LexisNexis Confirms Major Breach, Cloudflare Reports Identity-Based Attack Shift, and Law Enforcement Dismantles Hacker Forums

Publication Date: March 4, 2026

Summary

In a significant day for cybersecurity, data analytics giant LexisNexis confirmed a major data breach impacting nearly 400,000 users, including U.S. government employees, after a hacker group exploited a known vulnerability. A new Cloudflare report highlights a strategic shift by attackers from malware to stolen credentials to 'log in' to networks. Meanwhile, international law enforcement agencies announced successful takedowns of the 'LeakBase' cybercrime forum and the 'Tycoon 2FA' phishing platform. Other major incidents include a critical, actively exploited vulnerability patched in Android and data breaches at ManoMano and CarGurus, affecting millions of customers.

Today New Articles

LexisNexis Confirms Breach After Hacker 'FulcrumSec' Leaks Data of 400,000 Users, Including U.S. Gov Employees

Data analytics and legal research firm LexisNexis Legal & Professional has confirmed a significant data breach that occurred on February 24, 2026. The incident was initiated by a threat actor known as 'FulcrumSec' who exploited a critical vulnerability, CVE-20...


Cloudflare Report: Attackers Ditch Malware for Stolen Credentials, Shifting from 'Breaking In' to 'Logging In'

Cloudflare's 2026 Threat Report, released March 3, reveals a fundamental change in cyberattack methodology. Threat actors are increasingly abandoning traditional malware in favor of using stolen credentials to 'log in' to target networks. This identity-centric...


International Law Enforcement Dismantles 'LeakBase' Hacker Forum in Coordinated Takedown

In a major blow to the cybercrime economy, an international law enforcement operation led by the U.S. Department of Justice has seized and dismantled the 'LeakBase' hacker forum. The coordinated action, which took place on March 3-4, 2026, involved agents in 1...


Half of Private Equity-Backed Firms Have High Cyber Risk, New Report Finds

A new report from ACA Group, released March 3, 2026, reveals a concerning state of cybersecurity within companies backed by private equity. The study, which assessed over 300 portfolio companies across 18 industries, found that half are operating with an 'elev...


Global Coalition Disrupts 'Tycoon 2FA' Phishing Platform Used to Bypass MFA on Microsoft 365 and Gmail

An international coalition of law enforcement and private technology companies has disrupted the 'Tycoon 2FA' Phishing-as-a-Service (PaaS) platform. Announced on March 4, 2026, the operation involved Europol, Microsoft, Proofpoint, Cloudflare, and SpyCloud, le...


EU and Australia Issue New Cybersecurity Guidance as Regulatory Focus Sharpens

Governments are continuing to tighten cybersecurity regulations, with new guidance issued in the European Union and Australia on March 4, 2026. The European Commission launched a public consultation for its upcoming Cyber Resilience Act (CRA), aimed at helping...


Trend Micro Warns of Severe RCE Flaws in Apex One Security Software, Allowing Protection Bypass

Trend Micro issued a warning on March 3, 2026, about severe remote code execution (RCE) vulnerabilities in its Apex One enterprise endpoint security solution. These flaws are highly critical because they could allow an attacker to disable the very security lay...

Article Updates

ShinyHunters Leaks 12.4 Million CarGurus Records After Failed Extortion

Update:ShinyHunters has officially claimed responsibility for the CarGurus data breach, adding the company to its dark web leak site on March 4, 2026. The group initially claimed 1.7 million records but later escalated to a 6.1 GB archive containing 12.4 million user...


Google Patches Actively Exploited Qualcomm Zero-Day in Massive Android Update

Update:The March 2026 Android Security Bulletin, released on March 3, 2026, addresses additional critical vulnerabilities beyond the actively exploited Qualcomm zero-day (CVE-2026-21385). These include CVE-2026-0006, a critical Remote Code Execution (RCE) flaw in the...