Monday , August 24 2026
Chinese

8.7 billion records leaked: Inside the huge Chinese data breach

Cybernews reported that Elasticsearch cluster exposed billions of primary Chinese records, cantaining over 160 indices. The leaked data has the record of national citizen ID numbers to various business records. Cybernews dubbed it the massive leak is among the largest single Elasticsearch exposures ever recorded.

On January 1st 2026, the Cybernews research team discovered 8.73 billion Chinese records exposed online. The exposed data was on a large Elasticsearch cluster. Businesses use Elasticsearch for fast sorting, real-time searches, and scalability. Our team found a cluster with 163 indices containing billions of records.

After BDJobs, Directorate of Secondary and Higher Education 390k data surfaced online

A group of hackers named “Madarax” claims they have stolen and are offering to sell the personal information of about...
Read More
After BDJobs, Directorate of Secondary and Higher Education 390k data surfaced online

Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

A new hacking technique has been demonstrated to steal data from Elon Musk's Grok AI. It uses a simple trick...
Read More
Researchers show new technique to bypass AI safety guardrails in Grok and Gemini

About thousands of leaked AWS keys Held Full Admin Rights

More than 9,300 AWS access keys that were made public from August 2022 to August 2026 are still active, says...
Read More
About thousands of leaked AWS keys Held Full Admin Rights

US Bank investigates LockBit’s Data Breach Claims

US Bank is looking into LockBit's claims about a breach and stolen data. The ransomware group says they will share...
Read More
US Bank investigates LockBit’s Data Breach Claims

Five new malware families actively targeting Asian Gov.t infra

Central Asian government agencies have been attacked in a cyber spy operation that used a small but different range of...
Read More
Five new malware families actively targeting Asian Gov.t infra

T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network

T-Mobile’s cybersecurity team reportedly physically cut a network cable connecting compromised infrastructure to the outside world. According to Bloomberg, the move...
Read More
T-Mobile Cuts Cables to Remove Chiness Salt Typhoon Hackers from Network

Splunk, Zyxel Patch Multiple Flaws Enabling RCE and Root Command Execution

Splunk has issued security fixes for 17 weaknesses in different apps and add-ons, such as Splunk MCP Server, Splunk AI...
Read More
Splunk, Zyxel Patch Multiple Flaws Enabling RCE and Root Command Execution

“Zombie Card” attack revels expired Visa card may be used for contactless payments

Security experts have shown that expired credit cards can still be used. A study from the University of Massachusetts Amherst,...
Read More
“Zombie Card” attack revels expired Visa card may be used for contactless payments

Critical Zimbra RCE Flaw Actively Exploited in the Wild

CERT Polska has alerted that bad actors are actively exploiting a security flaw in Zimbra Collaboration Suite to execute code...
Read More
Critical Zimbra RCE Flaw Actively Exploited in the Wild

Operation CameraSwarm
A single hacker compromise 1400+ Dahua camera worldwide 

Operation CameraSwarm compromised 14,500+ Dahua IP cameras mostly in Ukraine and Russia. The operation lasted for at least 35 days...
Read More
Operation CameraSwarm  A single hacker compromise 1400+ Dahua camera worldwide 

A large data cluster was found in early 2026 and stayed accessible for over three weeks. There’s no evidence of misuse, but if our researchers discovered it, others could have as well.

“Despite the short exposure window, the scale of the dataset means that automated scraping during this period could have resulted in widespread secondary dissemination,” cybernews researchers said.

Bob Diachenko, a Cybernews contributor and cybersecurity researcher, discovered a significant data cluster. He noted that the metadata indicates data was imported as recently as late 2025.

“The presence of timestamps and import dates points to a long-running aggregation effort rather than a single historical breach,” the team explained.

The Cybernews report claim that leaked data includes personal identifiers, contact details, government IDs, online account information, and credentials at an unprecedented scale. The info categorize like personally identifiable information (PII), account and platform data, authentication data, as well as corporate and business records.

Researchers found the exposed cluster to be well-organized and segmented by data type, including phone-centric, ID-centric, and account-centric datasets.

“The infrastructure was hosted on a bulletproof hosting provider, commonly associated with high-risk or non-compliant data operations. Moreover, the dataset structure and scale suggest intentional aggregation, not accidental logging or misconfiguration by a single consumer service,” the researchers said.

Check Also

police

ExfilSquad releases info of over 100,000 UK police officers, staff

A cyberattack on the U.K.’s Police National Legal Database (PNLD) has put the contact information …