShinyHunters recently announced they had breached Udemy’s systems and exfiltrated a large dataset of user information.


Key takeaways:

 * Hackers claim to have stolen 1.4 million Udemy user records
 * The company has not confirmed the breach
 * Stolen information may include personal and internal data
 * Attackers are using a “pay or leak” extortion tactic
 * Users should update passwords, enable 2FA, and watch out for scams


What happened?

On April 24, 2026, the cybe]]></content:encoded></item><item><title>Rituals data breach exposes customer details</title><description><![CDATA[Dutch cosmetics brand Rituals has confirmed customer membership records were affected in a data breach. While no passwords or payment details were exposed, the type of data involved raises a different kind of risk that many users underestimate.


Key takeaways

 * Dutch cosmetics giant Rituals suffered a data breach in April 2026 affecting customer membership records
 * Exposed data may include names, emails, phone numbers, birth dates, and home addresses
 * No passwords or payment details were ]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/rituals-cosmetics-data-breach-2026</link><guid isPermaLink="false">69ea01cf2fa53a9f2eef6651</guid><category><![CDATA[Data Breach]]></category><category><![CDATA[Digital Privacy]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Thu, 23 Apr 2026 11:36:22 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/04/Rituals-data-breach-exposes-customer-details.jpg" medium="image"/><content:encoded><![CDATA[Dutch cosmetics brand Rituals has confirmed customer membership records were affected in a data breach. While no passwords or payment details were exposed, the type of data involved raises a different kind of risk that many users underestimate.


Key takeaways

 * Dutch cosmetics giant Rituals suffered a data breach in April 2026 affecting customer membership records
 * Exposed data may include names, emails, phone numbers, birth dates, and home addresses
 * No passwords or payment details were ]]></content:encoded></item><item><title>Booking.com says breach exposed travelers’ data</title><description><![CDATA[Planning a trip soon? You may want to take a closer look at any messages related to your reservation.

Booking.com has confirmed a security incident involving unauthorized access to customer data.


Key takeaways

 * Booking.com confirmed a data breach: Unauthorized parties accessed customer booking information
 * Sensitive travel data may be exposed: Names, contact details, and reservation info could be affected
 * Users have been notified: Customers received alerts and reservation PINs were re]]></description><link>https://www.bitdefender.com/en-gb/blog/hotforsecurity/booking-com-breach-april-2026</link><guid isPermaLink="false">69e0e15d2fa53a9f2eef6067</guid><category><![CDATA[Data Breach]]></category><dc:creator>Alina BÎZGĂ</dc:creator><pubDate>Thu, 16 Apr 2026 13:25:14 GMT</pubDate><media:content url="https://blogapp.bitdefender.com/hotforsecurity/content/images/2026/04/booking.png" medium="image"/><content:encoded><![CDATA[Planning a trip soon? You may want to take a closer look at any messages related to your reservation.

Booking.com has confirmed a security incident involving unauthorized access to customer data.


Key takeaways

 * Booking.com confirmed a data breach: Unauthorized parties accessed customer booking information
 * Sensitive travel data may be exposed: Names, contact details, and reservation info could be affected
 * Users have been notified: Customers received alerts and reservation PINs were re]]></content:encoded></item></channel>
        </rss>