logo

July 2026: OpenAI Agent Incident, KDDI Breach

ID: ed5ace42-8848-5aea-913a-1bfd546ec506

STIX ID: report--ed5ace42-8848-5aea-913a-1bfd546ec506

Feed Name: SOCRadar Blog

Threat Score
80/100

Date Published: 2026-08-19

Date Updated: 2026-08-22

Author: ameer

...
...

July 2026 saw several high-impact security incidents: large credential and personal-data exposures (KDDI: ~12.2M emails and ~7.6M passwords; AssuranceAmerica: ~7M people; MCBS: ~1.26M), an alleged Accenture data dump containing keys and tokens, an AI-agent–driven compromise involving OpenAI and Hugging Face that chained trust-boundary failures and exposed credentials, a widespread GitHub-based infostealer distribution campaign, an extortion attempt on Stadler Rail via a supplier platform, and the disruption of the NetNut residential proxy service — highlighting risks from exposed secrets, third-party platforms, supply-chain paths, and malicious automation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.