Daily Digest

Data Breaches at Healthcare, Government, and Retail; Phishing Evasion Technique Detailed

September 6, 2026
5 articles (4 new, 1 updated)
15 min read

Summary

Healthcare and Government Data Breaches:

  • Baylor Genetics Breach Exposes Medical Data of Over 2.8 Million: An investigation concluded that the Baylor Genetics breach, initially reported to expose medical data, also included health insurance information, government ID numbers, and employee financial data for a subset of individuals. New cyber observables for hunting include specific command-line patterns and file paths used for data staging.
  • Winona County, MN Paid Ransom Before Being Hit a Second Time: Winona County, Minnesota, confirmed paying a $128,539 ransom after a January 2026 ransomware attack. Despite the payment, the county experienced a second, unrelated ransomware attack in April 2026, highlighting the persistent threat and questions surrounding ransom payment effectiveness.

Retail and Staffing Firm Breaches:

  • See's Candies Hit by Qilin Ransomware, Sparking Investigations: Confectionery company See's Candies was targeted by the Qilin ransomware group in April 2026, involving file encryption and data exfiltration. Stolen data, potentially including customer and employee PII, has led to investigations into the company's data security practices, with scrutiny on the four-month delay in public disclosure.
  • Staffing Firm HumanEdge Discloses Breach Exposing SSNs: New York-based staffing firm HumanEdge, Inc. disclosed a breach detected in March 2026 that exposed sensitive personal information, including full names and Social Security numbers of employees, job applicants, and clients. The company began notifying affected individuals in September and is facing a class-action law firm investigation.

New Threat Tactics:

  • ASCII Smuggling Phishing Attack Evades Filters with Unicode: Microsoft detailed a high-volume phishing campaign that utilized 'ASCII smuggling' by inserting invisible Unicode characters into financial keywords. This technique split words at a code level, allowing emails to bypass security filters relying on exact keyword matching while appearing normal to users, linked to an SBA loan-themed operation.

Filter by Category

New Articles (4)

Updated Articles (1)

📢 Share This Publication

Help others stay informed about cybersecurity threats

📅 Daily Edition

Curated and deduplicated every day from dozens of trusted sources — giving you one clean, consolidated view of what matters in cybersecurity.

🔢 Deduplication Applied

Related stories are merged into a single evolving article rather than repeated as separate entries — cutting through noise so you only read what's new.

🔗 Full Articles Linked

Every entry links to its full enriched article — complete with MITRE ATT&CK mappings, extracted IOCs, and actionable detection and mitigation guidance.